Implementation method and device of a cloud computing stateful firewall

A technology of a stateful firewall and an implementation method, applied in the field of information security, can solve problems such as low firewall security, and achieve the effect of enhancing security

Active Publication Date: 2021-08-06
CHINA MOBILE SUZHOU SOFTWARE TECH CO LTD +1
View PDF7 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0013] The present invention provides a method and device for implementing a cloud computing state firewall, which is used to solve the problem of low security of traditional firewalls using virtual switches in existing cloud computing environments

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Implementation method and device of a cloud computing stateful firewall
  • Implementation method and device of a cloud computing stateful firewall
  • Implementation method and device of a cloud computing stateful firewall

Examples

Experimental program
Comparison scheme
Effect test

Embodiment 1

[0057] Such as figure 1 As shown, it is a schematic diagram of the implementation process of the implementation method of the cloud computing stateful firewall provided by Embodiment 1 of the present invention, which may include the following steps:

[0058] S11. Receive a message to be forwarded, wherein the message to be forwarded carries a destination port number, a destination IP address, and message status information, and the message status information represents the source and destination of the message to be forwarded The state of the connection between the endpoints.

[0059] During specific implementation, the cloud computing OpenFlow switch receives the message to be forwarded, and the message to be forwarded carries the destination port number, destination IP address and message status information, and the message status information represents the source and destination of the message to be forwarded The state of the connection between the endpoints.

[0060] Fur...

Embodiment 2

[0110] Based on the same inventive concept, an implementation device of a cloud computing stateful firewall is also provided in the embodiment of the present invention. Since the problem-solving principle of the above-mentioned device is similar to the implementation method of the above-mentioned cloud computing stateful firewall, the implementation of the above-mentioned device can be referred to in the method. implementation, the repetition will not be repeated.

[0111] Such as image 3 As shown, it is a schematic structural diagram of an implementation device of a cloud computing stateful firewall provided in Embodiment 2 of the present invention, which is applied to an OpenFlow switch of a cloud computing open flow table, and the device may include:

[0112] The first receiving unit 21 is configured to receive a message to be forwarded, wherein the message to be forwarded carries a destination port number, a destination IP address and message status information, and the m...

Embodiment 3

[0126] Embodiment 3 of the present invention provides an electronic device, including a memory, a processor, and a computer program stored in the memory and operable on the processor. When the processor executes the program, the implementation of the present invention is realized. The implementation method of the cloud computing stateful firewall described in Example 1.

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a method and a device for realizing a cloud computing state firewall, which are used to solve the problem of low security of a traditional firewall using a virtual switch in an existing cloud computing environment. The implementation method of the cloud computing stateful firewall includes: receiving a message to be forwarded, wherein the message to be forwarded carries a destination port number, a destination IP address and message status information, and the message status information represents the The connection status between the source end and the destination end of the message to be forwarded; extracting and saving the destination port number and the destination IP address, which are used as a response message for the message to be forwarded Matching rules for text return forwarding.

Description

technical field [0001] The invention relates to the field of information security, in particular to a method and device for realizing a cloud computing state firewall. Background technique [0002] Cloud computing is a computing method based on the Internet. Through cloud computing, shared hardware and software resources and information can be provided to computers and other devices on demand. Among them, the cloud computing network is an important part of cloud computing. The basic core of the cloud computing network includes: virtual layer 2 switches, virtual routers, security groups, and virtual firewalls, etc., which need to provide mutual isolation and security functions for tenant virtual networks, and implement OSI (Open System Interconnection, Open System Interconnection) network model, the function of interworking between the second and third layers, where the second layer and the third layer are the data link layer and the network layer respectively. [0003] The ...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Patents(China)
IPC IPC(8): H04L29/06
CPCH04L63/02
Inventor 赵怡吴江涛谢佳刘玉红胡志凌
Owner CHINA MOBILE SUZHOU SOFTWARE TECH CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products