Stateful Connection Processing in a Security Device Cluster
    1.
    发明申请
    Stateful Connection Processing in a Security Device Cluster 有权
    安全设备群集中的状态连接处理

    公开(公告)号:US20160337312A1

    公开(公告)日:2016-11-17

    申请号:US14709777

    申请日:2015-05-12

    CPC classification number: H04L63/0227 H04L47/10 H04L63/0254

    Abstract: A method operable in a security device cluster having a plurality of security devices each configured to receive respective data flows. The method includes receiving a first segment of a flow at a first security device of the plurality of security devices, sending the first segment of the flow toward a destination node without the first security device of the plurality of security devices asserting ownership over the flow, receiving, from the destination node, a second segment of the flow at a second security device of the plurality of security devices, the second segment of the flow being responsive to the first segment, asserting, by the second security device of the plurality of security devices, ownership over the flow, and forwarding, from the first security device, packets of the flow subsequently received by the first security device to the second security device.

    Abstract translation: 一种在具有多个安全设备的安全设备集群中可操作的方法,每个安全设备被配置为接收相应的数据流。 该方法包括在多个安全设备中的第一安全设备处接收流的第一段,将流的第一段发送到目的地节点,而不使多个安全设备中的第一安全设备声明对流的所有权, 从所述目的地节点接收在所述多个安全设备中的第二安全设备处的所述流的第二段,所述流的第二段响应于所述第一段,由所述第二安全设备断言所述多个安全性 设备,流量的所有权以及来自第一安全设备的转发,随后由第一安全设备接收的流的分组传送到第二安全设备。

    Stateful connection processing in a security device cluster

    公开(公告)号:US09860209B2

    公开(公告)日:2018-01-02

    申请号:US14709777

    申请日:2015-05-12

    CPC classification number: H04L63/0227 H04L47/10 H04L63/0254

    Abstract: A method operable in a security device cluster having a plurality of security devices each configured to receive respective data flows. The method includes receiving a first segment of a flow at a first security device of the plurality of security devices, sending the first segment of the flow toward a destination node without the first security device of the plurality of security devices asserting ownership over the flow, receiving, from the destination node, a second segment of the flow at a second security device of the plurality of security devices, the second segment of the flow being responsive to the first segment, asserting, by the second security device of the plurality of security devices, ownership over the flow, and forwarding, from the first security device, packets of the flow subsequently received by the first security device to the second security device.

Patent Agency Ranking