Invention Application
- Patent Title: SECURITY POLICY ENFORCEMENT FOR RESOURCES IN BRIDGE MODE
-
Application No.: US18791151Application Date: 2024-07-31
-
Publication No.: US20240396945A1Publication Date: 2024-11-28
- Inventor: Shree Narasimha Murthy , Sanjay Kumar Hooda , Prakash C. Jain , Roberto Mitsuo Kobo , Rajagopal Venkatraman
- Applicant: Cisco Technology, Inc.
- Applicant Address: US CA San Jose
- Assignee: Cisco Technology, Inc.
- Current Assignee: Cisco Technology, Inc.
- Current Assignee Address: US CA San Jose
- Main IPC: H04L9/40
- IPC: H04L9/40 ; G06F9/455 ; H04L61/5007 ; H04L61/5014

Abstract:
Techniques for analyzing traffic originating from a host device in a wireless network to identify one or more virtual machines (VMs) running on the host device and connected to the network via the host device in bridge mode. When a VM is created in bridge mode behind a host device, the traffic originated by the VM will have the source Media Access Layer (MAC) address of the host device. According to techniques described herein, devices and/or components associated with the network may profile the traffic to identify an address of the VM, such as by analyzing dynamic host configuration protocol (DHCP) packets to determine the Internet Protocol (IP) address of the VM. Once the IP address and the MAC address of the VM is known, the components and/or devices may apply security policies to the VM that may be different than security policies applied to the host device.
Information query