×

SCALABLE SECURITY SERVICES FOR MULTICAST IN A ROUTER HAVING INTEGRATED ZONE-BASED FIREWALL

  • US 20100043067A1
  • Filed: 04/29/2009
  • Published: 02/18/2010
  • Est. Priority Date: 08/14/2008
  • Status: Active Grant
First Claim
Patent Images

1. A network router comprising:

  • a plurality of interfaces configured to send and receive multicast packets;

    a firewall integrated within the network router, the firewall configured to apply stateful firewall services to the multicast packets;

    a routing engine comprising a control unit that executes a routing protocol to maintain routing information specifying routes through a network, wherein the control unit executes at least one multicast protocol to establish a multicast group for communicating the multicast packets from a multicast source to a plurality of multicast receivers;

    a forwarding engine configured by the routing engine to select next hops for the multicast packets in accordance with the routing information, the forwarding engine comprising a switch fabric to forward the multicast packets to the interfaces based on the selected next hops, wherein the forwarding engine includes a flow control module that, upon receiving multicast packets from the network, directs one or more of the multicast packets to the firewall for application of the stateful firewall services; and

    a user interface by which a user specifies one or more zones to be recognized by the firewall when applying the stateful firewall services to the multicast packets, wherein the user interface supports a syntax that;

    (i) allows the user to define subsets of the plurality of interfaces associated with the zones, and(ii) allows the user to define a single multicast policy to be applied to multicast sessions associated with a multicast group, wherein the multicast policy specifies actions to be applied to multicast sessions for the specified zones,wherein the firewall is configured to apply the stateful firewall services to the multicast packets based on the multicast policy and the zones specified by the user.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×