Abstract:
Hierarchical scanning begins with communicating probes over the Internet to ports and networks addresses to determine publicly accessible devices. Based on responses to those probes, follow-up probes are determined to obtain additional information about the publicly accessible devices. The probes are transmitted from a system that is external to the networks corresponding to the network addresses. This provides an external view of the scanned networks and facilitates a probing paradigm that scales beyond a few networks.
Abstract:
A communication device and method of operating the same. The method may include initiating a first connection between a client device and a proxy server application and a second connection between the proxy server application and the remote server while advertising a proxy-window-scale-value, and splicing the TCP connections below a transport layer. The method also includes left shifting a window size of a client-sourced-packet to obtain an originally intended client-window size, right shifting the originally intended client-window size by the proxy-window-scale-value, and providing the client-sourced-packet to the server with the proxy-window scaled value. In addition, the method includes receiving a server-sourced-packet from the remote server, left shifting a window size of the server-sourced-packet by the server-window-scale value to obtain an originally intended server-window size, right shifting the originally intended server-window size by the proxy-window-scale-value, and then providing the server-sourced-packet to the client with the proxy-window scaled value.
Abstract:
Modular industrial automation device and method for configuring a modular industrial automation device, wherein in order to configure the modular industrial automation device which includes a central unit and at least one communication module which each comprise a router module and a routing configuration unit, the routing configuration units transmit routing information stored in their routing table to routing configuration units of other router modules, and the routing configuration units update their respective routing table based on routing information which is received from routing configuration units of other router modules and relates to routes to IPv4 subnetworks assigned to other router modules, a default gateway and a connection between the associated router module and a backplane bus system.
Abstract:
Example implementations relate to hard zoning capabilities for devices using Internet small computer system interface (iSCSI) protocol. For example, a method includes creating a virtual local area network (VLAN) at an Ethernet switch between an initiator and target adapter. The method includes assigning an access control list (ACL) to the VLAN. The method includes segregating a device of a plurality of devices connected to the SAN into a zone group. The method also includes controlling access of a zone group based on the ACL and frame filtering.
Abstract:
The present technology relates to a transmission apparatus, a transmission method, a reception apparatus, and at reception method that enable a plurality of transport protocols to coexist.The transmission apparatus generates transport protocol selection information used, for selecting a transport protocol to be used in a specific service from a plurality of transport protocols conforming to a predetermined, standard, and transmits, together with the transport protocol selection information, a content provided by the specific service according to the transport protocol set in the transport protocol selection information. The present technology is applicable to, for example, IP packet broadcasting.
Abstract:
The present invention relates to a method and apparatus for controlling a handshake operation. Datagram Transport Layer Security (DTLS) is an important secure protocol in the IP based Internet of things The performance of DTLS handshake can be significantly affected by network status, traffic and packet loss rate, etc. It is therefore suggested evaluating a package loss rate and estimating causes of packet loss. Then, a DTLS handshake strategy may be changed adaptively based on the detection of packet loss and network status. As a result, the successful rate and delay of DTLS handshake can be improved. An acknowledgement and a non-acknowledgement mode may be used in a hybrid way to evaluate the package loss rate and estimate causes of packet loss and eventually improve performance of DTLS handshake.
Abstract:
An apparatus and method for enhancing the infrastructure of a network such as the Internet is disclosed. A packet interceptor/processor apparatus is coupled with the network so as to be able to intercept and process packets flowing over the network. Further, the apparatus provides external connectivity to other devices that wish to intercept packets as well. The apparatus applies one or more rules to the intercepted packets which execute one or more functions on a dynamically specified portion of the packet and take one or more actions with the packets. The apparatus is capable of analyzing any portion of the packet including the header and payload. Actions include releasing the packet unmodified, deleting the packet, modifying the packet, logging/storing information about the packet or forwarding the packet to an external device for subsequent processing. Further, the rules may be dynamically modified by the external devices.
Abstract:
A data interaction method is provided, which includes: sending simultaneously an address detection request for a UDP channel and an address detection request for a TCP channel; and when both address detection for the UDP channel and address detection for the TCP channel fail, sending an address detection request for an HTTP channel; when detection of at least one channel succeeds, collecting two types of addresses corresponding to each channel in the at least one channel; performing address exchange and address matching with a peer client host; and performing channel connectivity detection based on matched addresses, and selecting a channel with a highest priority from channels on which connectivity detection is successful for data interaction with the peer client host. Therefore, efficiency of traversing a NAT host during address detection is improved.
Abstract:
A TCP/IP packet decoder fetches, from a packet received via a satellite communication system, IP version information, which is provided to version comparators. When a version comparator indicates a match, protocol information is provided to a TCP comparator. If the TCP comparator determines that the packet is a TCP data packet, a flag is raised causing generation of a TCP acknowledgment for transmission to a source device. In another embodiment, a layer 3 switch or router includes a TCP hardware filter to determine whether the received packet is a TCP data packet, thereby causing the TCP data packet to be mirrored for transmission to a modem. In a third embodiment, a TCP hardware filter, provides an indication to a layer 2 switch when a TCP data packet is received causing the TCP data packet to be mirrored for transmission to a modem, which generates and transmits a TCP acknowledgment.