Invention Grant
- Patent Title: Interface groups for rule-based network security
-
Application No.: US15350363Application Date: 2016-11-14
-
Publication No.: US09917813B2Publication Date: 2018-03-13
- Inventor: Yixin Pan , Hongwei Li , Michael Xie
- Applicant: Fortinet, Inc.
- Applicant Address: US CA Sunnyvale
- Assignee: Fortinet, Inc.
- Current Assignee: Fortinet, Inc.
- Current Assignee Address: US CA Sunnyvale
- Agency: Hamilton, DeSanctis & Cha LLP
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L12/851

Abstract:
Systems and methods for designating interfaces of a network security appliance as source/destination interfaces in connection with defining a security rule are provided. According to one embodiment, a security rule configuration interface is displayed through which a network administrator can specify parameters of security rules to be applied to traffic attempting to traverse the network security appliance. Information defining a traffic flow to be controlled by a security rule is received via the security rule configuration interface. The information defining the traffic flow includes: (i) a set of source interfaces; and (ii) a set of destination interfaces. At least one of which includes multiple interfaces such that the security rule permits the traffic flow to be defined in terms of multiple source interfaces and/or multiple destination interfaces.
Public/Granted literature
- US20170063796A1 INTERFACE GROUPS FOR RULE-BASED NETWORK SECURITY Public/Granted day:2017-03-02
Information query