Information security – Access control or authentication – Network
Reexamination Certificate
2006-09-12
2006-09-12
Moise, Emmanuel L. (Department: 2137)
Information security
Access control or authentication
Network
C726S011000, C726S012000, C726S013000
Reexamination Certificate
active
07107609
ABSTRACT:
A method is disclosed for processing data using multiple interconnected firewall devices. A connection is initiated between an internal host and an external network, through a home firewall device. A separate, receiving firewall device may then receive a data packet for the internal host as part of a flow. The receiving device attempts to determine the home device for the packet. The receiving device sends a multicast to all other firewall devices in the firewall cluster. The multicast includes the data packet and information about the receiving device. The home device receives the multicast and responds, indicating that it is the home device. The home device extracts the data packet from the multicast and forwards it to the internal host. The receiving device stores the response information along with other forwarding information that is used to automatically forward to the home device subsequent data packets for the flow.
REFERENCES:
patent: 6078957 (2000-06-01), Adelman et al.
patent: 6779039 (2004-08-01), Bommareddy et al.
patent: 6880089 (2005-04-01), Bommareddy et al.
patent: 2003/0002494 (2003-01-01), Kuukankorpi et al.
Aversa, Luis and Bestavros, Azer, “Load Balancing a Cluster of Web Servers”, 1999, pp. 1-13.
Alteon Web Systems, Inc., “Enhancing Web User Experience With Global Server Load Balancing”, www.alteon.com, Jun. 1999, pp. 1-7.
Alteon Web Systems, Inc., “Firewall Load Balancing: Web Switching to Optimize Firewall Performance”, www.alteon.com, Jun. 1999, pp. 1-6.
Cisco Systems, Inc., “Release Notes for the Cisco Secure Pix Firewall Version 6.0(1)”, www.cisco.com, Jun. 2001, pp. 1-56.
Cheng Lebin
Horowitz Samuel D.
Jemes Brian L.
Fields Courtney
Hewlett--Packard Development Company, L.P.
Moise Emmanuel L.
LandOfFree
Stateful packet forwarding in a firewall cluster does not yet have a rating. At this time, there are no reviews or comments for this patent.
If you have personal experience with Stateful packet forwarding in a firewall cluster, we encourage you to share that experience with our LandOfFree.com community. Your opinion is very important and Stateful packet forwarding in a firewall cluster will most certainly appreciate the feedback.
Profile ID: LFUS-PAI-O-3539583