×

DEPLOYING FIREWALL FOR VIRTUAL NETWORK DEFINED OVER PUBLIC CLOUD INFRASTRUCTURE

  • US 20190104109A1
  • Filed: 05/04/2018
  • Published: 04/04/2019
  • Est. Priority Date: 10/02/2017
  • Status: Active Grant
First Claim
Patent Images

1. A method of processing a data message that is sent by a first machine to a second machine through a virtual network that is defined over a plurality of public cloud datacenters, the method comprising:

  • at a firewall service machine that is deployed at a first public cloud datacenter,using a set of attributes associated with the data message to identify a firewall rule that is applicable to the data message; and

    performing a firewall action specified by the identified firewall rule on the data message, said performing comprising;

    dropping the data message when the firewall action specifies that the data message should be dropped; and

    allowing the data message to pass through the virtual network when the firewall action specifies that the data message should be allowed to pass through.

View all claims
  • 3 Assignments
Timeline View
Assignment View
    ×
    ×