×

ROUTING DEVICE HAVING INTEGRATED MPLS-AWARE FIREWALL

  • US 20100043068A1
  • Filed: 11/14/2008
  • Published: 02/18/2010
  • Est. Priority Date: 08/14/2008
  • Status: Active Grant
First Claim
Patent Images

1. A network router comprising:

  • a plurality of interfaces configured to send and receive packets;

    a firewall integrated within the network router, the firewall configured to apply stateful firewall services to the packets;

    a routing engine comprising a control unit that executes a routing protocol to maintain routing information specifying routes through a network, wherein the control unit executes at least one protocol to establish virtual private network (VPN) tunnels for one or more customer VPNs;

    a forwarding engine configured by the routing engine to select next hops for the packets in accordance with the routing information, the forwarding engine comprising a switch fabric to forward the packets to the interfaces based on the selected next hops, wherein the forwarding engine includes a flow control module that, upon receiving packets from the network, directs one or more of the packets to the firewall for application of the stateful firewall services; and

    a user interface by which a user specifies one or more zones to be recognized by the firewall when applying the stateful firewall services to the packets, each of the zones defined by a list of one or more of the interfaces, wherein the user interface supports a syntax that allows the user to define the zones by specifying the customer VPNs within lists of interfaces associated with the zones.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×