Invention Grant
- Patent Title: Systems and methods for providing security orchestration for trusted traffic segmentation on untrusted devices
-
Application No.: US16654160Application Date: 2019-10-16
-
Publication No.: US11647019B2Publication Date: 2023-05-09
- Inventor: Alberto Rodriguez Natal , Mikhail Davidov , Lorand Jakab , Richard James Smith , Fabio Maino
- Applicant: Cisco Technology, Inc.
- Applicant Address: US CA San Jose
- Assignee: Cisco Technology, Inc.
- Current Assignee: Cisco Technology, Inc.
- Current Assignee Address: US CA San Jose
- Agency: Polsinelli
- Main IPC: H04L9/40
- IPC: H04L9/40 ; H04L9/32 ; G06F21/34 ; G06F21/60

Abstract:
A method includes generating, by an internal segmentation orchestrator, a key to cipher/decipher a cryptographic segmentation tag used by an untrusted device, transmitting the key to an external segmentation orchestrator, transmitting the cryptographic segmentation tag to the external segmentation orchestrator and provisioning a trusted network edge with the key and optionally the cryptographic segmentation tag. The method can also include onboarding, based on the key and the cryptographic segmentation tag, the untrusted device, wherein the untrusted device receives the cryptographic segmentation tag from the external segmentation orchestrator.
Public/Granted literature
Information query