发明名称 |
Security protocol processing for anti-replay protection |
摘要 |
Described embodiments provide a network processor that includes a security protocol processor to prevent replay attacks on the network processor. A memory stores security associations for anti-replay operations. A pre-fetch module retrieves an anti-replay window corresponding to a data stream of the network processor. The anti-replay window has a range of sequence numbers. When the network processor receives a data packet, the security hardware accelerator determines a value of the received sequence number with respect to minimum and maximum values of a sequence number range of the anti-replay window. Depending on the value, the data packet is either received or accepted. The anti-replay window might be updated to reflect the receipt of the most recent data packet. |
申请公布号 |
US8438641(B2) |
申请公布日期 |
2013.05.07 |
申请号 |
US20100980489 |
申请日期 |
2010.12.29 |
申请人 |
VUKOVIC VOJISLAV;VANDERWARN BRIAN;RADOVANOVIC NIKOLA;WU EPHREM;LSI CORPORATION |
发明人 |
VUKOVIC VOJISLAV;VANDERWARN BRIAN;RADOVANOVIC NIKOLA;WU EPHREM |
分类号 |
G06F7/04 |
主分类号 |
G06F7/04 |
代理机构 |
|
代理人 |
|
主权项 |
|
地址 |
|