Information security – Access control or authentication – Network
Reexamination Certificate
2006-10-31
2006-10-31
Vu, Kim (Department: 2135)
Information security
Access control or authentication
Network
C726S003000, C709S224000
Reexamination Certificate
active
07131140
ABSTRACT:
A method for protecting firewall load balancers from a denial of service attack is provided. Packets are received by the firewall load balancer. Each packet has a source and a destination. The firewall load balancer is equipped with a connection database that can contain entries about the packets. Upon receipt of a packet, the connection database is queried to determine whether or not there is an entry for the received packet. If an entry is found in the database, the packet is forwarded to its destination. Otherwise, if the packet was received from a firewall, then a new connection entry for the packet is built and is saved to the connection database and the packet is forwarded on to its destination. If the packet does not have an entry (match) in the connection database and the packet was not received from a firewall, then the packet is forwarded to a firewall.
REFERENCES:
patent: 4857912 (1989-08-01), Everett, Jr. et al.
patent: 5511122 (1996-04-01), Atkinson
patent: 5627819 (1997-05-01), Dev et al.
patent: 5708659 (1998-01-01), Rostoker et al.
patent: 5740438 (1998-04-01), Ratcliff et al.
patent: 5774660 (1998-06-01), Brendel et al.
patent: 5835726 (1998-11-01), Shwed et al.
patent: 5892903 (1999-04-01), Klaus
patent: 5937159 (1999-08-01), Meyers et al.
patent: 5951694 (1999-09-01), Choquier et al.
patent: 6006264 (1999-12-01), Colby et al.
patent: 6016305 (2000-01-01), Borst et al.
patent: 6061798 (2000-05-01), Coley et al.
patent: 6101170 (2000-08-01), Doherty et al.
patent: 6128642 (2000-10-01), Doraswamy et al.
patent: 6128657 (2000-10-01), Okanoya et al.
patent: 6137777 (2000-10-01), Vaid et al.
patent: 6185619 (2001-02-01), Joffe et al.
patent: 6201962 (2001-03-01), Sturniolo et al.
patent: 6212558 (2001-04-01), Antur et al.
patent: 6243360 (2001-06-01), Basilico
patent: 6249801 (2001-06-01), Zisapel et al.
patent: 6253337 (2001-06-01), Maloney et al.
patent: 6256773 (2001-07-01), Bowman-Amuah
patent: 6263368 (2001-07-01), Martin
patent: 6298383 (2001-10-01), Gutman et al.
patent: 6304262 (2001-10-01), Maloney et al.
patent: 6304973 (2001-10-01), Williams
patent: 6321336 (2001-11-01), Applegate et al.
patent: 6327622 (2001-12-01), Jindal et al.
patent: 6330602 (2001-12-01), Law et al.
patent: 6370573 (2002-04-01), Bowman-Amuah
patent: 6377571 (2002-04-01), Tai
patent: 6377982 (2002-04-01), Rai et al.
patent: 6393458 (2002-05-01), Gigliotti et al.
patent: 6393482 (2002-05-01), Rai et al.
patent: 6400722 (2002-06-01), Chuah et al.
patent: 6414950 (2002-07-01), Rai et al.
patent: 6421714 (2002-07-01), Rai et al.
patent: 6424621 (2002-07-01), Ramaswamy et al.
patent: 6434618 (2002-08-01), Cohen et al.
patent: 6442165 (2002-08-01), Sitaraman et al.
patent: 6452915 (2002-09-01), Jorgensen
patent: 6466571 (2002-10-01), Dynarski et al.
patent: 6473802 (2002-10-01), Masters
patent: 6484143 (2002-11-01), Swildens et al.
patent: 6496935 (2002-12-01), Fink et al.
patent: 6512754 (2003-01-01), Feder et al.
patent: 6519703 (2003-02-01), Joyce
patent: 6529501 (2003-03-01), Zhao et al.
patent: 6536037 (2003-03-01), Guheen et al.
patent: 6546423 (2003-04-01), Dutta et al.
patent: 6549208 (2003-04-01), Maloney et al.
patent: 6550012 (2003-04-01), Villa et al.
patent: 6578147 (2003-06-01), Shanklin et al.
patent: 6606316 (2003-08-01), Albert et al.
patent: 6606744 (2003-08-01), Mikurak
patent: 6615166 (2003-09-01), Guheen et al.
patent: 6665702 (2003-12-01), Zisapel et al.
patent: 6701374 (2004-03-01), Gupta et al.
patent: 6742045 (2004-05-01), Albert et al.
patent: 6775280 (2004-08-01), Ma et al.
patent: 6792463 (2004-09-01), Lamberton et al.
patent: 6880089 (2005-04-01), Bommareddy et al.
patent: 2003/0229809 (2003-12-01), Wexler et al.
Information Sciences Institute, “Internet Protocol, Darpa Internet Program Protocol Specification,” Univ. of Southern Califorinia, 49 pgs, Sep. 1981.
S. Deering, “Host Extensions for IP Multicasting,” Standford University, 17 pgs., Aug. 1989.
Albert Mark
Batz Robert M
Gray Richard
Hull Sean W
Menditto Louis F
Baker & Botts L.L.P.
Cisco Technology Inc.
Truong T. B.
Vu Kim
LandOfFree
Method for protecting a firewall load balancer from a denial... does not yet have a rating. At this time, there are no reviews or comments for this patent.
If you have personal experience with Method for protecting a firewall load balancer from a denial..., we encourage you to share that experience with our LandOfFree.com community. Your opinion is very important and Method for protecting a firewall load balancer from a denial... will most certainly appreciate the feedback.
Profile ID: LFUS-PAI-O-3718414