发明名称 System and method for redirected firewall discovery in a network environment
摘要 A method is provided in one example embodiment that includes receiving metadata from a host over a metadata channel. The metadata may be correlated with a network flow and a network policy may be applied to the connection. In other embodiments, a network flow may be received from a host without metadata associated with the flow, and a discovery redirect may be sent to the host. Metadata may then be received and correlated with the flow to identify a network policy action to apply to the flow.
申请公布号 US9356909(B2) 申请公布日期 2016.05.31
申请号 US201414263164 申请日期 2014.04.28
申请人 McAfee, Inc. 发明人 Cooper Geoffrey;Green Michael W.;Guzik John Richard
分类号 H04L29/06;H04L12/26 主分类号 H04L29/06
代理机构 Patent Capital Group 代理人 Patent Capital Group
主权项 1. One or more computer-readable non-transitory media comprising one or more instructions that, when executed on at least one processors, configure the processor to perform one or more operations for redirected firewall discovery, the one or more operations comprising: transmitting a network flow from a source node to a first firewall; transmitting, from the source node to a second firewall, metadata associated with the network flow; receiving, from the first firewall at the source node, a discovery redirect comprising information identifying the first firewall; and in response to receiving the discovery redirect, transmitting, from the source node to the first firewall, the metadata associated with the network flow, wherein the metadata is associated with a network policy applicable to the network flow at the first firewall.
地址 Santa Clara CA US