[go: up one dir, main page]

FI20010256A0 - Pakettidatayhteystietojen käsittely tietoturvagatewayelementissä - Google Patents

Pakettidatayhteystietojen käsittely tietoturvagatewayelementissä

Info

Publication number
FI20010256A0
FI20010256A0 FI20010256A FI20010256A FI20010256A0 FI 20010256 A0 FI20010256 A0 FI 20010256A0 FI 20010256 A FI20010256 A FI 20010256A FI 20010256 A FI20010256 A FI 20010256A FI 20010256 A0 FI20010256 A0 FI 20010256A0
Authority
FI
Finland
Prior art keywords
screening information
information
packet data
security gateway
gateway element
Prior art date
Application number
FI20010256A
Other languages
English (en)
Swedish (sv)
Inventor
Tuomo Syvaenne
Original Assignee
Stonesoft Oy
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Stonesoft Oy filed Critical Stonesoft Oy
Priority to FI20010256A priority Critical patent/FI20010256A0/fi
Publication of FI20010256A0 publication Critical patent/FI20010256A0/fi
Priority to US09/962,722 priority patent/US7127739B2/en
Priority to EP02100042A priority patent/EP1231754B1/en
Priority to DE60239432T priority patent/DE60239432D1/de

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/02Network architectures or network communication protocols for network security for separating internal from external traffic, e.g. firewalls
    • H04L63/0227Filtering policies
    • H04L63/0263Rule management
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/02Network architectures or network communication protocols for network security for separating internal from external traffic, e.g. firewalls
    • H04L63/0272Virtual private networks
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/10Network architectures or network communication protocols for network security for controlling access to devices or network resources
    • H04L63/104Grouping of entities
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/02Network architectures or network communication protocols for network security for separating internal from external traffic, e.g. firewalls
    • H04L63/0227Filtering policies
    • H04L63/0254Stateful filtering
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L69/00Network arrangements, protocols or services independent of the application payload and not provided for in the other groups of this subclass
    • H04L69/22Parsing or analysis of headers

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Hardware Design (AREA)
  • Computer Security & Cryptography (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Business, Economics & Management (AREA)
  • General Business, Economics & Management (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)
  • Computer And Data Communications (AREA)
FI20010256A 2001-02-12 2001-02-12 Pakettidatayhteystietojen käsittely tietoturvagatewayelementissä FI20010256A0 (fi)

Priority Applications (4)

Application Number Priority Date Filing Date Title
FI20010256A FI20010256A0 (fi) 2001-02-12 2001-02-12 Pakettidatayhteystietojen käsittely tietoturvagatewayelementissä
US09/962,722 US7127739B2 (en) 2001-02-12 2001-09-21 Handling information about packet data connections in a security gateway element
EP02100042A EP1231754B1 (en) 2001-02-12 2002-01-21 Handling information about packet data connections in a security gateway element
DE60239432T DE60239432D1 (de) 2001-02-12 2002-01-21 Handhabung von Information über Datenpaketverbindungen in einer Sicherheitsdurchgangsvorrichtung

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
FI20010256A FI20010256A0 (fi) 2001-02-12 2001-02-12 Pakettidatayhteystietojen käsittely tietoturvagatewayelementissä

Publications (1)

Publication Number Publication Date
FI20010256A0 true FI20010256A0 (fi) 2001-02-12

Family

ID=8560312

Family Applications (1)

Application Number Title Priority Date Filing Date
FI20010256A FI20010256A0 (fi) 2001-02-12 2001-02-12 Pakettidatayhteystietojen käsittely tietoturvagatewayelementissä

Country Status (4)

Country Link
US (1) US7127739B2 (fi)
EP (1) EP1231754B1 (fi)
DE (1) DE60239432D1 (fi)
FI (1) FI20010256A0 (fi)

