- 专利标题: Zone-Based Firewall Policy Model for a Virtualized Data Center
-
申请号: US13180678申请日: 2011-07-12
-
公开(公告)号: US20130019277A1公开(公告)日: 2013-01-17
- 发明人: David Chang , Abhijit Patra , Nagaraj Bagepalli , Rajesh Kumar Sethuraghavan
- 申请人: David Chang , Abhijit Patra , Nagaraj Bagepalli , Rajesh Kumar Sethuraghavan
- 申请人地址: US CA San Jose
- 专利权人: CISCO TECHNOLOGY, INC.
- 当前专利权人: CISCO TECHNOLOGY, INC.
- 当前专利权人地址: US CA San Jose
- 主分类号: G06F21/00
- IPC分类号: G06F21/00
摘要:
Techniques are provided for implementing a zone-based firewall policy. At a virtual network device, information is defined and stored that represents a security management zone for a virtual firewall policy comprising one or more common attributes of applications associated with the security zone. Information representing a firewall rule for the security zone is defined and comprises first conditions for matching common attributes of applications associated with the security zone and an action to be performed on application traffic. Parameters associated with the application traffic are received that are associated with properly provisioned virtual machines. A determination is made whether the application traffic parameters satisfy the conditions of the firewall rule and in response to determining that the conditions are satisfied, the action is performed.
公开/授权文献
信息查询