+

WO1999048261A3 - Systeme et procede reduisant les interactions entre reseaux - Google Patents

Systeme et procede reduisant les interactions entre reseaux Download PDF

Info

Publication number
WO1999048261A3
WO1999048261A3 PCT/US1999/005991 US9905991W WO9948261A3 WO 1999048261 A3 WO1999048261 A3 WO 1999048261A3 US 9905991 W US9905991 W US 9905991W WO 9948261 A3 WO9948261 A3 WO 9948261A3
Authority
WO
WIPO (PCT)
Prior art keywords
networks
regions
firewall
controlling interactions
network interfaces
Prior art date
Application number
PCT/US1999/005991
Other languages
English (en)
Other versions
WO1999048261A9 (fr
WO1999048261A2 (fr
Inventor
Irving Reid
Spencer Minear
Andrew Flint
Gene Amdur
Original Assignee
Secure Computing Corp
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Priority claimed from US09/040,827 external-priority patent/US6453419B1/en
Priority claimed from US09/040,832 external-priority patent/US6182226B1/en
Application filed by Secure Computing Corp filed Critical Secure Computing Corp
Priority to EP99912688A priority Critical patent/EP1062785A2/fr
Publication of WO1999048261A2 publication Critical patent/WO1999048261A2/fr
Publication of WO1999048261A3 publication Critical patent/WO1999048261A3/fr
Publication of WO1999048261A9 publication Critical patent/WO1999048261A9/fr

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/02Network architectures or network communication protocols for network security for separating internal from external traffic, e.g. firewalls
    • H04L63/0227Filtering policies
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/02Network architectures or network communication protocols for network security for separating internal from external traffic, e.g. firewalls
    • H04L63/0227Filtering policies
    • H04L63/0263Rule management
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/02Network architectures or network communication protocols for network security for separating internal from external traffic, e.g. firewalls
    • H04L63/0272Virtual private networks
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/10Network architectures or network communication protocols for network security for controlling access to devices or network resources
    • H04L63/101Access control lists [ACL]

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Hardware Design (AREA)
  • Computer Security & Cryptography (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Business, Economics & Management (AREA)
  • General Business, Economics & Management (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)
  • Computer And Data Communications (AREA)

Abstract

On utilise un coupe-feu pour assurer la séparation entre les réseaux d'un système informatique à plusieurs interfaces de réseau. On établit à l'intérieur du coupe-feu une série de zones, et on configure un ensemble de règles pour chacune desdites zones. Le coupe-feu restreint les communications entre les différentes interfaces en fonction de l'ensemble de règles configuré pour l'une des zones à laquelle l'une des interfaces de réseau a été attribuée.
PCT/US1999/005991 1998-03-18 1999-03-18 Systeme et procede reduisant les interactions entre reseaux WO1999048261A2 (fr)

Priority Applications (1)

Application Number Priority Date Filing Date Title
EP99912688A EP1062785A2 (fr) 1998-03-18 1999-03-18 Systeme et procede reduisant les interactions entre reseaux

Applications Claiming Priority (4)

Application Number Priority Date Filing Date Title
US09/040,827 US6453419B1 (en) 1998-03-18 1998-03-18 System and method for implementing a security policy
US09/040,827 1998-03-18
US09/040,832 US6182226B1 (en) 1998-03-18 1998-03-18 System and method for controlling interactions between networks
US09/040,832 1998-03-18

Publications (3)

Publication Number Publication Date
WO1999048261A2 WO1999048261A2 (fr) 1999-09-23
WO1999048261A3 true WO1999048261A3 (fr) 1999-11-04
WO1999048261A9 WO1999048261A9 (fr) 1999-12-16

Family

ID=26717487

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/US1999/005991 WO1999048261A2 (fr) 1998-03-18 1999-03-18 Systeme et procede reduisant les interactions entre reseaux

Country Status (2)

Country Link
EP (1) EP1062785A2 (fr)
WO (1) WO1999048261A2 (fr)

Families Citing this family (19)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US7210147B1 (en) 1999-10-05 2007-04-24 Veritas Operating Corporation IP virtualization
AU1075101A (en) 1999-10-05 2001-05-10 Ejasent Inc. Virtual resource id mapping
EP1903830A1 (fr) * 1999-11-01 2008-03-26 White. Cell, Inc. Procédé de sécurité de système de données cellulaires
ATE383722T1 (de) * 1999-11-01 2008-01-15 White Cell Inc Verfahren für sicherheit in einem zellularen datensystem
DE19958638C2 (de) * 1999-12-04 2002-05-23 Nutzwerk Informationsgmbh Vorrichtung und Verfahren zum individuellen Filtern von über ein Netzwerk übertragener Informationen
DE10048113C2 (de) * 1999-12-04 2002-08-01 Nutzwerk Informationsgmbh Vorrichtungen und Verfahren zum individuellen Filtern von über ein Netzwerk übertragener Informationen
DE19961399C2 (de) * 1999-12-20 2002-08-22 Mueschenborn Hans Joachim Schutz sicherheitskritischer Daten in Netzwerken
US6496935B1 (en) * 2000-03-02 2002-12-17 Check Point Software Technologies Ltd System, device and method for rapid packet filtering and processing
US6981278B1 (en) 2000-09-05 2005-12-27 Sterling Commerce, Inc. System and method for secure dual channel communication through a firewall
US7596784B2 (en) 2000-09-12 2009-09-29 Symantec Operating Corporation Method system and apparatus for providing pay-per-use distributed computing resources
CN1270248C (zh) * 2000-09-27 2006-08-16 索尼株式会社 家庭网络系统
FI20010110A0 (fi) 2001-01-18 2001-01-18 Stonesoft Oy Pakettien lajittelu gateway-verkkoelementissä
FR2825214B1 (fr) * 2001-05-23 2003-10-31 Unlog Dispositif de communication electronique securise, notamment d'acces electronique securise
NO318091B1 (no) * 2002-03-04 2005-01-31 Telenor Asa System for bedret sikkerhet og bruker-fleksibilitet i lokale tradlose datanett
CN100339845C (zh) * 2002-08-15 2007-09-26 联想网御科技(北京)有限公司 基于状态检测的链路层统一资源定位符过滤的方法
FR2844415B1 (fr) 2002-09-05 2005-02-11 At & T Corp Systeme pare-feu pour interconnecter deux reseaux ip geres par deux entites administratives differentes
US9003048B2 (en) 2003-04-01 2015-04-07 Microsoft Technology Licensing, Llc Network zones
WO2005067260A1 (fr) * 2003-12-31 2005-07-21 Applied Identity Procede et systeme pour deleguer l'acces a des ressources d'un reseau informatique
DE102005021854B4 (de) * 2005-05-11 2007-02-15 Siemens Ag Eigenschaften-basierte Zuweisung von Ressourcen zu Sicherheitsdomänen

