首页> 外国专利> Stateful packet forwarding in a firewall cluster

Stateful packet forwarding in a firewall cluster

机译:防火墙群集中的状态数据包转发

摘要

A method is disclosed for processing data using multiple interconnected firewall devices. A connection is initiated between an internal host and an external network, through a home firewall device. A separate, receiving firewall device may then receive a data packet for the internal host as part of a flow. The receiving device attempts to determine the home device for the packet. The receiving device sends a multicast to all other firewall devices in the firewall cluster. The multicast includes the data packet and information about the receiving device. The home device receives the multicast and responds, indicating that it is the home device. The home device extracts the data packet from the multicast and forwards it to the internal host. The receiving device stores the response information along with other forwarding information that is used to automatically forward to the home device subsequent data packets for the flow.
机译:公开了一种用于使用多个互连的防火墙设备处理数据的方法。通过家庭防火墙设备在内部主机和外部网络之间启动连接。然后,单独的接收防火墙设备可以接收内部主机的数据包,作为流的一部分。接收设备尝试确定该数据包的家用设备。接收设备将多播发送到防火墙群集中的所有其他防火墙设备。多播包括数据包和有关接收设备的信息。家用设备接收多播并作出响应,指示它是家用设备。家用设备从组播中提取数据包,并将其转发到内部主机。接收设备将响应信息与其他转发信息一起存储,该转发信息用于将后续的数据流自动转发给家庭设备。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号