发明名称 REPLICATING FIREWALL POLICY ACROSS MULTIPLE DATA CENTERS
摘要 A method of replicating firewall rules across a group of data centers. Each data center includes a set of hosts and a network manager. Each host is configured to host a set of data compute nodes (DCNs). The method identifies a first DCN on a host in a primary data center. The first DCN is associated with a set of global firewall rules utilizing unique identifiers recognized by the network manager of each data center. The method allocates storage for a second DCN on a host in a secondary data center to replicate the first DCN. The method replicates the set of global firewall rules associated with the first DCN into the storage allocated for the second DCN. The method receives an indication that the second DCN is powered on. The method enforces the set of global firewall rules for the second DCN by using the replicated global firewall rules.
申请公布号 US2017004192(A1) 申请公布日期 2017.01.05
申请号 US201514811382 申请日期 2015.07.28
申请人 Nicira, Inc. 发明人 Masurekar Uday;Bansal Kaushal
分类号 G06F17/30;H04L29/08;H04L29/06 主分类号 G06F17/30
代理机构 代理人
主权项 1. A method of replicating firewall rules across a plurality of data centers, each data center comprising a set of hosts and a network manager, each host configured to host a set of data compute nodes (DCNs), the method comprising: identifying a first DCN on a host in a primary data center, the first DCN associated with a set of global firewall rules utilizing unique identifiers recognized by the network manager of each data center; allocating storage for a second DCN on a host in a secondary data center to replicate the first DCN; replicating the set of global firewall rules associated with the first DCN into the storage allocated for the second DCN; receiving an indication that the second DCN is powered on; and enforcing the set of global firewall rules for the second DCN using the replicated global firewall rules.
地址 Palo Alto CA US
您可能感兴趣的专利