首页> 外国专利> MECHANISMS FOR LAYER 7 CONTEXT ACCUMULATION FOR ENFORCING LAYER 4, LAYER 7 AND VERB-BASED RULES

MECHANISMS FOR LAYER 7 CONTEXT ACCUMULATION FOR ENFORCING LAYER 4, LAYER 7 AND VERB-BASED RULES

机译:第7层上下文累加机制,用于执行第4层,第7层和基于动词的规则

摘要

The method for implementing mechanisms for Layer 7 context accumulation for enforcing Layers 4, 7, and verb-based rules is presented. The method comprises: receiving stream data, and identifying a packet in the stream. If the packet includes Layer 7 headers: for each Layer 7 header: determining content of the packet identified by a Layer 7 header's identifier; and parsing the content to extract firewall input data. If one or more rules at least partially match the firewall input data, determining that a particular rule also includes additional information that cannot be found in the firewall input data; performing a DPI on the content to determine whether at least a portion of the additional information is found in the content; extracting additional input data from the content and adding it to the firewall input data; and applying the rules to the firewall input data to process the packet.
机译:提出了用于实施第7层上下文累积机制以实施第4层,第7层和基于动词的规则的机制的方法。该方法包括:接收流数据,以及识别流中的分组。如果分组包括第7层报头:对于每个第7层报头:确定由第7层报头的标识符标识的分组内容;解析内容以提取防火墙输入数据。如果一个或多个规则至少部分与防火墙输入数据匹配,则确定特定规则还包括在防火墙输入数据中找不到的其他信息;对内容执行DPI,以确定是否在内容中找到至少一部分附加信息;从内容中提取其他输入数据,并将其添加到防火墙输入数据中;将规则应用于防火墙输入数据以处理该数据包。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号