Invention Grant
- Patent Title: Firewall configuration versioning
-
Application No.: US15386207Application Date: 2016-12-21
-
Publication No.: US11082400B2Publication Date: 2021-08-03
- Inventor: Kaushal Bansal , Uday Masurekar , Shadab Shah , James Joseph Stabile , Steven Peters
- Applicant: Nicira, Inc.
- Applicant Address: US CA Palo Alto
- Assignee: Nicira, Inc.
- Current Assignee: Nicira, Inc.
- Current Assignee Address: US CA Palo Alto
- Agency: Adeli LLP
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06F12/0813 ; G06F12/0875

Abstract:
Some embodiments provide a method for managing firewall protection in a datacenter that includes multiple host machines that each hosts a set of data compute nodes. The method maintains a firewall configuration for the host machines at a network manager of the data center. The firewall configuration includes multiple firewall rules to be enforced at the host machines. The method aggregates a first set of updates to the firewall configuration into a first aggregated update and associates the first aggregated update with a first version number. The method distributes a first host-level firewall configuration update to a first host machine based on the first aggregated update and associates the first host machine with the first version number. The method aggregates a second set of updates to the firewall configuration into a second aggregated update and associates the second aggregated update with a second version number.
Public/Granted literature
- US20180007008A1 Firewall Configuration Versioning Public/Granted day:2018-01-04
Information query