- 专利标题: Endpoint security mechanism to detect IP theft on a virtual machine mobility in switch fabric
-
申请号: US17736748申请日: 2022-05-04
-
公开(公告)号: US11757935B2公开(公告)日: 2023-09-12
- 发明人: Govind Prasad Sharma , Eshwar Rao Yedavalli , Mohammed Javed Asghar , Ashwath Kumar Chandrasekaran , Swapnil Mankar , Umamaheswararao Karyampudi
- 申请人: Cisco Technology, Inc.
- 申请人地址: US CA San Jose
- 专利权人: CISCO TECHNOLOGY, INC.
- 当前专利权人: CISCO TECHNOLOGY, INC.
- 当前专利权人地址: US CA San Jose
- 代理机构: Edell, Shapiro & Finnan, LLC
- 分案原申请号: US16396096 2019.04.26
- 主分类号: H04L9/40
- IPC分类号: H04L9/40 ; G06F9/455 ; H04L61/103 ; H04L101/622
摘要:
Methods to secure against IP address thefts by rogue devices in a virtualized datacenter are provided. Rogue devices are detected and distinguished from a migration of an endpoint in a virtualized datacenter. A first hop network element in a one or more network fabrics intercepts a request that includes an identity of an endpoint and performs a local lookup for the endpoint entity identifier. Based on the lookup not finding the endpoint entity identifier, the first hop network element broadcasts a message such as a remote media access address (MAC) query to other network elements in the one or more network fabrics. Based on the received response, which may include an IP address associated with the MAC address, the first hop network element performs a theft validation process to determine whether the request originated from a migrated endpoint or a rogue device.
公开/授权文献
信息查询