×

SECURITY MEDIATION FOR DYNAMICALLY PROGRAMMABLE NETWORK

  • US 20140075498A1
  • Filed: 03/13/2013
  • Published: 03/13/2014
  • Est. Priority Date: 05/22/2012
  • Status: Active Grant
First Claim
Patent Images

1. A method for enforcing a security policy at an interface to a network switch of a dynamically programmable computer network, the method comprising, with a computing system coupled to the network:

  • receiving a packet disposition directive from the network, the packet disposition directive comprising a candidate flow rule that may be implemented by the network switch to control the flow of communications across the network;

    determining whether the candidate flow rule conflicts with one or more flow rules in a set of currently active flow rules, wherein the currently active flow rules currently control the flow of communications across the network; and

    in response to determining that the candidate flow rule does not conflict with any of the currently active flow rules, adding the candidate flow rule to the set of currently active flow rules.

View all claims
  • 2 Assignments
Timeline View
Assignment View
    ×
    ×