Search International and National Patent Collections

1. (WO2017201264) MICROSEGMENTATION IN HETEROGENEOUS SOFTWARE DEFINED NETWORKING ENVIRONMENTS

Pub. No.:    WO/2017/201264    International Application No.:    PCT/US2017/033297
Publication Date: Fri Nov 24 00:59:59 CET 2017 International Filing Date: Fri May 19 01:59:59 CEST 2017
IPC: H04L 12/931
G06F 9/455
H04L 29/06
H04L 12/713
Applicants: CISCO TECHNOLOGY, INC.
Inventors: JAIN, Praveen
MEHTA, Munish
JAIN, Saurabh
YANG, Yibin
Title: MICROSEGMENTATION IN HETEROGENEOUS SOFTWARE DEFINED NETWORKING ENVIRONMENTS
Abstract:
Microsegmentation in a heterogeneous software-defined network can be performed by classifying endpoints associated with a first virtualized environment into respective endpoint groups based on respective attributes, and classifying endpoints associated with a second virtualized environment into respective security groups based on respective attributes. Each respective endpoint group can correspond to a respective security group having the same attribute. Each respective endpoint group and corresponding security group can be associated with a respective policy model defining rules for processing associated traffic. Each of the respective security groups can be used to generate a respective network attribute endpoint group, which can include the network addresses of those endpoints in the respective security group. Each respective network attribute endpoint group can inherit the policy model of the respective endpoint group corresponding to the respective security group. Traffic between the endpoints can then be processed based on the various classifications and associated rules.