×

Software defined networking pipe for network traffic inspection

  • US 9,407,579 B1
  • Filed: 01/07/2016
  • Issued: 08/02/2016
  • Est. Priority Date: 12/02/2013
  • Status: Active Grant
First Claim
Patent Images

1. A software defined networking (SDN) computer network comprising:

  • a security component;

    an SDN switch comprising a plurality of ports that receive network traffic of an SDN computer network, the SDN switch having a first port coupled to a sender component and a second port coupled to the security component, the SDN switch comprising a flow table that comprises a first flow rule to forward a packet received in the first port to the security component that is coupled to the second port, wherein the SDN switch receives outgoing packets from the first port and forwards the outgoing packets to the second port in accordance with the first flow rule, the outgoing packets being sent by the sender component to a destination component; and

    an SDN controller that controls forwarding behavior of the SDN switch and inserts the first flow rule into the flow table of the SDN switch,wherein the security component receives the outgoing packets from the second port of the SDN switch, inspects the outgoing packets, and re-injects the outgoing packets back into the SDN switch to allow the outgoing packets to be forwarded out of another port of the SDN switch towards their destination when the outgoing packets pass inspection.

View all claims
  • 0 Assignments
Timeline View
Assignment View
    ×
    ×