Information security – Access control or authentication – Network
Reexamination Certificate
2006-09-12
2006-09-12
Smithers, Matthew (Department: 2137)
Information security
Access control or authentication
Network
C709S241000, C726S013000
Reexamination Certificate
active
07107613
ABSTRACT:
According to one embodiment, the number of tunnels on a network may be reduced. A set of tunnels are selected which exchange data packets between a first security device and a second security device. Each tunnel in the set of tunnels specify a dimensional range for data packets that are subject to that tunnel. A super tunnel is determined to replace the set of tunnels, so that a dimensional range of the data packets that are made subject to the super tunnel encompass a dimensional range of the data packets that were made subject to the set of tunnels. A determination is made as to whether the super tunnel excludes data packets that are permitted by the first security device and the second security device, but not subject to any one of the tunnels other than tunnels in the set of tunnels. In response to determining that the tunnel excludes data packets that are permitted by the first security device and the second security device, but not subject to any one of the tunnels in the set of tunnels, the super tunnel is implemented between the first security device and the second security device.
REFERENCES:
patent: 6438612 (2002-08-01), Ylonen et al.
patent: 6738909 (2004-05-01), Cheng et al.
patent: 2002/0178361 (2002-11-01), Genty et al.
patent: 2003/0135753 (2003-07-01), Batra et al.
patent: 2003/0140142 (2003-07-01), Marples et al.
Ioannidis et al., “Implementing a Distributed Firewall”, 2000, ACM 1-58113-203-4/00/0011, pp. 190-199.
Guttman, “Filtering Postures: Local Enforcement for Global Policies”, 1997, IEEE, pp. 120-129.
Ioannidis et al., “Implementing a Distributed Firewall”, 2000, ACM, pp. 190-199.
Bhattacharya Partha
Chen Shigang
Hinrichs Susan
Cisco Technology Inc.
Hickman Palermo & Truong & Becker LLP
Smithers Matthew
LandOfFree
Method and apparatus for reducing the number of tunnels used... does not yet have a rating. At this time, there are no reviews or comments for this patent.
If you have personal experience with Method and apparatus for reducing the number of tunnels used..., we encourage you to share that experience with our LandOfFree.com community. Your opinion is very important and Method and apparatus for reducing the number of tunnels used... will most certainly appreciate the feedback.
Profile ID: LFUS-PAI-O-3581810