×

System for securing inbound and outbound data packet flow in a computer network

  • US 5,606,668 A
  • Filed: 12/15/1993
  • Issued: 02/25/1997
  • Est. Priority Date: 12/15/1993
  • Status: Expired due to Term
First Claim
Patent Images

1. A method of inspecting inbound and outbound data packets in a computer network, the inspection of said data packets occurring according to a security rule, the method comprising the steps of:

  • a) generating a definition of each aspect or the computer network inspected by said security rule;

    b) generating said security rule in terms of said aspect definitions, said security rule controlling as least one of said aspects;

    c) converting said security rule into a set of packet filter language instructions for controlling the operation of a packet filtering module which inspects said data packets;

    d) providing a packet filter module coupled to said computer network for inspecting said data packets in accordance with said security rule, said packet filter module implementing a virtual packet filtering machine; and

    e) said packet filter module executing said packet filter language instructions for operating said virtual packet filtering machine to either accept or reject the passage of said data packets into and out of said computer network.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×