Invention Grant
- Patent Title: Handling reflexive ACLs with virtual port-channel
-
Application No.: US15373616Application Date: 2016-12-09
-
Publication No.: US10530712B2Publication Date: 2020-01-07
- Inventor: Sameer Dilip Merchant , Sarang Dharmapurikar , Praveen Jain
- Applicant: Cisco Technology, Inc.
- Applicant Address: US CA San Jose
- Assignee: Cisco Technology, Inc.
- Current Assignee: Cisco Technology, Inc.
- Current Assignee Address: US CA San Jose
- Agency: Patterson + Sheridan, LLP
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L12/931 ; H04L12/725 ; H04L12/721 ; H04L12/743

Abstract:
Techniques for providing a reflexive access control list (ACL) on a virtual switch are provided. Embodiments receive a first packet corresponding to a first network flow and a second packet corresponding to a second network flow. Upon determining that a SYN flag is set within the first packet, a first entry is created in the reflexive ACL for the first network flow. Upon determining that the first packet was received over a client port of the first physical switch, the first packet is forwarded to a second physical switch within virtual switch. Upon determining that the second packet has a SYN flag enabled, a second entry is created in the reflexive ACL. Finally, upon determining that the second packet was received from the second physical switch, the second packet is forwarded over an uplink port to a destination defined by the second packet.
Public/Granted literature
- US20180167338A1 HANDLING REFLEXIVE ACLS WITH VIRTUAL PORT-CHANNEL Public/Granted day:2018-06-14
Information query