Patent · US Expired

Method of synchronizing firewalls in a communication system based upon a server farm

US8001279B2 · kind B2 · utility

1Cited by
12References
12Claims
0Family size

Assignee

Inventors

Key dates

Filing dateDec 12, 2002
Grant dateAug 16, 2011
Priority date
Expiry dateJan 3, 2025

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L63/20
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

A method of synchronizing firewalls in a communication system comprising a server farm wherein any user connected to the Internet can access customer servers, and at least two firewalls using a Virtual Router Redundancy Protocol (VRRP) to set up as primary interface firewall the firewall which owns the primary interface of the VRRP group of interfaces to at least one customer server. The method includes initializing, in a secondary interface firewall, a synchronization message exchange with the primary firewall after receiving a packet for a connection having a state which is incompatible with the received packet or after the standard firewall processing of a packet corresponding to a new connection, and registering in a common connection table the state of any connection if the connection is new or if the connection state has changed.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.