The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Nov. 29, 2022

Filed:

Sep. 05, 2019
Applicant:

Cisco Technology, Inc., San Jose, CA (US);

Inventors:

Prakash C. Jain, Fremont, CA (US);

Sanjay Kumar Hooda, Pleasanton, CA (US);

Satish Kondalam, Milpitas, CA (US);

Assignee:

Cisco Technology, Inc., San Jose, CA (US);

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
H04L 9/40 (2022.01); H04L 61/25 (2022.01); H04L 45/02 (2022.01); H04W 76/22 (2018.01); G06F 21/50 (2013.01); H04W 36/00 (2009.01); H04W 36/14 (2009.01);
U.S. Cl.
CPC ...
H04L 63/0272 (2013.01); G06F 21/50 (2013.01); H04L 45/04 (2013.01); H04L 61/25 (2013.01); H04L 63/0245 (2013.01); H04L 63/0254 (2013.01); H04L 63/0263 (2013.01); H04L 63/0428 (2013.01); H04W 36/0044 (2013.01); H04W 36/14 (2013.01); H04W 76/22 (2018.02); H04W 36/0038 (2013.01); H04W 36/0069 (2018.08);
Abstract

Systems, methods, and computer-readable media for preserving source host context when firewall policies are applied to traffic in an enterprise network fabric. A data packet to a destination host from a source host can be received at a first border node instance in an enterprise network fabric as part of network traffic. The data packet can include a context associated with the source host. Further, the data packet can be sent to a firewall of the enterprise network fabric and can be received at a second border node instance after the firewall applies a firewall policy to the data packet. The data packet can then be selectively encapsulated with the context associated with the source host at the second border node instance for applying one or more policies to control transmission of the network traffic through the enterprise network fabric.


Find Patent Forward Citations

Loading…