Methods and systems for enhanced support of TCP options in a TCP spoofed system
Abstract:
Methods and systems utilizing receiving, at a first proxy node, a first TCP SYN segment from a first endpoint to establish a TCP connection with a second endpoint, the first TCP SYN segment including a first TCP option having a first option-kind value; transmitting a first spoofed connection request message corresponding to the first TCP SYN segment from the first proxy node to a second proxy node associated with the second endpoint; including, in response to the first TCP option having the first option-kind value, an indication in the first spoofed connection request message that a TCP option having the first option-kind value was included in the first TCP SYN segment; receiving, at the first proxy node, a second TCP SYN segment from a third endpoint to establish a TCP connection with a fourth endpoint, the second TCP SYN segment including a second TCP option having a second option-kind value different from the first option-kind value; transmitting a second spoofed connection request message corresponding to the second TCP SYN segment from the first proxy node to a third proxy node associated with the fourth endpoint; and not including, in response to the second TCP option having the second option-kind value, an indication in the second spoofed connection request message that a TCP option having the second option-kind value was included in the second TCP SYN segment.
Information query
Patent Agency Ranking
0/0