发明名称 DYNAMIC ALLOCATION OF PORTS AT FIREWALL
摘要 A system, apparatus, and method for dynamically allocating ports in a firewall (120) is presented herein. During establishment of a data transfer session, such as a voice over IP call, the firewall (120) receives signals (205) which establish the data transfer session. The foregoing signals indicate the identity of the terminals (210) as well as the port numbers used by the terminals (210). The firewall records the foregoing information. During the data transfer session, data packets (215) for a terminal in the network of the firewall (120) are examined for addresses and port numbers of the sender (105A) and destination (105B). Wherein the foregoing information matches the information recorded during establishment of the data transfer session, the data packets (215) are permitted to reach the terminal(105A, 105B). Additionally, at the termination of the data transfer session, the record of the data transfer session is deleted, or otherwise indicated as invalid, and additional data packets received for the terminal are prevented from reaching the terminal, not with standing inclusion of the previously stored port numbers.
申请公布号 WO03014938(A1) 申请公布日期 2003.02.20
申请号 WO2002US25235 申请日期 2002.08.06
申请人 CYNETA NETWORKS, INC. 发明人 GOVINDARAJAN, RANGAPRASAD;PATHAK, JOGEN, K.
分类号 H04L29/06;(IPC1-7):G06F11/30;G06F12/14;H04L9/00;H04L9/32 主分类号 H04L29/06
代理机构 代理人
主权项
地址