NETWORK ADDRESS TRANSLATION ROUTER AND RELATED METHOD
First Claim
1. A network address translation (NAT)-enabled device comprising:
- a NAT facility for connecting at least two hosts inside a first network to a second network, wherein the NAT facility allows the inside hosts to share an address of the second network;
a gateway interface for connecting to a demilitarized zone (DMZ) host inside the first network;
a disposer connected to the gateway interface for assigning an address of the second network to the DMZ host; and
a dispatcher connected to the gateway interface and the NAT facility for communicating messages between the second network and the gateway interface or the NAT facility according to a communication criteria of the message.
1 Assignment
0 Petitions
Accused Products
Abstract
A network address translation (NAT)-enabled device such as a router or gateway device includes a NAT facility for connecting at least two hosts inside a first network to a second network allowing the inside hosts to share an address of the second network, a gateway interface for connecting to a demilitarized zone (DMZ) host inside the first network, a disposer connected to the gateway interface for assigning an address of the second network to the DMZ host, and a dispatcher connected to the gateway interface and the NAT facility for communicating messages between the second network and the gateway interface or the NAT facility according to a medium access control (MAC) address of the message.
-
Citations
19 Claims
-
1. A network address translation (NAT)-enabled device comprising:
-
a NAT facility for connecting at least two hosts inside a first network to a second network, wherein the NAT facility allows the inside hosts to share an address of the second network;
a gateway interface for connecting to a demilitarized zone (DMZ) host inside the first network;
a disposer connected to the gateway interface for assigning an address of the second network to the DMZ host; and
a dispatcher connected to the gateway interface and the NAT facility for communicating messages between the second network and the gateway interface or the NAT facility according to a communication criteria of the message. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8)
-
-
9. A network address translation (NAT)-enabled device comprising:
-
a NAT facility for connecting at least two hosts inside a first network to a second network, wherein the NAT facility allows the inside hosts to share an address of the second network;
a gateway interface for connecting to a demilitarized zone (DMZ) host inside the first network;
a disposer connected to the gateway interface for assigning an address of the second network to the DMZ host in response to a request from the DMZ host, wherein the disposer assigns the second network address of the NAT-enabled device to the DMZ host if such address is public and the disposer assigns a temporary second network address and associated validity lifetime to the DMZ host if the second address of the NAT-enabled device is not public; and
a dispatcher connected to the gateway interface and the NAT facility for communicating messages between the second network and the gateway interface or the NAT facility according to a communication criteria of the message, the dispatcher storing the address of the DMZ host and comparing destination address information of a message received from the second network with the address of the DMZ host, and forwarding the message to the DMZ host when the communication criteria corresponds to the DMZ host and forwarding the message to the NAT facility when the communication criteria does not correspond to the DMZ host, the dispatcher identifying a message being sent to the second network from the DMZ host by checking the communication criteria of such message. - View Dependent Claims (10, 11)
-
-
12. A method for communicating information between a first network and a second network, the method comprising:
-
assigning a second network address to a demilitarized zone (DMZ) host of the first network;
receiving from the second network a message having a destination address equal to the second network address;
forwarding the message to the DMZ host of the first network when a communication criteria of the message matches a first criteria; and
forwarding the message to another host of the first network when the communication criteria of the message does not match criteria. - View Dependent Claims (13, 14, 15, 16, 17, 18, 19)
-
Specification