发明名称 Brandväggsapparat och metod för att kontrollera nätverksdatapakettrafik mellan interna och externa nätverk
摘要 A firewall (3), controlling network data packet traffic between internal and external networks (1,5,4), comprising filtering means, in dependence of the contents in data fields of a data packet being transmitted between said networks, selecting from a total set of rules a rule applicable to the data packet, whereby said packet is blocked or forwarded through the firewall (3). A 2-dimensional address lookup means (8) performs a 2-dimensional lookup of the source and destination addresses of the packet in a set of address prefixes, each prefix having a subset of rules of the total set of rules, in order to find a prefix associated with said source and destination addresses, and rule matching means (10), performs-based on the contents of said data fields-a rule matching in order to find the rule applicable to the data packet.
申请公布号 SE513828(C2) 申请公布日期 2000.11.13
申请号 SE19980002415 申请日期 1998.07.02
申请人 EFFNET GROUP AB 发明人 MIKAEL *SUNDSTROEM;OLOF *JOHANSSON;JOEL *LINDHOLM;ANDREJ *BRODNIK;SVANTE *CARLSSON
分类号 G06F13/00;G06F9/46;H04L12/66;H04L29/06;(IPC1-7):G06F1/00;H04L9/00;H04L12/56 主分类号 G06F13/00
代理机构 代理人
主权项
地址