首页> 外国专利> FULLY QUALIFIED DOMAIN NAME-BASED TRAFFIC CONTROL FOR VIRTUAL PRIVATE NETWORK ACCESS CONTROL

FULLY QUALIFIED DOMAIN NAME-BASED TRAFFIC CONTROL FOR VIRTUAL PRIVATE NETWORK ACCESS CONTROL

机译:基于完全域名的基于流量的虚拟专用网络访问控制

摘要

A system includes a virtual private network (VPN) gateway and a client device. The VPN gateway receives a domain name system response through a physical coding sublayer. The VPN gateway fetches a fully qualified domain name corresponding to the domain name system response, and fetches one or more access control list rules from an access control list table for a specific user account. The VPN gateway installs an Internet protocol (IP) address in the access control list table for each access control list rule and handles requested data traffic to the IP address. The client device creates a virtual tunnel interface route with a port of a transmission control protocol (TCP) listener device and parses the domain name system response. The client device updates a domain name system cache with the fully qualified domain name and the IP address and sends unencrypted network traffic over the virtual tunnel interface route.
机译:系统包括虚拟专用网(VPN)网关和客户端设备。 VPN网关通过物理编码子层接收域名系统响应。 VPN网关获取与域名系统响应相对应的完全限定域名,并从访问控制列表中获取特定用户帐户的一个或多个访问控制列表规则。 VPN网关在访问控制列表中为每个访问控制列表规则安装一个Internet协议(IP)地址,并处理到该IP地址的请求数据流量。客户端设备使用传输控制协议(TCP)侦听器设备的端口创建虚拟隧道接口路由,并解析域名系统响应。客户端设备使用完全限定的域名和IP地址更新域名系统缓存,并通过虚拟隧道接口路由发送未加密的网络流量。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号