Distributed network security system and a hardware processor therefor
First Claim
1. A security system comprising a storage area network comprising an integrated circuit processor providing transport layer protocol processing and IP storage area network protocol processing, said integrated circuit processor comprising a protocol processing engine for performing transport layer protocol termination, transport layer protocol origination, and transport layer protocol processing, said security system providing multiple protocol layer security in said storage area network.
4 Assignments
0 Petitions
Accused Products
Abstract
An architecture provides capabilities to transport and process Internet Protocol (IP) packets from Layer 2 through transport protocol layer and may also provide packet inspection through Layer 7. A set of engines may perform pass-through packet classification, policy processing and/or security processing enabling packet streaming through the architecture at nearly the full line rate. A scheduler schedules packets to packet processors for processing. An internal memory or local session database cache stores a session information database. The session information that is not in the internal memory is stored and retrieved to/from an additional memory. An application running on an initiator or target can a region of memory, which is made available to its peer for access without substantial host intervention through RDMA data transfer. A security system is also disclosed that enables a new way of implementing security capabilities inside enterprise networks in a distributed manner.
114 Citations
18 Claims
- 1. A security system comprising a storage area network comprising an integrated circuit processor providing transport layer protocol processing and IP storage area network protocol processing, said integrated circuit processor comprising a protocol processing engine for performing transport layer protocol termination, transport layer protocol origination, and transport layer protocol processing, said security system providing multiple protocol layer security in said storage area network.
-
5. A security system comprising:
-
an integrated circuit providing a remote direct memory access (RDMA) capability, said integrated circuit comprising; an RDMA processor configured to execute a plurality of RDMA data transfers; and a protocol processor for executing transport layer protocol processing, said protocol processor further configured to perform transport layer protocol termination and transport layer protocol origination; said security system providing multiple protocol layer security. - View Dependent Claims (6, 7, 8, 9)
-
-
10. A security system comprising:
-
a remote direct memory access (RDMA) processor configured to execute a plurality of RDMA data transfers; and an integrated circuit processor for performing transport layer protocol termination, transport layer protocol packet origination, and for executing transport layer protocol, said integrated circuit processor further configured to provide a transport layer RDMA capability; said security system providing multiple protocol layer security in said network. - View Dependent Claims (11, 12, 13, 14)
-
-
15. A security system comprising:
-
a storage area network comprising a remote direct memory access (RDMA) capability; and an integrated circuit processor for performing IP storage area network protocol processing, transport layer protocol termination, transport layer protocol packet origination, and RDMA data transfers, said security system providing multiple protocol layer security in said storage area network. - View Dependent Claims (16, 17, 18)
-
Specification