Building a cooperative security fabric of hierarchically interconnected network security devices
US10686839B2 · kind B2 · utility
Assignee
Inventors
Key dates
| Filing date | Dec 27, 2017 |
| Grant date | Jun 16, 2020 |
| Priority date | — |
| Expiry date | Nov 22, 2038 |
Classification
- Technology area (CPC H)Electricity
- CPC primaryH04W24/02
- WIPO fieldDigital communication
- WIPO sectorElectrical engineering
Abstract
Systems and methods for implementing a cooperative security fabric (CSF) protocol are provided. According to one embodiment, a CSF of multiple network security devices (NSDs) deployed within a protected network is constructed in a form of a tree, having a root node, one or more intermediate nodes and one or more leaf nodes, based on hierarchical interconnections among the NSDs by determining a relative upstream or downstream relationship among each NSD. Backend daemons of the NSDs establish and maintain a bi-directional tunnel between each parent node within the CSF and its respective child nodes through which queries and replies are communicated and through which periodic keep-alive messages and responses are exchanged. Forward daemons of the NSDs enforce a CSF protocol that limits the issuance of query messages to those originated by an upstream node within the CSF and directed to a downstream node within the CSF.
Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.