- 专利标题: Building a cooperative security fabric of hierarchically interconnected network security devices
-
申请号: US15855230申请日: 2017-12-27
-
公开(公告)号: US10686839B2公开(公告)日: 2020-06-16
- 发明人: Michael Xie , Robert A. May , Xiadong Xu , Yong Wang , Jordan E. Thompson , Shenghe Wang
- 申请人: Fortinet, Inc.
- 申请人地址: US CA Sunnyvale
- 专利权人: Fortinet, Inc.
- 当前专利权人: Fortinet, Inc.
- 当前专利权人地址: US CA Sunnyvale
- 代理机构: Jaffery Watson Mendonsa & Hamilton, LLP
- 主分类号: H04L29/06
- IPC分类号: H04L29/06 ; H04L12/24 ; H04W24/02
摘要:
Systems and methods for implementing a cooperative security fabric (CSF) protocol are provided. According to one embodiment, a CSF of multiple network security devices (NSDs) deployed within a protected network is constructed in a form of a tree, having a root node, one or more intermediate nodes and one or more leaf nodes, based on hierarchical interconnections among the NSDs by determining a relative upstream or downstream relationship among each NSD. Backend daemons of the NSDs establish and maintain a bi-directional tunnel between each parent node within the CSF and its respective child nodes through which queries and replies are communicated and through which periodic keep-alive messages and responses are exchanged. Forward daemons of the NSDs enforce a CSF protocol that limits the issuance of query messages to those originated by an upstream node within the CSF and directed to a downstream node within the CSF.
公开/授权文献
信息查询