Automatically generating rules for connection security
    1.
    发明申请
    Automatically generating rules for connection security 有权
    自动生成连接安全性规则

    公开(公告)号:US20070016945A1

    公开(公告)日:2007-01-18

    申请号:US11183317

    申请日:2005-07-15

    IPC分类号: G06F15/16

    CPC分类号: H04L63/0263 H04L63/20

    摘要: A method and system for creating security policies for firewall and connection policies in an integrated manner is provided. The security system provides a user interface through which a user can define a security rule that specifies both a firewall policy and a connection policy. After the security rule is specified, the security system automatically generates a firewall rule and a connection rule to implement the security rule. The security system provides the firewall rule to a firewall engine that is responsible for enforcing the firewall rules and provides the connection rule to an IPsec engine that is responsible for enforcing the connection rules.

    摘要翻译: 提供了以综合方式为防火墙和连接策略创建安全策略的方法和系统。 安全系统提供用户界面,用户可以通过该界面定义指定防火墙策略和连接策略的安全规则。 指定安全规则后,安全系统自动生成防火墙规则和连接规则,实现安全规则。 安全系统向防火墙引擎提供防火墙规则,该引擎负责执行防火墙规则,并向负责执行连接规则的IPsec引擎提供连接规则。

    Generating an outbound connection security policy based on an inbound connections security policy
    2.
    发明申请
    Generating an outbound connection security policy based on an inbound connections security policy 有权
    根据入站连接安全策略生成出站连接安全策略

    公开(公告)号:US20070016937A1

    公开(公告)日:2007-01-18

    申请号:US11182720

    申请日:2005-07-15

    IPC分类号: H04L9/00

    摘要: A security system that allows an outbound security policy for the connection security to be automatically derived from an inbound security policy for connection security is provided. The security system for an inbound security policy has security suites that each specify one or more security algorithms. Because the security system offers an outbound security suite that matches an inbound security suite, the computing devices that have the same inbound security policy have matching inbound and outbound security suites.

    摘要翻译: 提供一种安全系统,允许从连接安全性的入站安全策略自动导出连接安全性的出站安全策略。 入站安全策略的安全系统具有各自指定一个或多个安全算法的安全套件。 由于安全系统提供与入站安全套件相匹配的出站安全套件,具有相同入站安全策略的计算设备具有匹配的入站和出站安全套件。