The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Sep. 20, 2022

Filed:

Jan. 03, 2019
Applicant:

Illumio, Inc., Sunnyvale, CA (US);

Inventors:

Daniel Richard Cook, San Jose, CA (US);

Anish Vinodkumar Desai, Palo Alto, CA (US);

Assignee:

Illumio, Inc., Sunnyvale, CA (US);

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
H04L 9/40 (2022.01); G06F 9/50 (2006.01); H04L 41/0823 (2022.01);
U.S. Cl.
CPC ...
H04L 63/0263 (2013.01); G06F 9/5061 (2013.01); H04L 41/0823 (2013.01); H04L 63/20 (2013.01); G06F 2209/506 (2013.01); G06F 2209/5022 (2013.01);
Abstract

An enforcement module receives management instructions from a segmentation server for enforcing a segmentation policy. The management instructions include one or more rules specifying one or more groups of workloads that a workload executing on the operating system instance is permitted to communicate with according to certain communication constraints, and membership information specifying workload identifiers for workloads in each of the groups. An optimization module processes the management instructions to reduce the number of rules and the number of workload groups to which the rules apply, thereby simplifying the firewall configuration. The enforcement module then configures a firewall according to the optimized rules to enforce the segmentation policy. The optimization process beneficially improves performance of the firewall and thereby enables more efficient enforcement of the segmentation policy utilizing fewer computing resources.


Find Patent Forward Citations

Loading…