Change search
ReferencesLink to record
Permanent link

Direct link
Supervised connectionbased functionality
2001 (English)Independent thesis Advanced level (professional degree), 20 credits / 30 HE creditsStudent thesis
Abstract [en]

The objective of this paper is to describe the methods used to create a common repository for connection information in the Effnet firewall. The original firewall produced by Effnet was based on NetBSD’s IPF firewall, where all functionalities have their own data structures. These data structures had almost always more or less the same requirements and contained the same information. The goal for the connection information repository is to unify all these data structures and minimize the complexity and memory usage in the firewall. It is also aimed at providing the programmer of firewall functionality with a basic set of methods commonly used, such as connection information extraction, creation and deletion of connection information entries, information retrieval and timeout handling.

Place, publisher, year, edition, pages
Keyword [en]
Technology, Firewalls, Dynamic Firewalling, NAT, Holepunching, Connection Supervision, Stateful Inspection
Keyword [sv]
URN: urn:nbn:se:ltu:diva-42697ISRN: LTU-EX--01/052--SELocal ID: 0ac0cf98-178d-4c7e-8369-15a55289c501OAI: diva2:1015921
Subject / course
Student thesis, at least 30 credits
Educational program
Computer Science and Engineering, master's level
Validerat; 20101217 (root)Available from: 2016-10-04 Created: 2016-10-04Bibliographically approved

Open Access in DiVA

No full text

Search outside of DiVA

GoogleGoogle Scholar

Total: 3 hits
ReferencesLink to record
Permanent link

Direct link