发明名称 High availability for network security devices
摘要 In one example, a backup intrusion detection and prevention (IDP) device includes one or more network interfaces to receive a state update message from a primary IDP device, wherein the state update message indicates a network session being inspected by the primary IDP device and an identified application-layer protocol for the device, to receive an indication that the primary device has switched over or failed over to the backup device, and to receive a plurality of packets of the network session after receiving the indication, each of the plurality of packets comprising a respective payload including application-layer data, a protocol decoder to detect a beginning of a new transaction from the application-layer data of one of the plurality of packets, and a control unit to statefully process only the application-layer data of the network session that include and follow the beginning of the new transaction.
申请公布号 US8291258(B2) 申请公布日期 2012.10.16
申请号 US20100684725 申请日期 2010.01.08
申请人 NARAYANASWAMY KRISHNA;RANJAN RAJIV;JUNIPER NETWORKS, INC. 发明人 NARAYANASWAMY KRISHNA;RANJAN RAJIV
分类号 G06F11/00;G06F11/20 主分类号 G06F11/00
代理机构 代理人
主权项
地址