Patent · US Active

Distributed network connection policy management

US9178850B2 · kind B2 · utility

17Cited by
2References
19Claims
0Family size

Assignee

Inventors

Key dates

Filing dateMar 9, 2009
Grant dateNov 3, 2015
Priority date
Expiry dateJul 1, 2033

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L63/0218
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

A connection policy for a communications network has a local connection policy indicating which paths between a given one of the nodes (computer A, router A, host 898) and others of the nodes (computers B, C, filters B1, B2, C1, C2, hosts 890, 892) are allowable paths, by a symbolic expression of ranges endpoint addresses and other local connection policies in respect of other nodes. It is implemented in a distributed manner by determining, for the given node, which of the allowable paths, are dual authorized as allowable by the other local connection policy relating to the other node at the other end of that path, by Boolean operations on the symbolic expressions. For a given message for a given path between two of the nodes having their own local connection policies, both of these nodes determine whether the given path is currently dual authorized. This can provide reassurance that changes in versions of the connection policy won't transiently open a risk of undetected unwanted communication.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.