发明名称 Multilayer firewall system
摘要 A system provides for establishing security in a network that include nodes having security functions operating in multiple protocol layers. Multiple network devices, such as remote access equipment, routers, switches, repeaters and network cards having security functions are configured to contribute to implementation of distributed firewall functions in the network. By distributing firewall functionality throughout many layers of the network in a variety of network devices, a pervasive firewall is implemented. The pervasive, multilayer firewall includes a policy definition component that accepts policy data that defines how the firewall should behave. The policy definition component can be a centralized component, or a component that is distributed over the network. The multilayer firewall also includes a collection of network devices that are used to enforce the defined policy. The security functions operating in this collection of network devices across multiple protocol layers are coordinated by the policy definition component so that particular devices enforce that part of the policy pertinent to their part of the network.
申请公布号 US5968176(A) 申请公布日期 1999.10.19
申请号 US19970865482 申请日期 1997.05.29
申请人 3COM CORPORATION 发明人 NESSETT, DANNY M.;SHERER, WILLIAM PAUL
分类号 G06F13/00;H04L29/06;(IPC1-7):G06F11/00 主分类号 G06F13/00
代理机构 代理人
主权项
地址