Invention Grant
- Patent Title: Technologies for preventing man-in-the-middle attacks in software defined networks
-
Application No.: US15215290Application Date: 2016-07-20
-
Publication No.: US10320838B2Publication Date: 2019-06-11
- Inventor: Venkatesh Srinivasan , Ambrish Niranjan Mehta , Anand Kumar Singh , Anulekha Chodey , Natarajan Manthiramoorthy , Swaminathan Narayanan
- Applicant: Cisco Technology, Inc.
- Applicant Address: US CA San Jose
- Assignee: CISCO TECHNOLOGY, INC.
- Current Assignee: CISCO TECHNOLOGY, INC.
- Current Assignee Address: US CA San Jose
- Agency: Polsinelli PC
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L29/12 ; H04L12/931 ; H04L12/46

Abstract:
Systems, methods, and computer-readable media for preventing man-in-the-middle attacks within network, without the need to maintain trusted/un-trusted port listings on each network device. The solutions disclosed herein leverage a host database which can be present on controllers, thereby providing a centralized database instead of a per-node DHCP binding database. Systems configured according to this disclosure (1) use a flood list only for ARP packets received from the controller 116; and (2) unicast ARP packets to the controller before communicating the packets to other VTEPs.
Public/Granted literature
- US20180027012A1 TECHNOLOGIES FOR PREVENTING MAN-IN-THE-MIDDLE ATTACKS IN SOFTWARE DEFINED NETWORKS Public/Granted day:2018-01-25
Information query