Automatic testing method aiming at large-capacity rule table of packet filtering device

A packet filtering and large-capacity technology, which is applied in the field of automated testing for large-capacity rule tables of packet filtering equipment, can solve problems such as unrealistic test scenarios and failure to find problems, and achieve the goal of saving complex work, reducing ability and proficiency Requirements, real effects of test scenarios

Active Publication Date: 2016-02-03
LANGCHAO ELECTRONIC INFORMATION IND CO LTD
View PDF4 Cites 2 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

The test scenario of this method is not realistic enough to find possible problems in the real environment, because discrete traffic and regular traffic exert different pressures on the packet filtering device matching algorithm

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Automatic testing method aiming at large-capacity rule table of packet filtering device
  • Automatic testing method aiming at large-capacity rule table of packet filtering device
  • Automatic testing method aiming at large-capacity rule table of packet filtering device

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0027] Below in conjunction with accompanying drawing, content of the present invention is set forth in more detail:

[0028] first as figure 1 Deployment network environment shown: Connect the network test instrument to the service port of the packet filtering device in series (the receiving end of the instrument is connected to the transmitting end of the device under test, and the transmitting end of the instrument is connected to the receiving end of the Test instrument client), the management port of the packet filtering device and the network test instrument management port are connected in the same network segment.

[0029] Then if figure 2 As shown, execute the random network quintuple generation script, the total number of quintuples input by the user num_list=1000000, the source IP start address sip_start=1.1.1.1, the destination IP start address dip_start=2.1.1.1, the packet filtering device The number of rules to be configured in num=600000, and then enter the i...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention provides an automatic testing method aiming at a large-capacity rule table of a packet filtering device, and relates to the test field of the large-capacity rule table of the packet filtering device. In the method, large-scale random network quintuples are generated as a resource pool through script; a packet filtering device API interface is called to randomly select a lot of quintuples from the resource pool to execute rule configuration, an automatic interface of a network tester is called to randomly select a lot of quintuples from the resource pool to execute traffic configuration, and validity condition of the packet filtering device under the large-capacity rule table is verified according to the filtering result; thus, a test scene is fully discretized so as to be similar to an actual scene, meanwhile, rule matching condition of each packet can be obtained accurately, and confidence level of the result is increased.

Description

technical field [0001] The invention relates to a testing method for a large-capacity rule table of a packet filtering device, in particular to an automatic testing method for a large-capacity rule table of a packet filtering device. Background technique [0002] The general test method for the large-capacity rule table of the packet filter device is: create a continuous IP segment, fixed port and protocol simulation traffic on the network tester, configure the corresponding rule table on the packet filter device, and then send traffic to view the packet filter Condition. The test scenarios of this method are not realistic enough to detect possible problems in the real environment, because discrete traffic and regular traffic exert different pressures on the matching algorithm of the packet filtering device. Contents of the invention [0003] In order to solve the above problems, the present invention proposes an automatic testing method for a large-capacity rule table of...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L12/26
CPCH04L43/028
Inventor 刘雁鸣
Owner LANGCHAO ELECTRONIC INFORMATION IND CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products