DocumentCode
2165433
Title
Parallelization of IP-packet filter rules
Author
Miei, Takeshi ; Maruyama, Mitsuru ; Ogura, Tsuyoshi ; Takahashi, Naohisa
Author_Institution
Software Labs., Nippon Telegraph & Telephone Co., Tokyo, Japan
fYear
1997
fDate
10-12 Dec 1997
Firstpage
381
Lastpage
388
Abstract
A compiler for parallelizing IP-packet filter rules is presented which will improve network security and reduce packet-forwarding performance degradation. It analyzes the interdependence of packet-filtering rules specified by a network administrator and translates them into an intermediate program whose instructions can be executed in parallel. Three types of compiler operations are introduced: division is used to divide the rules into parallel expressions, simplification is used to simplify redundant rules, deletion is used to delete infeasible rules
Keywords
parallelising compilers; security of data; IP-packet filter rules parallelisation; compiler; infeasible rules; network security; packet-forwarding performance degradation; Computer networks; Degradation; Electronic mail; Information filtering; Information filters; Internet; Laboratories; TCPIP; Telegraphy; Telephony;
fLanguage
English
Publisher
ieee
Conference_Titel
Algorithms and Architectures for Parallel Processing, 1997. ICAPP 97., 1997 3rd International Conference on
Conference_Location
Melbourne, Vic.
Print_ISBN
0-7803-4229-1
Type
conf
DOI
10.1109/ICAPP.1997.651506
Filename
651506
Link To Document