Safe message forwarding method and safe message forwarding device

A forwarding method and message technology, applied in the field of network communication, can solve problems such as affecting the performance of servers and switches, increasing traffic processing load, etc., so as to avoid traffic forwarding to external processing and achieve the effect of security protection

Active Publication Date: 2015-11-25
NEW H3C TECH CO LTD
View PDF4 Cites 32 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

In the implementation process of the existing technology, the internal traffic of the server needs to be guided to the external processing, which increases the load of traffic processing and affec

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Safe message forwarding method and safe message forwarding device
  • Safe message forwarding method and safe message forwarding device
  • Safe message forwarding method and safe message forwarding device

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0026] In order to make the object, technical solution and advantages of the present invention clearer, the solutions of the present invention will be further described in detail below with reference to the accompanying drawings and examples.

[0027] The core idea of ​​the present invention is to create a virtual firewall based on a virtualization platform on a physical machine, such as a server. The virtual firewall runs on the virtual platform as a special virtual machine. The created virtual firewall can have the same functions as a traditional physical firewall. Security features. When security protection is required for access traffic between virtual machines inside the server, the administrator can configure the corresponding security policy on the VFW, and the VFW can automatically configure the traffic diversion policy in the virtual switch (vSwtich), and save it in the form of a flow table in vSwtich Among them, the vSwitch can match the traffic according to the cont...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

A virtual firewall (VFW) notifies a virtual switch (vSwitch) to establish a flow directing policy according to a security policy configured for the VFW. The vSwitch directs a received packet matching the flow directing policy to the VFW according to the flow directing policy. When receiving the packet forwarded from the vSwitch, the VFW performs security processing for the packet according to the security policy, and forwards the processed packet satisfying the security policy to a target virtual machine (VM). The VFW and the vSwitch are established in a same physical machine based on a virtual platform.

Description

technical field [0001] The invention relates to the technical field of network communication, in particular to a message security forwarding method and device. Background technique [0002] With the rapid development of cloud computing technology, data center virtualization has gradually become popular among the people. Facing the virtualization of resources, its security issues have also attracted more and more attention. Traditional firewall devices can provide security protection and business isolation for traffic in the network, but in a virtual environment, the traffic between multiple virtual machines (VirtualMachine, VM) inside the server usually exists inside the server and will not be transmitted outside the server In the physical firewall, the physical firewall cannot protect it. [0003] In order to solve the problem of security protection of the traffic between virtual machines in the server, the existing technology mainly uses the "extracorporeal circulation" s...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
IPC IPC(8): H04L29/06H04L12/801
CPCH04L63/0227H04L12/6418H04L67/63H04L67/131
Inventor 吕振峰孙松儿
Owner NEW H3C TECH CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products