发明名称 Method and system for locating network services with distributed network address translation
摘要 Methods and system for locating network services with distributed network address translation. Digital certificates are created that allow an external network device on an external network, such as the Internet, to request a service from an internal network device on an internal distributed network address translation network, such as a stub local area network. The digital certificates include information obtained with a Port Allocation Protocol used for distributed network address translation. The digital certificates are published on the internal network so they are accessible to external network devices. An external network device retrieves a digital certificate, extracts appropriate information, and sends a service request packet to an internal network device on an internal distributed network address translation network. The external network device is able to locate and request a service from an internal network device. An external network device can also request a security service, such as an Internet Protocol security ("IPsec") service from an internal network device. The external network device and the internal network device can establish a security service (e.g., Internet Key Exchange protocol service). The internal network device and external network device can then establish a Security Association using Security Parameter Indexes ("SPI") obtained using a distributed network address translation protocol. External network devices can request services, and security services on internal network devices on an internal distribute network address translation network that were previously unknown and unavailable to the external network devices.
申请公布号 US6055236(A) 申请公布日期 2000.04.25
申请号 US19990271025 申请日期 1999.03.17
申请人 3COM CORPORATION 发明人 NESSETT, DANNY M.;GRABELSKY, DAVID;BORELLA, MICHAEL S.;SIDHU, IKHLAQ S.
分类号 H04L29/06;H04L29/12;(IPC1-7):H04L12/50 主分类号 H04L29/06
代理机构 代理人
主权项
地址