×

L2/L3 multi-mode switch including policy processing

  • US 8,594,085 B2
  • Filed: 04/11/2007
  • Issued: 11/26/2013
  • Est. Priority Date: 04/11/2007
  • Status: Active Grant
First Claim
Patent Images

1. A method for forwarding data packets in a computer network, the method comprising:

  • receiving, by a processor, a data packet;

    examining the data packet using the processor to classify the data packet including classifying the data packet as a L2 or L3 packet;

    performing zone determination on the classified data packet including determining only a destination zone, but not a source zone, associated with the classified data packet, wherein the destination zone is associated with at least one policy rule, and wherein a policy includes one or more policy rules that are indexed by the destination zone;

    determining one or more policies based on the zone determination;

    processing the classified data packet in accordance with the one or more determined policies including;

    performing content based pattern matching on the classified data packet in accordance with signature data including determining one or more content based policies associated with matched packets; and

    forwarding the classified data packets to an intended destination if the determined policies permit based on the destination zone and content based pattern matching.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×