Invention Grant
- Patent Title: Method for managing connections in firewalls
- Patent Title (中): 管理防火墙连接的方法
-
Application No.: US13938578Application Date: 2013-07-10
-
Publication No.: US08910267B2Publication Date: 2014-12-09
- Inventor: Alexandr Vyacheslavovich Ivanov
- Applicant: Joint Stock Company “InfoTeCS”
- Applicant Address: RU Moscow
- Assignee: Joint Stock Company “InfoTeCS”
- Current Assignee: Joint Stock Company “InfoTeCS”
- Current Assignee Address: RU Moscow
- Agency: Honigman Miller Schwartz and Cohn LLP
- Priority: RU2012145170 20121024
- Main IPC: H04L29/06
- IPC: H04L29/06

Abstract:
The disclosure relates to a method for managing connections in a firewall. The method includes receiving packets from an external network; generating a connection table; determining the total number of currently established connections; determining a level of firewall load by comparing the number of established connections with a threshold; identifying new and established connections based on two-way exchange of packets between a client and server; identifying closed connections based on processing ICMP error messages or flags in a TCP header; and dynamically determining current timeout values for connections from the network protocol type, the connection state, and the firewall load level. The method also includes modifying the last packet processing timestamp if any packet is passed within a given connection or a group of connections; and removing the connection if the last packet processing timestamp differs from the current time by a value greater than the timeout of said connection.
Public/Granted literature
- US20140115686A1 Method for Managing Connections in Firewalls Public/Granted day:2014-04-24
Information query