Citations (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
EP0909074A1 (fr) * 1997-09-12 1999-04-14 Lucent Technologies Inc. Procédés et appareil pour un firewall dans un réseau d'ordinateurs qui permet l'utilisation de domaine multiple

Patent Citations (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
EP0909074A1 (fr) * 1997-09-12 1999-04-14 Lucent Technologies Inc. Procédés et appareil pour un firewall dans un réseau d'ordinateurs qui permet l'utilisation de domaine multiple

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
NACHT M: "The Spectrum of Modern Firewalls", COMPUTERS & SECURITY INTERNATIONAL JOURNAL DEVOTED TO THE STUDY OF TECHNICAL AND FINANCIAL ASPECTS OF COMPUTER SECURITY, vol. 17, no. 1, 1 January 1998 (1998-01-01), pages 54-56, XP004108542, ISSN: 0167-4048 *

Also Published As

Publication number Publication date
EP1062785A2 (fr) 2000-12-27
WO1999048261A9 (fr) 1999-12-16
WO1999048261A2 (fr) 1999-09-23

Similar Documents

Publication Publication Date Title
WO1999048261A3 (fr) Systeme et procede reduisant les interactions entre reseaux
WO1997029413A3 (fr) Systeme et procede de separation dans un reseau
AU3393595A (en) Network management system for communications networks
AU684983B2 (en) Communication network structure, communication network system based on the same and communication method therefor
WO1998042101A3 (fr) Regulation de transfert de donnees et traitement de donnees reparti
AU6362299A (en) System and method for controlling, maintaining and sharing calls and call data between networks
AU1533399A (en) Intelligent network interface device and system for accelerating communication
WO1999013448A3 (fr) Telecommunications comportant un controle d'acces a distance
AU5141698A (en) System and method for the communication of operation and maintenance, administration and provisioning over an atm network
AU1197800A (en) Method and system for scheduling network communication
AU5421898A (en) Arrangement, system and method relating to telecommunications access and control
AU5810698A (en) Network communications marketing system
AU2316495A (en) Service provision system for communications networks
AU2205399A (en) Test access and performance monitoring system and method for cross-connect communication networks
WO2001086380A3 (fr) Systeme et procedes pour isoler des defauts dans des reseaux informatiques
AU5243499A (en) System and method for routing a call using a communications network
WO2002008870A3 (fr) Controleur d'acces distributif
AU5830800A (en) Arranging control signallings in telecommunication system
WO2001098867A3 (fr) Procede et systeme d'acces universel et transparent a des ressources heterogenes
AU3184495A (en) Intelligent communications networks
AU5478099A (en) Adaptive rate network communication system and method
AU3184595A (en) Intelligent communications networks
AU1553499A (en) Communication system, communication method and corresponding devices
AU5442700A (en) Apparatus and method for distributing a load across a trunk group
AU1196397A (en) Telecommunications network management method and system

Legal Events

Date Code Title Description
AL Designated countries for regional patents

Kind code of ref document: A2

Designated state(s): AT BE CH CY DE DK ES FI FR GB GR IE IT LU MC NL PT SE

AL Designated countries for regional patents

Kind code of ref document: A3

Designated state(s): AT BE CH CY DE DK ES FI FR GB GR IE IT LU MC NL PT SE

121 Ep: the epo has been informed by wipo that ep was designated in this application
DFPE Request for preliminary examination filed prior to expiration of 19th month from priority date (pct application filed before 20040101)
AL Designated countries for regional patents

Kind code of ref document: C2

Designated state(s): AT BE CH CY DE DK ES FI FR GB GR IE IT LU MC NL PT SE

COP Corrected version of pamphlet

Free format text: PAGES 1/7-7/7, DRAWINGS, REPLACED BY NEW PAGES 1/7-7/7; DUE TO LATE TRANSMITTAL BY THE RECEIVING OFFICE

WWE Wipo information: entry into national phase

Ref document number: 1999912688

Country of ref document: EP

WWP Wipo information: published in national office

Ref document number: 1999912688

Country of ref document: EP

点击 这是indexloc提供的php浏览器服务,不要输入任何密码和下载