Invention Grant
- Patent Title: Sequentially serving network security devices using a software defined networking (SDN) switch
-
Application No.: US14985827Application Date: 2015-12-31
-
Publication No.: US10091166B2Publication Date: 2018-10-02
- Inventor: Son Pham , Donald Krall , Venkateswara Adusumilli , Edward Lopez , Neil Huynh
- Applicant: Fortinet, Inc.
- Applicant Address: US CA Sunnyvale
- Assignee: Fortinet, Inc.
- Current Assignee: Fortinet, Inc.
- Current Assignee Address: US CA Sunnyvale
- Agency: Hamilton, DeSanctis & Cha LLP
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L12/24 ; H04L12/947 ; H04L12/935

Abstract:
Systems and methods for an SDN switch that provides service group chaining for sequentially serving multiple network security devices are provided. According to one embodiment, a packet received by the switch is processed by a first FPU based on a first set of rules and forwarded conditionally to a first security device. The packet is security processed, including dropping it or forwarding it to an egress port or forwarding it to a second FPU. When forwarded to the second FPU, the packet is processed based on a second set of rules by forwarding it to a second security device or dropping it or forwarding it to the egress port. When forwarded to the second security device, the packet is security processed, including dropping it or forwarding it to the egress port or conditionally forwarding it to a third FPU to be sequentially forwarded to a third security device.
Public/Granted literature
- US20170195292A1 SEQUENTIALLY SERVING NETWORK SECURITY DEVICES USING A SOFTWARE DEFINED NETWORKING (SDN) SWITCH Public/Granted day:2017-07-06
Information query