首页 | 本学科首页   官方微博 | 高级检索  
     

数据包高效透明转发研究及实现
引用本文:陈兴蜀,严宏,童浩.数据包高效透明转发研究及实现[J].四川大学学报(工程科学版),2008,40(4):109-114.
作者姓名:陈兴蜀  严宏  童浩
作者单位:1. 四川大学,计算机学院,四川,成都,610064
2. 解放军信息工程大学,信息学院,河南,郑州,450000
基金项目:国家重点基础研究发展计划(973计划) , 信息产业部电子信息产业发展基金
摘    要:为了提高双网口相互转发数据包的透明模式防火墙的性能,在分析数据包收发流程以及Netfilter框架的基础上,提出了一种获取发送网卡信息的新方法,并且基于该方法设计并实现了带状态检测和简单包过滤两种功能的透明模式防火墙.测试结果表明,与使用Linux bridge结合Netfilter构建的透明模式防火墙相比,这两种防火墙中的数据转发和过滤更加简洁高效.

关 键 词:透明转发  Netfilter  状态检测  简单包过滤
收稿时间:2008/1/21 0:00:00

Research and Implementation of Efficient and Transparent Packet Forwarding
CHEN Xing-shu,YAN Hong,TONG Hao,LIU Yi.Research and Implementation of Efficient and Transparent Packet Forwarding[J].Journal of Sichuan University (Engineering Science Edition),2008,40(4):109-114.
Authors:CHEN Xing-shu  YAN Hong  TONG Hao  LIU Yi
Affiliation:School of Computer Sci.,Sichuan Univ.,Chengdu 610064,China;School of Computer Sci.,Sichuan Univ.,Chengdu 610064,China;School of Computer Sci.,Sichuan Univ.,Chengdu 610064,China
Abstract:To improve the performance of the firewall in which two Ethernet cards transmit mutually receiving packets, a new method for getting the information of the Ethernet card,which was used to send a packet,was presented after the analysis of receiving, transmitting and the Netfilter. Based on this method, two kinds of transparent firewall, state inspection and simple packet filtering, were implemented. The test results showed that, compared with the transparent firewalls which are based on Linux bridge and Netfilter, the process of forwarding and filtering in these two firewalls is more efficient.
Keywords:transparent forwarding  Netfilter  state inspection  simple packet filtering
本文献已被 维普 万方数据 等数据库收录!
点击此处可从《四川大学学报(工程科学版)》浏览原始摘要信息
点击此处可从《四川大学学报(工程科学版)》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号