Methods for packet filtering including packet invalidation...

Information security – Access control or authentication – Network

Reexamination Certificate

Rate now

  [ 0.00 ] – not rated yet Voters 0   Comments 0

Details

C713S154000, C709S229000

Reexamination Certificate

active

07013482

ABSTRACT:
Methods and systems for firewall/data protection that filters data packets in real time and without packet buffering are disclosed. A data packet filtering hub, which may be implemented as part of a switch or router, receives a packet on one link, reshapes the electrical signal, and transmits it to one or more other links. During this process, a number of filters checks are performed in parallel, resulting in a decision about whether each packet should or should not be invalidated by the time that the last bit is transmitted. To execute this task, the filtering hub performs rules-based filtering on several levels simultaneously, preferably with a programmable logic or other hardware device. Various methods for packet filtering in real time and without buffering with programmable logic are disclosed. The system may include constituent elements of a stateful packet filtering hub, such as microprocessors, controllers, and integrated circuits. The system may be reset, enabled, disabled, configured, and/or reconfigured with toggles or other physical switches. Audio and visual feedback may be provided regarding the operation and status of the system.

REFERENCES:
patent: 5343471 (1994-08-01), Cassagnol
patent: 5426378 (1995-06-01), Ong
patent: 5426379 (1995-06-01), Trimberger
patent: 5530695 (1996-06-01), Dighe et al.
patent: 5590060 (1996-12-01), Granville
patent: 5657316 (1997-08-01), Nakagaki et al.
patent: 5740375 (1998-04-01), Dunne et al.
patent: 5745229 (1998-04-01), Jung
patent: 5794033 (1998-08-01), Aldebert et al.
patent: 5835726 (1998-11-01), Shwed et al.
patent: 5884025 (1999-03-01), Baehr et al.
patent: 5903566 (1999-05-01), Flammer
patent: 5905859 (1999-05-01), Holloway et al.
patent: 5968176 (1999-10-01), Nessett et al.
patent: 5974547 (1999-10-01), Klimenko
patent: 6003133 (1999-12-01), Moughanni et al.
patent: 6009475 (1999-12-01), Shrader
patent: 6011797 (2000-01-01), Sugawara
patent: 6020758 (2000-02-01), Patel
patent: 6049222 (2000-04-01), Lawman
patent: 6052785 (2000-04-01), Lin
patent: 6052788 (2000-04-01), Wesinger et al.
patent: 6076168 (2000-06-01), Fiveash
patent: 6078736 (2000-06-01), Guccione
patent: 6092108 (2000-07-01), DiPlacido et al.
patent: 6092123 (2000-07-01), Steffan
patent: 6133844 (2000-10-01), Ahne et al.
patent: 6134662 (2000-10-01), Levy et al.
patent: 6151625 (2000-11-01), Swales
patent: 6175839 (2001-01-01), Takao
patent: 6182225 (2001-01-01), Hagiuda
patent: 6215769 (2001-04-01), Ghani
patent: 6310692 (2001-10-01), Fan
patent: 6326806 (2001-12-01), Fallside
patent: 6333790 (2001-12-01), Kageyama
patent: 6335935 (2002-01-01), Kadambi et al.
patent: 6343320 (2002-01-01), Fairchild
patent: 6363519 (2002-03-01), Levi
patent: 6374318 (2002-04-01), Hayes
patent: 6389544 (2002-05-01), Katagiri
patent: 6414476 (2002-07-01), Yagi
patent: 6430711 (2002-08-01), Sekizawa
patent: 6549947 (2003-04-01), Suzuki
patent: 6608816 (2003-08-01), Nichols
patent: 6628653 (2003-09-01), Salim
patent: 6640334 (2003-10-01), Rasmussen
patent: 6691168 (2004-02-01), Bal et al.
patent: 6700891 (2004-03-01), Wong
patent: 6734985 (2004-05-01), Ochiai
patent: 6771646 (2004-08-01), Sarkissian
patent: 6779004 (2004-08-01), Zintel
patent: 6791992 (2004-09-01), Yun et al.
patent: WO 96/34479 (1996-10-01), None
patent: WO 99/48303 (1999-09-01), None
patent: WO 00/02114 (2000-01-01), None
3com. “SuperStack 3 Firewall”, 2000 3com.
Hughes, James. “A High Speed Firewall Architecture for ATM/OC-3c”, Feb. 1996.
IBM Technical Disclosure Bulletins NN8606320 (1986), NN950431 (1995), NA81123528 (1981), NN9704141 (1997), NN9512419 (1995), NN9502341 (1995), NN9308183 (1993), NN8606254 (1986), NN83102393 (1983).
Lakshman, T.V. “High-Speed Policy-based Packet Forwarding Using Efficient Multi-dimensional Range Matching”, 1998 ACM, pp. 203-214.
Network ICE Corporation. “Black ICE Pro User's Guide Version 2.0”, Jun. 2000 (archive.org).
Packeteer, Inc. “PacketShaper 4000 Getting Started Version 4.0”, Mar. 1999.
Symantec, Inc. “Norton Personal Firewall 2000 User's Guide Version 2.0”, Jun. 2000 (archive.org).
Xu, Jun and Mukesh Singhal. “Design of a High-Performance ATM Firewall”, 1999 ACM.
Xu, Jun and Mukesh Singhal. “Design of a High-Performance ATM Firewall”, 1998 ACM, pp. 93-102.
AARNet. “ATM”, <http://www.aarnet.edu.au/engineering
etworkdesign/mtu/atm.html>.
Derfler, Jr., Frank J. et al. How Networks Work, Sep. 2000, pp. 162-167.
Newton, Harry. Newton's TELECOM Dictionary, 2003 CMP Books, pp. 78-79.
Unknown. “ATM Efficiency ”, <http://homepages.uel.ac.uk/u0227461/Website/efficiency.htm>.
“Jini Architecture Specifications.” Version 1.1, Sun Microsystems, Inc., Oct. 2000. Available from Internet: http://www.sun.com/jini/specs/jini1—1.pdf, pp. 1-20.
“Jini Device Architecture Specifications.” Version 1.1, Sun Microsystems, Inc., Oct. 2000. Available from Internet: http://www.sun.com/jini/specs/devicearch1—1.pdf, pp. 1-14.
Sollins, K., “The TFTP Protocol (Revision 2.0)”, MIT, Jul. 1992. Available from Internet: http://www.cis.ohio-state.edu/cgi-bin/rfc/rfc1350.html, pp. 1-10.

LandOfFree

Say what you really think

Search LandOfFree.com for the USA inventors and patents. Rate them and share your experience with other people.

Rating

Methods for packet filtering including packet invalidation... does not yet have a rating. At this time, there are no reviews or comments for this patent.

If you have personal experience with Methods for packet filtering including packet invalidation..., we encourage you to share that experience with our LandOfFree.com community. Your opinion is very important and Methods for packet filtering including packet invalidation... will most certainly appreciate the feedback.

Rate now

     

Profile ID: LFUS-PAI-O-3566819

  Search
All data on this website is collected from public sources. Our data reflects the most accurate information available at the time of publication.