Invention Grant
- Patent Title: VxLAN security implemented using VxLAN membership information at VTEPs
-
Application No.: US14549915Application Date: 2014-11-21
-
Publication No.: US10171559B2Publication Date: 2019-01-01
- Inventor: Feng Cai , Yuxiang Chen , Danmu Wu , Zhiyong Fang
- Applicant: Cisco Technology, Inc.
- Applicant Address: US CA San Jose
- Assignee: Cisco Technology, Inc.
- Current Assignee: Cisco Technology, Inc.
- Current Assignee Address: US CA San Jose
- Agency: Edell, Shapiro & Finnan, LLC
- Main IPC: H04L29/08
- IPC: H04L29/08 ; H04L12/46

Abstract:
A network device stores a Virtual Extensible Local Area Network (VxLAN) Tunnel Endpoint (VTEP) membership information that associates VxLANs each with a corresponding set of VTEPs authorized to originate VxLAN packets on that VxLAN. The network device receives from a communication network a VxLAN packet that identifies a VxLAN and an originating VTEP. The VTEP compares the originating VTEP to the set of VTEPs associated with the VxLAN in the VTEP membership information that matches the identified VxLAN. If the comparison indicates that the originating VTEP is not included in the set of VTEPs authorized to originate VxLAN packets, the VTEP discards the received VxLAN packet. Otherwise the VTEP further processes the VxLAN packet.
Public/Granted literature
- US20160149808A1 VxLAN Security Implemented using VxLAN Membership Information at VTEPs Public/Granted day:2016-05-26
Information query