Distributed network security using a logical multi-dimensional label-based policy model
US9882919B2 · kind B2 · utility
Assignee
Inventors
Key dates
| Filing date | Sep 2, 2014 |
| Grant date | Jan 30, 2018 |
| Priority date | — |
| Expiry date | Oct 15, 2034 |
Classification
- Technology area (CPC H)Electricity
- CPC primaryH04L61/4511
- WIPO fieldDigital communication
- WIPO sectorElectrical engineering
Abstract
A managed server (MS) within an administrative domain is quarantined. The administrative domain includes multiple MSs that use management instructions to configure management modules so that the configured management modules implement an administrative domain-wide management policy that comprises a set of one or more rules. The quarantined MS is isolated from other MSs. A description of the MS is modified to indicate that the MS is quarantined, thereby specifying a description of the quarantined MS. Cached actor-sets are updated to indicate the quarantined MS's changed state, thereby specifying updated actor-sets. A determination is made regarding which updated actor-sets are relevant to an other MS, thereby specifying currently-relevant updated actor-sets. A determination is made regarding whether the currently-relevant updated actor-sets differ from actor-sets previously sent to the other MS. Responsive to determining that the currently-relevant updated actor-sets are identical to the previously-sent actor-sets, no further action is taken.
Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.