Invention Grant
US08112547B2 Efficiently hashing packet keys into a firewall connection table
有权
将数据包密钥有效地散列到防火墙连接表中
- Patent Title: Efficiently hashing packet keys into a firewall connection table
- Patent Title (中): 将数据包密钥有效地散列到防火墙连接表中
-
Application No.: US12796363Application Date: 2010-06-08
-
Publication No.: US08112547B2Publication Date: 2012-02-07
- Inventor: Everett Arthur Corl, Jr. , Gordon Taylor Davis , Clark Debs Jeffries , Steven Richard Perrin , Hiroshi Takada , Victoria Sue Thio
- Applicant: Everett Arthur Corl, Jr. , Gordon Taylor Davis , Clark Debs Jeffries , Steven Richard Perrin , Hiroshi Takada , Victoria Sue Thio
- Applicant Address: US NY Armonk
- Assignee: International Business Machines Corporation
- Current Assignee: International Business Machines Corporation
- Current Assignee Address: US NY Armonk
- Agency: Yee & Associates, P.C.
- Agent Yuanmin Cai
- Main IPC: G06F15/173
- IPC: G06F15/173

Abstract:
A method for increasing the capacity of a connection table in a firewall accelerator by means of mapping packets in one session with some common security actions into one table entry. For each of five Network Address Translation (NAT) configurations, a hash function is specified. The hash function takes into account which of four possible arrival types a packet at a firewall accelerator may have. When different arrival types of packets in the same session are processed, two or more arrival types may have the same hash value.
Public/Granted literature
- US20100241746A1 Method, Program and System for Efficiently Hashing Packet Keys into a Firewall Connection Table Public/Granted day:2010-09-23
Information query