Design and implementation of security gateway prototype system based on protocol translation

CHEN Zhi-xiang,LU Yin,LU Sang-lu,CHEN Dao-xu
2007-01-01
Journal of Computer Applications
Abstract:This paper described the design of a security gateway based on protocol translation in IPv4-IPv6 hybrid network, and implemented a security gateway prototype system based on Linux 2.6 kernel netfilter framework. The prototype system tracks up-layer UDP/TCP connections based on protocol translation and it performs hybrid end-to-end access control policies. Experimental testing results indicate that it has small latency during end-to-end packet transmission and may satisfy the needs of enterprise networking.
What problem does this paper attempt to address?