发明授权
- 专利标题: Non-intrusive method and apparatus for automatically dispatching security rules in cloud environment
- 专利标题(中): 在云环境中自动调度安全规则的非侵入性方法和装置
-
申请号: US14353053申请日: 2012-09-12
-
公开(公告)号: US09444787B2公开(公告)日: 2016-09-13
- 发明人: Bo Gao , Steven D. Ims , Ling Lan , Jason R. McGee , Li Yi , Yu Zhang
- 申请人: Bo Gao , Steven D. Ims , Ling Lan , Jason R. McGee , Li Yi , Yu Zhang
- 申请人地址: KY Grand Cayman
- 专利权人: GLOBALFOUNDRIES INC.
- 当前专利权人: GLOBALFOUNDRIES INC.
- 当前专利权人地址: KY Grand Cayman
- 代理机构: Scully Scott Murphy and Presser
- 优先权: CN201110324588 20111024
- 国际申请: PCT/CN2012/081274 WO 20120912
- 国际公布: WO2013/060203 WO 20130502
- 主分类号: H04L29/00
- IPC分类号: H04L29/00 ; H04L29/06 ; G06F21/55 ; H04L29/08
摘要:
The present invention relates to a non-intrusive method and apparatus for automatically dispatching security rules in a cloud environment. The method comprises: forming a composition application model of an application in the cloud environment, said composition application model including at least types of various servers for deploying said application; generating a topology model of said various servers in the cloud environment; automatically generating security rules to be adopted by the server-side firewalls of respective servers based on the application context of said application, said composition application model and said topology model; and dispatching said security rules to each server-side firewall based on said composition application model and topology model.
公开/授权文献
信息查询