Skip to Main Content
With the rapid development of information technology, network security issues become increasingly serious. Forwarding and Control Elements Separation (ForCES) architecture advanced by ForCES working group of IETF routing area can solve network security problems well, which has become an important research direction of next generation Internet. This paper first illustrates the design of stateful packet inspection firewall (SPIF) based on ForCES architecture, and then focuses on the implementation based on network processor. Finally, we test our work and the result verifies the correctness and feasibility of SPIF based on ForCES architecture.