Patent · US Active

Firewall rules with expression matching

US10791092B2 · kind B2 · utility

0Cited by
0References
20Claims
0Family size

Assignee

Inventors

Key dates

Filing dateFeb 14, 2018
Grant dateSep 29, 2020
Priority date
Expiry dateNov 12, 2038

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L69/326
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

Some embodiments provide a method that receives a packet, having a set of one or more layer 7 (L7) expressions, from a datapath. The method identifies a set of datapath firewall rules that match on expressions in the set of expressions. The method provides identifiers for the datapath firewall rules of the identified set to the datapath. The datapath uses the identifiers and additional packet header data to determine a matching firewall rule from the set of datapath firewall rules.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.