Invention Grant
- Patent Title: Cooperated approach to network packet filtering
- Patent Title (中): 网络包过滤的合作方法
-
Application No.: US13882106Application Date: 2010-10-28
-
Publication No.: US09276875B2Publication Date: 2016-03-01
- Inventor: Yaozu Dong , Kun Tian
- Applicant: Yaozu Dong , Kun Tian
- Applicant Address: US CA Santa Clara
- Assignee: Intel Corporation
- Current Assignee: Intel Corporation
- Current Assignee Address: US CA Santa Clara
- Agency: Barnes & Thornburg LLP
- International Application: PCT/CN2010/001712 WO 20101028
- International Announcement: WO2012/055070 WO 20120503
- Main IPC: G06F13/00
- IPC: G06F13/00 ; H04L12/931 ; H04L12/701 ; G06F9/455 ; H04L29/06

Abstract:
An apparatus, system, method, and machine-readable medium are disclosed. In one embodiment the apparatus is a network interface controller that includes one virtual function owned by a virtual machine present in the computer system. The controller includes a simple filtering agent that is associated with the first virtual function. The agent enforces simple filter rules for received network packets. The simple filter rules are capable of blocking the network packets from reaching the virtual machine. The apparatus also includes another virtual function that is owned by a virtual machine monitor present in the computer system. The controller also includes a side bounce filtering agent to forward the first network packet to the second virtual function if the first packet is blocked by the at least one of the one or more simple filter rules.
Public/Granted literature
- US20140331221A1 COOPERATED APPROACH TO NETWORK PACKET FILTERING Public/Granted day:2014-11-06
Information query