首页> 外国专利> Scalable security services for multicast in a router having integrated zone-based firewall

Scalable security services for multicast in a router having integrated zone-based firewall

机译:具有集成的基于区域的防火墙的路由器中的多播可扩展安全服务

摘要

A multicast-capable firewall allows firewall security policies to be applied to multicast traffic. The multicast-capable firewall may be integrated within a routing device, thus allowing a single device to provide both routing functionality, including multicast support, as well as firewall services. The routing device provides a user interface by which a user specifies one or more zones to be recognized by the integrated firewall when applying stateful firewall services to multicast packets. The user interface supports a syntax that allows the user to define subsets of the plurality of interfaces associated with the zones, and define a single multicast policy to be applied to multicast sessions associated with a multicast group. The multicast policy identifies common services to be applied pre-replication, and exceptions specifying additional services to be applied post-replication to copies of the multicast packets for the one or more zones.
机译:具有多播功能的防火墙允许将防火墙安全策略应用于多播流量。具有多播功能的防火墙可以集成在路由设备中,从而允许单个设备提供路由功能,包括多播支持以及防火墙服务。路由设备提供一个用户界面,当将状态防火墙服务应用于多播数据包时,用户可通过该界面指定集成防火墙可识别的一个或多个区域。用户界面支持语法,该语法允许用户定义与区域关联的多个接口的子集,并定义要应用于与多播组关联的多播会话的单个多播策略。多播策略标识要在复制前应用的公共服务,而异常则指定要在复制后应用于一个或多个区域的多播数据包副本的其他服务。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号