发明授权
- 专利标题: Fully integrated switching and routing in a security device
- 专利标题(中): 在安全设备中完全集成的交换和路由
-
申请号: US13333439申请日: 2011-12-21
-
公开(公告)号: US09021547B1公开(公告)日: 2015-04-28
- 发明人: Tsai-Zong Lin , Chih-Wei Chao , Jin Shang , Dongyi Jiang , Anchung Chung
- 申请人: Tsai-Zong Lin , Chih-Wei Chao , Jin Shang , Dongyi Jiang , Anchung Chung
- 申请人地址: US CA Sunnyvale
- 专利权人: Juniper Networks, Inc.
- 当前专利权人: Juniper Networks, Inc.
- 当前专利权人地址: US CA Sunnyvale
- 代理机构: Shumaker & Sieffert, P.A.
- 主分类号: G06F17/00
- IPC分类号: G06F17/00 ; G06F7/04 ; H04L29/06
摘要:
This disclosure is directed toward an integrated switching and routing security device that provides zone-based security directly between layer two (L2) interfaces of L2 bridge domains and/or layer three (L3) interfaces of L3 routing instances within the security device. The integrated switching and routing security device supports both switching and routing functionalities for packets on L2 and L3 interfaces, and supports security within and between L2 bridge domains and L3 routing instances. The integrated switching and routing security device configures L2 security zones for one or more L2 interfaces and configures L3 security zones for one or more L3 interfaces. The integrated switching and routing security device then applies security policies to incoming packets according to the L2 security zones and/or the L3 security zones associated with the incoming interface and an outgoing interface for the packets to provide end-to-end security within the security device.
信息查询