Patent · US Active

Template-driven intent-based security

US11290493B2 · kind B2 · utility

9Cited by
91References
18Claims
0Family size

Assignee

Inventors

Key dates

Filing dateMay 31, 2019
Grant dateMar 29, 2022
Priority date
Expiry dateNov 30, 2039

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L67/10
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

Methods and systems for managing security in a cloud computing environment are provided. Exemplary methods include: receiving a target, the target specifying workloads of a plurality of workloads to be included in the security policy, the plurality of workloads being associated with the cloud computing environment; identifying nodes and edges in the graph database using the target, the graph database representing the plurality of workloads as nodes and relationships between the plurality of workloads as edges; getting a security intent, the security intent including a high-level security objective in a natural language; obtaining a security template associated with the security intent; and applying the security template to the identified nodes and edges to produce security rules for the security policy, the security rules at least one of allowing and denying communications between the target and other workloads of the plurality of workloads.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.