- Patent Title: Constraint rules for constraining creation of a segmentation policy
-
Application No.: US16953249Application Date: 2020-11-19
-
Publication No.: US11647050B2Publication Date: 2023-05-09
- Inventor: Juraj George Fandli , Russell Stuart Goodwin , Ronald Isaacson , Roy Nobuo Nakashima
- Applicant: Illumio, Inc.
- Applicant Address: US CA Sunnyvale
- Assignee: Illumio, Inc.
- Current Assignee: Illumio, Inc.
- Current Assignee Address: US CA Sunnyvale
- Agency: Fenwick & West LLP
- Main IPC: H04L9/40
- IPC: H04L9/40 ; G06F9/50

Abstract:
A policy management server manages a segmentation policy and policy constraints. The segmentation policy comprises a set of segmentation rules that each permit connections between specified groups of workloads that provide or consume network-based services. The policy constraints comprise a set of constraint rules that determine compliance of the segmentation rules. A workflow process may be initiated to resolve non-compliant rules by enabling an administrator to approve or deny the rule. In a large enterprise managing significant numbers of workloads, the policy constraints may be employed to ensure that overly permissive segmentation rules are not being created. This facilitates creation of a robust and narrowly tailored segmentation policy that reduces exposure of the enterprise to network-based security threats.
Public/Granted literature
- US20220159038A1 CONSTRAINT RULES FOR CONSTRAINING CREATION OF A SEGMENTATION POLICY Public/Granted day:2022-05-19
Information query