Families Citing this family (28)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US8539089B2 (en) * 2003-04-23 2013-09-17 Oracle America, Inc. System and method for vertical perimeter protection
US20050022017A1 (en) * 2003-06-24 2005-01-27 Maufer Thomas A. Data structures and state tracking for network protocol processing
US7792963B2 (en) * 2003-09-04 2010-09-07 Time Warner Cable, Inc. Method to block unauthorized network traffic in a cable data network
US20070091883A1 (en) * 2005-10-21 2007-04-26 Wee Susie J Serial processing of data using information about the data and information about a streaming network
JP4983287B2 (ja) * 2007-02-13 2012-07-25 富士通株式会社 ルール検証装置およびルール検証方法
US8813220B2 (en) 2008-08-20 2014-08-19 The Boeing Company Methods and systems for internet protocol (IP) packet header collection and storage
US7995496B2 (en) * 2008-08-20 2011-08-09 The Boeing Company Methods and systems for internet protocol (IP) traffic conversation detection and storage
US8762515B2 (en) * 2008-08-20 2014-06-24 The Boeing Company Methods and systems for collection, tracking, and display of near real time multicast data
US8726382B2 (en) * 2008-08-20 2014-05-13 The Boeing Company Methods and systems for automated detection and tracking of network attacks
US7903566B2 (en) * 2008-08-20 2011-03-08 The Boeing Company Methods and systems for anomaly detection using internet protocol (IP) traffic conversation data
DE102011009518B4 (de) * 2011-01-26 2013-09-12 Ruprecht-Karls-Universität Heidelberg Schaltungsanordnung für Verbindungsschnittstelle
US9565213B2 (en) 2012-10-22 2017-02-07 Centripetal Networks, Inc. Methods and systems for protecting a secured network
US9137205B2 (en) 2012-10-22 2015-09-15 Centripetal Networks, Inc. Methods and systems for protecting a secured network
US9203806B2 (en) 2013-01-11 2015-12-01 Centripetal Networks, Inc. Rule swapping in a packet network
US9124552B2 (en) 2013-03-12 2015-09-01 Centripetal Networks, Inc. Filtering network data transfers
US9094445B2 (en) 2013-03-15 2015-07-28 Centripetal Networks, Inc. Protecting networks from cyber attacks and overloading
US9264370B1 (en) 2015-02-10 2016-02-16 Centripetal Networks, Inc. Correlating packets in communications networks
US9866576B2 (en) 2015-04-17 2018-01-09 Centripetal Networks, Inc. Rule-based network-threat detection
US9917856B2 (en) 2015-12-23 2018-03-13 Centripetal Networks, Inc. Rule-based network-threat detection for encrypted communications
US11729144B2 (en) 2016-01-04 2023-08-15 Centripetal Networks, Llc Efficient packet capture for cyber threat analysis
US10503899B2 (en) 2017-07-10 2019-12-10 Centripetal Networks, Inc. Cyberanalysis workflow acceleration
US11233777B2 (en) 2017-07-24 2022-01-25 Centripetal Networks, Inc. Efficient SSL/TLS proxy
US10284526B2 (en) 2017-07-24 2019-05-07 Centripetal Networks, Inc. Efficient SSL/TLS proxy
CN108337266B (zh) * 2018-03-07 2020-08-11 中国科学院信息工程研究所 一种高效的协议客户端漏洞发掘方法与系统
US10333898B1 (en) 2018-07-09 2019-06-25 Centripetal Networks, Inc. Methods and systems for efficient network protection
US11362996B2 (en) 2020-10-27 2022-06-14 Centripetal Networks, Inc. Methods and systems for efficient adaptive logging of cyber threat incidents
US11159546B1 (en) 2021-04-20 2021-10-26 Centripetal Networks, Inc. Methods and systems for efficient threat context-aware packet filtering for network protection
CN114912503B (zh) * 2021-12-30 2025-02-07 天翼数字生活科技有限公司 筛选家庭网关的下联设备的方法和系统

