next up previous
Next: 2.11.2 011: response Up: 2.11 011: granularity smaller Previous: 2.11 011: granularity smaller

2.11.1 011: Definition of requirement

It is desired to do SPD lookups based upon UDP/TCP port numbers (source and destination) as well as source and destination address.

In addition, for hosts a lookup based upon Unix UID should be possible.

For gateways, it is also desirable to do lookup based upon IPSO labels.



Michael Richardson
2001-08-12