发明名称 PACKET VALIDATION IN A VIRTUAL NETWORK INTERFACE ARCHITECTURE
摘要 <p>Roughly described, a network interface device receiving data packets from a computing device for transmission onto a network, the data packets having a certain characteristic, transmits the packet only if the sending queue has authority to send packets having that characteristic. The data packet characteristics can include transport protocol number, source and destination port numbers, source and destination IP addresses, for example. Authorizations can be programmed into the NIC by a kernel routine upon establishment of the transmit queue, based on the privilege level of the process for which the queue is being established. In this way, a user process can use an untrusted user-level protocol stack to initiate data transmission onto the network, while the NIC protects the remainder of the system or network from certain kinds of compromise.</p>
申请公布号 EP1884085(A1) 申请公布日期 2008.02.06
申请号 EP20060758664 申请日期 2006.04.25
申请人 SOLARFLARE COMMUNICATIONS INC 发明人 POPE, STEVE;RIDDOCH, DAVID;YU, CHING;ROBERTS, DEREK
分类号 H04L12/56 主分类号 H04L12/56
代理机构 代理人
主权项
地址
您可能感兴趣的专利