Invention Grant
- Patent Title: In-data-plane network policy enforcement using IP addresses
-
Application No.: US16433225Application Date: 2019-06-06
-
Publication No.: US11102169B2Publication Date: 2021-08-24
- Inventor: Marcel Paul Sosthène Enguehard , Jordan Augé , Giovanna Carofiglio
- Applicant: Cisco Technology, Inc.
- Applicant Address: US CA San Jose
- Assignee: Cisco Technology, Inc.
- Current Assignee: Cisco Technology, Inc.
- Current Assignee Address: US CA San Jose
- Agency: Polsinelli PC
- Main IPC: H04L29/12
- IPC: H04L29/12 ; H04L12/46 ; H04L12/24 ; H04L29/06 ; H04L9/30

Abstract:
The present disclosure provides a method of embedding finer grained information such as user identity and application identity in IPv6 addresses used for end-to-end communications within a network. The finer grained information can be used for improved policy enforcement within the network. In one aspect, generating an address for an end-to-end communication within a network, the address including a user identifier and an application identifier for network policy enforcement; assigning the address to an application used in the end-to-end communication; and performing network segmentation and the network policy enforcement within the network using the address.
Information query