Invention Grant
- Patent Title: Building a cooperative security fabric of hierarchically interconnected network security devices
-
Application No.: US15855230Application Date: 2017-12-27
-
Publication No.: US10686839B2Publication Date: 2020-06-16
- Inventor: Michael Xie , Robert A. May , Xiadong Xu , Yong Wang , Jordan E. Thompson , Shenghe Wang
- Applicant: Fortinet, Inc.
- Applicant Address: US CA Sunnyvale
- Assignee: Fortinet, Inc.
- Current Assignee: Fortinet, Inc.
- Current Assignee Address: US CA Sunnyvale
- Agency: Jaffery Watson Mendonsa & Hamilton, LLP
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L12/24 ; H04W24/02

Abstract:
Systems and methods for implementing a cooperative security fabric (CSF) protocol are provided. According to one embodiment, a CSF of multiple network security devices (NSDs) deployed within a protected network is constructed in a form of a tree, having a root node, one or more intermediate nodes and one or more leaf nodes, based on hierarchical interconnections among the NSDs by determining a relative upstream or downstream relationship among each NSD. Backend daemons of the NSDs establish and maintain a bi-directional tunnel between each parent node within the CSF and its respective child nodes through which queries and replies are communicated and through which periodic keep-alive messages and responses are exchanged. Forward daemons of the NSDs enforce a CSF protocol that limits the issuance of query messages to those originated by an upstream node within the CSF and directed to a downstream node within the CSF.
Public/Granted literature
- US20180324217A1 BUILDING A COOPERATIVE SECURITY FABRIC OF HIERARCHICALLY INTERCONNECTED NETWORK SECURITY DEVICES Public/Granted day:2018-11-08
Information query