Message filtering method, device and network device
A message filtering and message technology, which is applied in data exchange networks, digital transmission systems, electrical components, etc., can solve the problem of frequently querying routing tables and other problems, so as to overcome the operation of frequently querying routing tables, improve performance, and save processing time. Effect
- Summary
- Abstract
- Description
- Claims
- Application Information
AI Technical Summary
Problems solved by technology
Method used
Image
Examples
Embodiment 1
[0028] figure 1 It is a flow chart of the message filtering method provided by Embodiment 1 of the present invention. The execution subject of this embodiment is a firewall, such as figure 1 As shown, the message filtering method of this embodiment includes:
[0029] Step 11, according to the received message, obtain the first information and the first identification, the first information includes the source IP address of the message, the destination IP address, the protocol type, the first parameter and the second parameter, and the first identification is the source Identification of the VRF to which the IP address belongs;
[0030] Wherein, after receiving the message, the firewall obtains the first information from the message header, and obtains the first identifier, that is, the identifier of the VRF to which the source IP address belongs, from the attribute value of the firewall interface that receives the message.
[0031] Step 12, discretizing the first information...
Embodiment 2
[0050] Figure 2A It is a flow chart of sending a TCP message in the message filtering method provided by Embodiment 2 of the present invention, Figure 2B It is a flow chart of receiving a response message in the message filtering method provided by Embodiment 2 of the present invention. This embodiment is based on Embodiment 1, taking TCP packets as an example, through a specific interaction process, to illustrate the message filtering method in the cross-VRF routing mode provided by this embodiment, first make the following assumptions:
[0051] Suppose there are two routing instances in the firewall routing table: the first routing instance VRF_A and the second routing instance VRF_B; and the first routing instance is the virtual routing forwarding table of the first network whose network address is 192.168.100.0, and VRF_A to the destination network address The next hop of the outgoing interface of the route of the second network that is 192.168.200.0 needs to be obtaine...
Embodiment 3
[0086] image 3 The structural diagram of the message filtering device provided in Embodiment 3 of the present invention. The message filtering device in this embodiment can be set independently, and can be connected with the routing device in the network according to specific requirements, and can also be set in the routing device. Such as image 3 As shown, the filtering device in this embodiment includes: an acquisition module 31 , a generation module 32 , a matching module 33 , a creation module 34 and a processing module 35 .
[0087] The obtaining module 31 is used to obtain the first information and the first identification according to the received message; specifically, the obtaining module 31 obtains the first information from the message header, and the first information includes the source IP address of the message, Purpose IP address, protocol type, first parameter and second parameter, are referred to as quintuple, and wherein first parameter and second paramete...
PUM
Abstract
Description
Claims
Application Information
- R&D Engineer
- R&D Manager
- IP Professional
- Industry Leading Data Capabilities
- Powerful AI technology
- Patent DNA Extraction
Browse by: Latest US Patents, China's latest patents, Technical Efficacy Thesaurus, Application Domain, Technology Topic.
© 2024 PatSnap. All rights reserved.Legal|Privacy policy|Modern Slavery Act Transparency Statement|Sitemap