SYSTEM AND METHOD FOR HOST-INITIATED FIREWALL DISCOVERY IN A NETWORK ENVIRONMENT
摘要
A method is provided in one example embodiment that includes intercepting a network flow to a destination node having a network address and sending a discovery query based on a discovery action associated with the network address in a firewall cache. A discovery result may be received and metadata associated with the flow may be sent to a firewall before releasing the network flow. In other embodiments, a discovery query may be received from a source node and a discovery result sent to the source node, wherein the discovery result identifies a firewall for managing a route to a destination node. Metadata may be received from the source node over a metadata channel. A network flow from the source node to the destination node may be intercepted, and the metadata may be correlated with the network flow to apply a network policy to the network flow.
申请公布号
WO2013058940(A1)
申请公布日期
2013.04.25
申请号
WO2012US57153
申请日期
2012.09.25
申请人
MCAFEE, INC.;COOPER, GEOFFREY;GREEN, MICHAEL, W.;GUZIK, JOHN, RICHARD
发明人
COOPER, GEOFFREY;GREEN, MICHAEL, W.;GUZIK, JOHN, RICHARD