- 专利标题: SEQUENTIALLY SERVING NETWORK SECURITY DEVICES USING A SOFTWARE DEFINED NETWORKING (SDN) SWITCH
-
申请号: US14985827申请日: 2015-12-31
-
公开(公告)号: US20170195292A1公开(公告)日: 2017-07-06
- 发明人: Son Pham , Donald Krall , Venkateswara Adusumilli , Edward Lopez , Neil Huynh
- 申请人: Son Pham , Donald Krall , Venkateswara Adusumilli , Edward Lopez , Neil Huynh
- 申请人地址: US CA Sunnyvale
- 专利权人: Fortinet, Inc.
- 当前专利权人: Fortinet, Inc.
- 当前专利权人地址: US CA Sunnyvale
- 主分类号: H04L29/06
- IPC分类号: H04L29/06 ; H04L12/947 ; H04L12/935 ; H04L12/24
摘要:
Systems and methods for an SDN switch that provides service group chaining for sequentially serving multiple network security devices are provided. According to one embodiment, a packet received by the switch is processed by a first FPU based on a first set of rules and forwarded conditionally to a first security device. The packet is security processed, including dropping it or forwarding it to an egress port or forwarding it to a second FPU. When forwarded to the second FPU, the packet is processed based on a second set of rules by forwarding it to a second security device or dropping it or forwarding it to the egress port. When forwarded to the second security device, the packet is security processed, including dropping it or forwarding it to the egress port or conditionally forwarding it to a third FPU to be sequentially forwarded to a third security device.
公开/授权文献
信息查询