发明名称 METHOD AND DEVICE FOR GAINING ACCESS TO COMPUTER RESOURCES THROUGH FIRE WALL
摘要 protective means such as fire walls isolating computer and network resources residing behind fire walls from networks, computers, and application programs beyond the latter. SUBSTANCE: internal resources are usually private data bases and local computer networks; peripheral objects are users and computer application programs operating in public communication networks such as Internet. Fire wall usually enables internal users and objects to establish communication with peripheral objects or networks but makes it impossible to do so in reverse direction, that is, from outside. Novelty is introduction of tunneling system enabling communication either side of fire wall from outside upon request for said communication from authorized persons, users, objects, or computer application programs residing beyond fire wall. Provision is made for minimizing number of resources engaged in establishing such tunnel connections (that is, communications through fire wall upon request of peripherals) and for minimizing risk of unauthorized intervention through fire wall. Method and device use application programs executed by means of interface servers mounted behind and beyond fire wall; they also use special table of authorized sockets whose generation and operation is conducted by internal application program for tunneling. Items of said table of authorized sockets determine objects residing behind fire wall and identify special internal port, data transmission protocol used for each port, and host object coupled with each port. EFFECT: provision for establishing communications either side of fire wall on request of authorized objects or users. 6 cl, 6 dwg
申请公布号 RU2178583(C2) 申请公布日期 2002.01.20
申请号 RU19990109968 申请日期 1997.10.02
申请人 INTERNEHSHNL BIZNES MASHINZ KORPOREJSHN 发明人 JADE PRASHANT;MOR VIKTOR STJUART;RAO ARUN MOKHAN;UOLTERS GLEN ROBERT
分类号 G06F13/00;G06F12/14;G06F13/36;H04L12/56;H04L12/66;H04L29/06;(IPC1-7):G06F12/14 主分类号 G06F13/00
代理机构 代理人
主权项
地址