Session slicing of mirrored packets
US-12184680-B2 · Dec 31, 2024 · US
US2020389502A1 · US · A1
| Field | Value |
|---|---|
| Publication number | US-2020389502-A1 |
| Application number | US-202016908681-A |
| Country | US |
| Kind code | A1 |
| Filing date | Jun 22, 2020 |
| Priority date | Jan 23, 2017 |
| Publication date | Dec 10, 2020 |
| Grant date | — |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
To prevent un-authorized accesses to data and resources available in workloads on an organization's or enterprise's computer network, various improvements to automated computer network security processes to enable them to enforce network security policies using native network security mechanisms to control communications to and/or from workload units of applications running on different nodes within hybrid computer network infrastructures having both traditional hardware resources and virtual resources provided by private and public cloud infrastructure services.
Opening claim text (preview).
1 . In a computer network comprised of plurality of interconnected computing nodes, each node running at least one work load unit of an application workload and at least one network security mechanism for controlling data flows to the interconnected computing nodes of the computer network, a computer implemented method for enforcing a plurality of security policies for the computer network using the network security mechanism, the method executing on or more computers in communication with the network and comprising: for each of the at least one infrastructure resources, assigning one or more attributes to the infrastructure resource using information from the infrastructure service provider, each attribute comprising a key and value for the key using information; and selecting the infrastructure source as a member of in one or more logical groups using the one or more attributes; and computing a configuration for at least one network security mechanism using the plurality of security policies and the infrastructure resources that are members of each of the logical groups to which each the plurality of security policies applies. 2 - 27 . (canceled)
Rule management · CPC title
Grouping of entities · CPC title
for managing network security; network security policies in general (filtering policies H04L63/0227) · CPC title
Access control lists [ACL] · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.