发明名称 |
System and method for redirecting network traffic to provide secure communication |
摘要 |
A communication security system is described which uses a server to communicate to an unprotected network, such as the Internet. The system intercepts an IP packet prior to stack incursion and replaces the destination address with that of a firewall's network interface address. Because of the modification to the IP header destination address, an IP header checksum is recalculated prior to presentation to the local stack. The system uses a shim to replace the destination address and store the original destination address. When a communication is authorized, the firewall performs a system call to retrieve the original destination address such that the data communication can be routed to the indented destination address.
|
申请公布号 |
US6321336(B1) |
申请公布日期 |
2001.11.20 |
申请号 |
US19980042293 |
申请日期 |
1998.03.13 |
申请人 |
SECURE COMPUTING CORPORATION |
发明人 |
APPLEGATE JOHN;ROMATOSKI JEFF |
分类号 |
G06F11/00;H04L29/06;(IPC1-7):G06F11/00 |
主分类号 |
G06F11/00 |
代理机构 |
|
代理人 |
|
主权项 |
|
地址 |
|