Distributed Stateful Inspection Technology on Hash

Yang Yong-tian · Journal of Wuhan University · 2006

Traditional stateful inspection technology cannot perform efficient security detection under the distributed network mode that has multi access points because that the IP packet routing is independent.A distributed Hash algorithm applied in network layer is brought forward to overcome the limitations.The algorithm redirects the IP packets that have the same source and destination to a certain access point to treat.Then the sessions could be reassembled fully in that certain access point and the distributed stateful inspection would be implemented.To improve the robustness of above,a load-balancing algorithm that has transferred back strategy is brought forward in transport layer.The neighbor node that has the least tasks will be selected to deal with local excessive loads.The loads,which were moved out,will be transferred back when local node turns to be light state.The simulation experimentation proves that the algorithms have preferable feasibility and stability.

Read the paper · More papers on PaperTik