×

DIRECT SERVICE MAPPING FOR NAT AND PNAT

  • US 20140294006A1
  • Filed: 03/29/2013
  • Published: 10/02/2014
  • Est. Priority Date: 03/29/2013
  • Status: Abandoned Application
First Claim
Patent Images

9. A firewall comprising:

  • an ingress interface that receives a packet having a source address, destination address, source port, and destination port;

    a rule storage comprising a plurality of active rules, at least one active rule including a matching criteria service group including a plurality of rows of source and destination port combinations and a NAT service group;

    a matching engine configured to;

    compare the source port and destination port to the plurality of rows of source and destination port combinations, find a matching row, and determine an index of the matching row;

    a translation engine configured to translate the source and destination ports of the packet to source and destination ports indicated by the NAT service group based on the index of the matching row; and

    an egress interface configured to transmit the packet to the destination address.

View all claims
  • 2 Assignments
Timeline View
Assignment View
    ×
    ×