Patent ReferencesMethod and apparatus for managing and facilitating communications in a distributed hetergeneous network System for selectively intercepting and rerouting data network traffic Apparatus and method for a federated naming system which can resolve a composite name composed of names from any number of disparate naming systems Protocol selection and address resolution for programs running in heterogeneous networks Method for updating value in distributed shared virtual memory among interconnected computer nodes having page table with minimal processor involvement System for securing inbound and outbound data packet flow in a computer network Directory with options for access to and display of email addresses Patent #: 5742769 Inventors
AssigneeApplicationNo. 825775 filed on 04/02/1997US Classes:709/224, Computer network monitoring709/225, Computer network access regulating709/250NETWORK-TO-COMPUTER INTERFACINGExaminersPrimary: Maung, ZarniAttorney, Agent or FirmForeign Patent References
International ClassG06F 013/00AbstractIn accordance with the present invention, a network management program (80) is provided that manages the communication of data packets between an intranetwork (44) and an internetwork (40). An operator of a computer connected to the intranetwork (44) inputs vital information regarding users of computers connected to the intranetwork (44), mapping information regarding computers connected to the intranetwork (44), and policies to be applied against those users and computers, using a graphical user interface (GUI 70). The GUI (70) communicates the vital user information, mapping information and policies to a database (72) which stores and organizes the vital user information, mapping information and policies. A filter executive (76) optimizes the policies stored in the database (72) into a set of rules for each user and passes the rules to a filter engine (78). The filter engine (78) filters all outbound data packets transmitted from the intranetwork (44) to the internetwork (40) and verifies all inbound data packets from the internetwork (40) according to the rules provided by the filter executive (76). The filter executive (76) also communicates the mapping information stored in the database (72) to a naming service manager (74) which further updates the mapping information and returns the updated mapping information to the filter executive (76). Consequently, the filter executive (78) filters the data packets according to the most recent mapping information.Other References
| |