Invention Grant
- Patent Title: Recommending network NANO-segmentation for micro-services using flow analysis
-
Application No.: US16436930Application Date: 2019-06-11
-
Publication No.: US11483284B2Publication Date: 2022-10-25
- Inventor: Abhijit Sharma , Prahalad Deshpande , Atul Jadhav , Nikhil Bhalerao , Shashank Ranjan
- Applicant: VMWARE, INC.
- Applicant Address: US CA Palo Alto
- Assignee: VMWARE, INC.
- Current Assignee: VMWARE, INC.
- Current Assignee Address: US CA Palo Alto
- Agency: Patterson & Sheridan, LLP
- Priority: IN201941015422 20190417
- Main IPC: H04L9/40
- IPC: H04L9/40 ; H04L43/08 ; H04L41/0806

Abstract:
The present disclosure provides an approach for generating one or more firewall rules to regulate communication between containerized services running within containers. The approach includes determining which services communicate with each other, independently of in which containers the services execute. The determining occurs over a period of time. If two services communicated with each other during the period of time, then the firewall allows the services to continue communicating, but only over the same ports as used during the period of time. If two services did not communicate during the period of time, then the firewall does not allow the services to communicate after the expiration of the period of time. In some embodiments, redetermining the communication flow over a new period of time may occur after the initial period of time so as to refresh the firewall rules.
Public/Granted literature
- US20200336457A1 RECOMMENDING NETWORK NANO-SEGMENTATION FOR MICRO-SERVICES USING FLOW ANALYSIS Public/Granted day:2020-10-22
Information query