发明名称 CONDITIONAL DECLARATIVE POLICIES
摘要 Methods, systems, and media for producing a firewall rule set are provided herein. Exemplary methods may include receiving a declarative policy associated with a computer network security policy; collecting information from at least one external system of record; generating a firewall rule set using the declarative policy and information, the firewall rule set including addresses to or from which network communications are permitted,denied, redirected or logged, the firewall rule set being at a lower level of abstraction than the declarative policy; and provisioning the firewall rule set to a plurality of enforcement points of a distributed firewall, the firewall selectively policing network communications among workloads using the firewall rule set.
申请公布号 WO2016160523(A1) 申请公布日期 2016.10.06
申请号 WO2016US24053 申请日期 2016.03.24
申请人 VARMOUR NETWORKS, INC. 发明人 LIAN, Jia-Jyi;PATERRA, Anthony;WOOLWARD, Marc
分类号 H04L29/06;H04L12/24 主分类号 H04L29/06
代理机构 代理人
主权项
地址