Invention Grant
- Patent Title: Firewall policy enforcement based on high level identification strings
-
Application No.: US15378313Application Date: 2016-12-14
-
Publication No.: US10530750B2Publication Date: 2020-01-07
- Inventor: Jayant Jain , Kausum Kumar , Anirban Sengupta , Rick Lund , Jingmin Zhou
- Applicant: Nicira, Inc.
- Applicant Address: US CA Palo Alto
- Assignee: NICIRA, INC.
- Current Assignee: NICIRA, INC.
- Current Assignee Address: US CA Palo Alto
- Main IPC: H04L29/06
- IPC: H04L29/06

Abstract:
The technology disclosed herein enables the enforcement of firewall policies based on high level identification strings. In a particular embodiment, a method provides receiving a first reply from a first identification system directed to a requestor system. In response to determining that the first identification system comprises an identification system trusted by the firewall, the method provides inspecting at least one packet included in the first reply to identify a first network address therein associated with a first high level identification string. The method further provides updating a data structure comprising allowed network addresses with the first network address and, after updating the data structure with the first network address, allowing at least one packet from the requestor system directed to a first destination at the first network address to traverse the firewall system based on the data structure.
Public/Granted literature
- US20180167363A1 FIREWALL POLICY ENFORCEMENT BASED ON HIGH LEVEL IDENTIFICATION STRINGS Public/Granted day:2018-06-14
Information query