Invention Grant
- Patent Title: Method for data center network segmentation
-
Application No.: US16548305Application Date: 2019-08-22
-
Publication No.: US11057348B2Publication Date: 2021-07-06
- Inventor: Abdallah M Baabdallah
- Applicant: Saudi Arabian Oil Company
- Applicant Address: SA Dhahran
- Assignee: Saudi Arabian Oil Company
- Current Assignee: Saudi Arabian Oil Company
- Current Assignee Address: SA Dhahran
- Agency: Leason Ellis LLP
- Main IPC: H04L29/06
- IPC: H04L29/06

Abstract:
A method for data center network segmentation is provided. The data center network segmentation is for a hybrid environment including physical servers and appliances as well as virtual servers and appliances. The data center network segmentation uses software-defined networking (SDN) technology of physical SDN-ready servers/appliances and virtual SDN-ready servers/appliances. The method includes centralizing the management of network security policies for physical and virtual firewalls. The method includes using SDN to direct network traffic between physical servers through physical firewalls, and to direct network traffic between virtual servers through virtual firewalls. The method further includes using the SDN to direct network traffic from physical servers to virtual servers through physical firewalls, and to direct network traffic from virtual servers to physical servers through virtual firewalls. A firewall management device monitors activity of the physical and virtual firewalls, and adjusts a firewall management policy in response to the monitored activity.
Public/Granted literature
- US20210058371A1 METHOD FOR DATA CENTER NETWORK SEGMENTATION Public/Granted day:2021-02-25
Information query