Patent · US Active

Migrating firewall connection state for a firewall service virtual machine

US9215210B2 · kind B2 · utility

28Cited by
15References
24Claims
0Family size

Assignee

Inventors

Key dates

Filing dateMar 31, 2014
Grant dateDec 15, 2015
Priority date
Expiry dateMar 31, 2034

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L63/0254
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

For a host that executes one or more guest virtual machines (GVMs), some embodiments provide a novel virtualization architecture for utilizing a firewall service virtual machine (SVM) on the host to check the packets sent by and/or received for the GVMs. In some embodiments, the GVMs connect to a software forwarding element (e.g., a software switch) that executes on the host to connect to each other and to other devices operating outside of the host. Instead of connecting the firewall SVM to the host's software forwarding element that connects its GVMs, the virtualization architecture of some embodiments provides an SVM interface (SVMI) through which the firewall SVM can be accessed to check the packets sent by and/or received for the GVMs.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.