期刊文献+

数据包高效透明转发研究及实现

Research and Implementation of Efficient and Transparent Packet Forwarding
下载PDF
导出
摘要 为了提高双网口相互转发数据包的透明模式防火墙的性能,在分析数据包收发流程以及Netfilter框架的基础上,提出了一种获取发送网卡信息的新方法,并且基于该方法设计并实现了带状态检测和简单包过滤两种功能的透明模式防火墙。测试结果表明,与使用Linux bridge结合Netfilter构建的透明模式防火墙相比,这两种防火墙中的数据转发和过滤更加简洁高效。 To improve the performance of the firewall in which two Ethernet cards transmit mutually receiving packets,a new method for getting the information of the Ethernet card,which was used to send a packet,was presented after the analysis of receiving,transmitting and the Netfilter.Based on this method,two kinds of transparent firewall,state inspection and simple packet filtering,were implemented.The test results showed that,compared with the transparent firewalls which are based on Linux bridge and Netfilter,th...
出处 《四川大学学报(工程科学版)》 EI CAS CSCD 北大核心 2008年第4期109-114,共6页 Journal of Sichuan University (Engineering Science Edition)
基金 国家973计划资助项目(2007CB311106) 信息产业部2006电子发展基金资助项目(信部运634号)
关键词 透明转发 NETFILTER 状态检测 简单包过滤 transparent forwarding Netfilter state inspection simple packet filtering
  • 相关文献

参考文献7

  • 1[2]Benvenuti C.Understanding Linux network internals[M].USA:O'Reilly,2005:1-351.
  • 2[3]Wehrle K,Phlke F.The Linux networking architecture_design and implementation of network protocols in the Linux kernel[M].USA:Prentice Hall,2004:1-202.
  • 3[6]Corbet J,Rubini A,Kroah-Hartman G.Linux device drivers[M].USA:O'Reilly,2005:497-542.
  • 4[7]Love R.Linux kernel development[M].2nd Ed.USA:Sams Publishing,2005:59-95.
  • 5[8]Russel R,Welte H.Linux netfilter hacking HOWTO[EB/OL].http://www.netfilter.org/documentation/HOWTO/netfilter-hacking-HOWTO.html,2002-07-02.
  • 6[9]Stevens W R.TCP/IP Illustrated(Volume1) the protocols[M].Massachusetts:Addison-Wesley,1994:15-95.
  • 7[10]Bovet D,Cesati M.Understanding the Linux kernel[M].3nd Edition.USA:O'Reilly,2005:169-327.

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部