- 专利标题: BUILDING A COOPERATIVE SECURITY FABRIC OF HIERARCHICALLY INTERCONNECTED NETWORK SECURITY DEVICES
-
申请号: US15855230申请日: 2017-12-27
-
公开(公告)号: US20180324217A1公开(公告)日: 2018-11-08
- 发明人: Michael Xie , Robert A. May , Xiadong Xu , Yong Wang , Jordan E. Thompson , Shenghe Wang
- 申请人: Fortinet, Inc.
- 申请人地址: US CA Sunnyvale
- 专利权人: Fortinet, Inc.
- 当前专利权人: Fortinet, Inc.
- 当前专利权人地址: US CA Sunnyvale
- 主分类号: H04L29/06
- IPC分类号: H04L29/06
摘要:
Systems and methods for implementing a cooperative security fabric (CSF) protocol are provided. According to one embodiment, a CSF of multiple network security devices (NSDs) deployed within a protected network is constructed in a form of a tree, having a root node, one or more intermediate nodes and one or more leaf nodes, based on hierarchical interconnections among the NSDs by determining a relative upstream or downstream relationship among each NSD. Backend daemons of the NSDs establish and maintain a bi-directional tunnel between each parent node within the CSF and its respective child nodes through which queries and replies are communicated and through which periodic keep-alive messages and responses are exchanged. Forward daemons of the NSDs enforce a CSF protocol that limits the issuance of query messages to those originated by an upstream node within the CSF and directed to a downstream node within the CSF.
公开/授权文献
信息查询