发明授权
US08316435B1 Routing device having integrated MPLS-aware firewall with virtual security system support
有权
具有集成MPLS感知防火墙和虚拟安全系统支持的路由设备
- 专利标题: Routing device having integrated MPLS-aware firewall with virtual security system support
- 专利标题(中): 具有集成MPLS感知防火墙和虚拟安全系统支持的路由设备
-
申请号: US12271585申请日: 2008-11-14
-
公开(公告)号: US08316435B1公开(公告)日: 2012-11-20
- 发明人: Kannan Varadhan , Joao Campelo F. N. Gomes
- 申请人: Kannan Varadhan , Joao Campelo F. N. Gomes
- 申请人地址: US CA Sunnyvale
- 专利权人: Juniper Networks, Inc.
- 当前专利权人: Juniper Networks, Inc.
- 当前专利权人地址: US CA Sunnyvale
- 代理机构: Shumaker & Sieffert, P.A.
- 主分类号: H04L29/06
- IPC分类号: H04L29/06
摘要:
An MPLS-aware firewall allows firewall security policies to be applied to MPLS traffic. The firewall, which may be integrated within a routing device, can be configured into multiple virtual security systems. The routing device provides a user interface by which a user specifies one or more zones to be recognized by the integrated firewall when applying stateful firewall services to the packets. The user interface allows the user to define different zones and policies for different ones of the virtual security systems. In addition, the user interface supports a syntax that allows the user to define the zones for the firewall by specifying the customer VPNs as interfaces associated with the zones. The routing device generates mapping information for the integrated firewall to map the customer VPNs to specific MPLS labels for the MPLS tunnels carrying the customer's traffic.
信息查询