会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 2. 发明授权
    • Cooperative network security inspection
    • 合作网络安全检查
    • US08955093B2
    • 2015-02-10
    • US13860408
    • 2013-04-10
    • Choung-Yaw Michael ShiehMeng XuYi SunJia-Jyi Roger Lian
    • Choung-Yaw Michael ShiehMeng XuYi SunJia-Jyi Roger Lian
    • H04L29/06
    • H04L63/0218H04L63/0227H04L63/0263
    • A network system includes a security device and a network access device. The network access device is to receive a packet from a source node destined to a destination node, and to examine a data structure maintained by the network access device to determine whether the data structure stores a data member having a predetermined value, the data member indicating whether the packet should undergo security processing. If the data member matches the predetermined value, the packet is transmitted to a security device associated with the network access device to allow the security device to perform content inspection, and in response to a response received from the security device, the packet is routed to the destination node dependent upon the response. The packet is routed to the destination node without forwarding the packet to the security device.
    • 网络系统包括安全设备和网络接入设备。 网络接入设备是从目的地节点的源节点接收分组,并检查由网络接入设备维护的数据结构,以确定数据结构是否存储具有预定值的数据成员,数据成员指示 是否应该进行安全处理。 如果数据成员与预定值相匹配,则将分组发送到与网络接入设备相关联的安全设备,以允许安全设备执行内容检查,并且响应于从安全设备接收到的响应,将分组路由到 目标节点取决于响应。 分组被路由到目的地节点,而不将分组转发到安全设备。
    • 3. 发明申请
    • ADAPTIVE SESSION FORWARDING FOLLOWING VIRTUAL MACHINE MIGRATION DETECTION
    • 针对虚拟机移动检测的自适应会话
    • US20130275592A1
    • 2013-10-17
    • US13860404
    • 2013-04-10
    • Meng XuYi SunHsisheng WangChoung-Yaw Michael Shieh
    • Meng XuYi SunHsisheng WangChoung-Yaw Michael Shieh
    • H04L12/56
    • H04L45/14G06F9/45558G06F2009/4557G06F2009/45595H04L45/02H04L63/0209H04L63/20
    • A network system includes a first network access device having an input/output (IO) module of a firewall to capture a packet of a network session originated from a first node associated with the first network access device, a first security device having a firewall processing module to determine based on the captured packet whether the first node is a destination node that is receiving VM migration from a second node that is associated with a second network access device. The first security device is to update a first flow table within the first network access device. The network system further includes a second security device to receive a message from the first security device concerning the VM migration to update a second flow table of the second network access device, such that further network traffic of the network session is routed to the first node without interrupting the network session.
    • 网络系统包括具有防火墙的输入/输出(IO)模块的第一网络接入设备,用于捕获从与第一网络接入设备相关联的第一节点发起的网络会话的分组,具有防火墙处理的第一安全设备 模块,以基于所捕获的分组确定所述第一节点是否是从与第二网络接入设备相关联的第二节点接收VM迁移的目的地节点。 第一安全设备是更新第一网络接入设备内的第一流表。 网络系统还包括第二安全设备,用于从第一安全设备接收关于VM迁移的消息以更新第二网络接入设备的第二流表,使得网络会话的另外的网络业务路由到第一节点 而不会中断网络会话。
    • 5. 发明申请
    • COOPERATIVE NETWORK SECURITY INSPECTION
    • 合作网络安全检查
    • US20130291088A1
    • 2013-10-31
    • US13860408
    • 2013-04-10
    • Choung-Yaw Michael ShiehMeng XuYi SunJia-Jyi Roger Lian
    • Choung-Yaw Michael ShiehMeng XuYi SunJia-Jyi Roger Lian
    • H04L29/06
    • H04L63/0218H04L63/0227H04L63/0263
    • A network system includes a security device and a network access device. The network access device is to receive a packet from a source node destined to a destination node, and to examine a data structure maintained by the network access device to determine whether the data structure stores a data member having a predetermined value, the data member indicating whether the packet should undergo security processing. If the data member matches the predetermined value, the packet is transmitted to a security device associated with the network access device to allow the security device to perform content inspection, and in response to a response received from the security device, the packet is routed to the destination node dependent upon the response. The packet is routed to the destination node without forwarding the packet to the security device.
    • 网络系统包括安全设备和网络接入设备。 网络接入设备是从目的地节点的源节点接收分组,并检查由网络接入设备维护的数据结构,以确定数据结构是否存储具有预定值的数据成员,数据成员指示 是否应该进行安全处理。 如果数据成员与预定值相匹配,则将分组发送到与网络接入设备相关联的安全设备,以允许安全设备执行内容检查,并且响应于从安全设备接收到的响应,将分组路由到 目标节点取决于响应。 分组被路由到目的地节点,而不将分组转发到安全设备。