Method and apparatus for limiting session number
A technology for restricting groups and establishing sessions, applied in the field of communications, and can solve the problems of occupying sessions, occupying session resources, and loss, etc.
- Summary
- Abstract
- Description
- Claims
- Application Information
AI Technical Summary
Problems solved by technology
Method used
Image
Examples
Embodiment 1
[0035] (1) To configure the maximum number of sessions and counters for various types of applications, each type of application corresponds to a restriction group, then multiple restriction groups can form a session restriction configuration table.
[0036] Refer to Table 1, which is a typical example of a session restriction configuration table formed by setting ACL with "protocol type, destination IP and destination port".
[0037] Table 1
[0038]
[0039] Among them, each restriction group number represents a restriction group, that is, an application. Each restriction group can contain one ACL, such as restriction group 1; it can also contain multiple ACLs, such as restriction group 2, which consists of "protocol type: TCP, destination port: 80" and "protocol type: TCP, destination port" : 443" composed of two ACLs. Assuming that the ACL included in the restriction group 2 represents the HTTP protocol, that is, only the data flow that meets the above conditions (the ...
Embodiment 2
[0081] On the basis of the first embodiment, this embodiment adds the implementation of the deletion of the session.
[0082] There are two situations in which the session needs to be deleted. One is that the user actively requests deletion, for example, the session is deleted after receiving a TCP deletion control packet; the other is that the NAT session table is aging, and then the session needs to be deleted.
[0083] Among them, the NAT session table mentioned above is generally referred to in the art as a session table. It is used to record the NAT transformation relationship of a data stream, and establishes a forward and reverse session record, as long as it conforms to the forward and reverse of the session Address translation is performed in a uniform manner to the data stream. Usually, the NAT session table uses the pre-translation IP quintuple as an index (key), and uses the translated IP quintuple as the result.
[0084] Based on the understanding of the NAT sess...
Embodiment 3
[0118] The above-mentioned first and second embodiments both limit the number of sessions for a single user, and this embodiment limits the number of sessions for a virtual private network (Virual Private Network, VPN) that supports multiple instances.
PUM
Abstract
Description
Claims
Application Information
- R&D Engineer
- R&D Manager
- IP Professional
- Industry Leading Data Capabilities
- Powerful AI technology
- Patent DNA Extraction
Browse by: Latest US Patents, China's latest patents, Technical Efficacy Thesaurus, Application Domain, Technology Topic, Popular Technical Reports.
© 2024 PatSnap. All rights reserved.Legal|Privacy policy|Modern Slavery Act Transparency Statement|Sitemap|About US| Contact US: help@patsnap.com