Invention Grant
- Patent Title: Network property verification
-
Application No.: US15802412Application Date: 2017-11-02
-
Publication No.: US10693744B2Publication Date: 2020-06-23
- Inventor: Alexander Horn , Mukul R. Prasad , Naoki Oguchi , Paparao Palacharla
- Applicant: FUJITSU LIMITED
- Applicant Address: JP Kawasaki
- Assignee: FUJITSU LIMITED
- Current Assignee: FUJITSU LIMITED
- Current Assignee Address: JP Kawasaki
- Agency: Maschoff Brennan
- Main IPC: H04L12/24
- IPC: H04L12/24 ; H04L29/06 ; H04L12/26

Abstract:
A method may include obtaining packet handling rules from at least one firewall in a network and at least one routing table in the network, and translating the packet handling rules to canonical data structures based on priority of rules at a given routing table or a given firewall. Each canonical data structure may represent a subset of packets affected by one or more corresponding packet handling rules such that each packet handling rule is covered by at least one canonical data structure. The method may also include generating a graph representation of the firewalls and the nodes corresponding to the routing tables in the network. The method may additionally include labeling vertices and edges in the graph representation based on the packet handling rules. The method may also include, using the graph representation, verifying one or more network properties to identify any network issues.
Public/Granted literature
- US20190132216A1 NETWORK PROPERTY VERIFICATION Public/Granted day:2019-05-02
Information query