Family Cites Families (22)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US5577209A (en) 1991-07-11 1996-11-19 Itt Corporation Apparatus and method for providing multi-level security for communication among computers and terminals on a network
US5606668A (en) * 1993-12-15 1997-02-25 Checkpoint Software Technologies Ltd. System for securing inbound and outbound data packet flow in a computer network
US5835726A (en) * 1993-12-15 1998-11-10 Check Point Software Technologies Ltd. System for securing the flow of and selectively modifying packets in a computer network
EP0818103B1 (en) 1995-03-30 2004-02-25 Azure Solutions Limited Detecting possible fraudulent communications usage
US5781550A (en) * 1996-02-02 1998-07-14 Digital Equipment Corporation Transparent and secure network gateway
US5828833A (en) 1996-08-15 1998-10-27 Electronic Data Systems Corporation Method and system for allowing remote procedure calls through a network firewall
US6167520A (en) * 1996-11-08 2000-12-26 Finjan Software, Inc. System and method for protecting a client during runtime from hostile downloadables
US6154844A (en) * 1996-11-08 2000-11-28 Finjan Software, Ltd. System and method for attaching a downloadable security profile to a downloadable
US5905859A (en) 1997-01-09 1999-05-18 International Business Machines Corporation Managed network device security method and apparatus
US6173364B1 (en) 1997-01-15 2001-01-09 At&T Corp. Session cache and rule caching method for a dynamic filter
US6044402A (en) 1997-07-02 2000-03-28 Iowa State University Research Foundation Network connection blocker, method, and computer readable memory for monitoring connections in a computer network and blocking the unwanted connections
US6141749A (en) 1997-09-12 2000-10-31 Lucent Technologies Inc. Methods and apparatus for a computer network firewall with stateful packet filtering
US6130924A (en) 1998-04-20 2000-10-10 Sun Microsystems, Inc. Method and apparatus for administrative control over data transmission using dynamic filtering in a multicast network
CA2338265A1 (en) 1998-07-21 2000-02-03 Raytheon Company Information security analysis system
US6158010A (en) 1998-10-28 2000-12-05 Crosslogix, Inc. System and method for maintaining security in a distributed computer network
CA2287689C (en) * 1998-12-03 2003-09-30 P. Krishnan Adaptive re-ordering of data packet filter rules
US6691168B1 (en) * 1998-12-31 2004-02-10 Pmc-Sierra Method and apparatus for high-speed network rule processing
US6631466B1 (en) * 1998-12-31 2003-10-07 Pmc-Sierra Parallel string pattern searches in respective ones of array of nanocomputers
US6611875B1 (en) * 1998-12-31 2003-08-26 Pmc-Sierra, Inc. Control system for high speed rule processors
US6510509B1 (en) * 1999-03-29 2003-01-21 Pmc-Sierra Us, Inc. Method and apparatus for high-speed network rule processing
US7240368B1 (en) 1999-04-14 2007-07-03 Verizon Corporate Services Group Inc. Intrusion and misuse deterrence system employing a virtual network
US6650660B1 (en) * 1999-07-27 2003-11-18 Pluris, Inc. Apparatus and method for synchronization of multiple data paths and recovery from lost synchronization

Also Published As

Publication number Publication date
US20020112188A1 (en) 2002-08-15
EP1231754B1 (en) 2011-03-16
DE60239432D1 (de) 2011-04-28
EP1231754A3 (en) 2005-03-02
EP1231754A2 (en) 2002-08-14
US7127739B2 (en) 2006-10-24

Similar Documents

Publication Publication Date Title
FI20010256A0 (fi) Pakettidatayhteystietojen käsittely tietoturvagatewayelementissä
CA2457718A1 (en) Using link state information to discover ip network topology
WO2004021626A3 (en) System and method for handling out-of-order frames
EP1761035A3 (en) A method and system for forwarding images over a communication network
WO2002065700A3 (en) An interconnection system
WO2004059288A3 (en) Isolated communication sample processing system and methods of biological slide processing
EP1109373A3 (en) Method and apparatus for forwarding packet fragments
GB2408652A (en) Automated configuration of packet routed network
GB2372123A (en) Multiple storage array control
AU2002221888A1 (en) Method and system for handling network congestion
FI20010552A0 (fi) Tilatietojen käsittely verkkoelementtiklusterissa
ATE297570T1 (de) Cut-through -durchschaltung und paketfilterung in einem rechnersystem
WO2002009357A3 (en) Routing and storage within a computer network
WO2004059922A3 (en) Routing method and packet communications network
WO2002049279A3 (en) System and method for assisting in controlling real-time transport protocol flow through multiple networks via media flow routing
WO2005119970A3 (en) Identifying reverse path forwarding information
DE60041186D1 (de) Element für ein kommunikationssystem
WO2008058741A3 (de) Verfahren zum zugriff auf einen tragbaren speicherdatenträger mit zusatzmodul und tragbarer speicherdatenträger
EP0959590A3 (en) Data communication system operating at maximum data rate
CA2276577A1 (en) Method and apparatus for routing in a communication or data network, or a network comprising communication and data networks
FI972040A0 (fi) Foerfarande foer paketformad dataoeverfoering
ATE407498T1 (de) Mechanismus zur erkennung von auf identitätsfälschung basierenden angriffen in einem drahtlosen netz
WO2003050644A3 (en) Protecting against malicious traffic
DE60313501D1 (de) System und Verfahren zur Verwaltung passiver Netzwerkeinrichtungen under Verwendung von Umsetzverbindungen
ATE324002T1 (de) Datenpaketfilterung in einer client-router-server architektur