发明名称 A SCALABLE FIREWALL POLICY MANAGEMENT PLATFORM
摘要 Securing large networks having heterogeneous computing resources including provision of multiple services both to clients within and outside of the network, multiple sites, security zones, and other characteristics is provided using access control functionality implemented at hosts within the network. The access control functionality includes respective access control policies for indicating to each host from which other computers it can accept connections. Content of the access control policies can be determined based on application data flow needs, and can draw information from databases including DNS and security zone information for hosts to which the access control policies will be applied. Access control policies can be formatted automatically for different host with different characteristics from the same base logical rule set. Other aspects include using more permissive and/or access control rules provided on network equipment to block known bad data, while providing host-based access control focused on application data flow.
申请公布号 US2012151555(A1) 申请公布日期 2012.06.14
申请号 US201213397922 申请日期 2012.02.16
申请人 BECHTEL ADAM;VIJAYARAGHAVAN JAYANTH;XU KUAI;HODIGERE PRADEEP;ONG HERBERT;YAHOO! INC. 发明人 BECHTEL ADAM;VIJAYARAGHAVAN JAYANTH;XU KUAI;HODIGERE PRADEEP;ONG HERBERT
分类号 G06F21/00 主分类号 G06F21/00
代理机构 代理人
主权项
地址