H - Electricity – 04 – L
Patent
H - Electricity
04
L
H04L 9/00 (2006.01) H04L 12/56 (2006.01) H04L 29/06 (2006.01)
Patent
CA 2287689
A packet data filter which stores ordered rules and sequentially applies the rules to received data packets to determine the disposition of the data packet. The packet filter maintains a match count in memory which indicates the number of times each rule matched an incoming data packet. Periodically, at the initiation of a user, or based on operating parameters of the filter, the rules are automatically re-ordered based on the match count. As a result of the re-ordering, rules with higher match counts are moved earlier in the sequential evaluation order and rules with lower match counts are moved later in the sequential evaluation order. As such, rules which are more likely to match incoming data packets are evaluated earlier, thus avoiding the evaluation of later rules. In order to prevent a re-ordering which would change the overall security policy of the packet filter, pairs of rules are compared to determine if they conflict (i.e., the swapping of the two rules would result in a change in the overall security policy). During reordering, the swapping of conflicting rules is prevented.
Krishnan P.
Raz Danny
Sugla Binay
Kirby Eades Gale Baker
Lucent Technologies Inc.
LandOfFree
Adaptive re-ordering of data packet filter rules does not yet have a rating. At this time, there are no reviews or comments for this patent.
If you have personal experience with Adaptive re-ordering of data packet filter rules, we encourage you to share that experience with our LandOfFree.com community. Your opinion is very important and Adaptive re-ordering of data packet filter rules will most certainly appreciate the feedback.
Profile ID: LFCA-PAI-O-1944959