The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Jan. 30, 2024

Filed:

Mar. 08, 2018
Applicant:

Nicira, Inc., Palo Alto, CA (US);

Inventors:

Vasantha Kumar, Pune, IN;

Sandeep Kasbe, Pune, IN;

Nidhi Sharma, Pune, IN;

Vaibhav Rekhate, Pune, IN;

Sriram Gopalakrishnan, Pune, IN;

Assignee:

Nicira, Inc., Palo Alto, CA (US);

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
H04L 9/40 (2022.01); H04L 49/00 (2022.01); H04L 47/20 (2022.01); H04L 45/00 (2022.01); H04L 67/12 (2022.01);
U.S. Cl.
CPC ...
H04L 63/20 (2013.01); H04L 45/38 (2013.01); H04L 47/20 (2013.01); H04L 49/70 (2013.01); H04L 63/0263 (2013.01); H04L 63/0272 (2013.01); H04L 67/12 (2013.01);
Abstract

Example methods are provided for flow-based forwarding element configuration in a network environment. An example method may comprise obtaining a set of security policies associated with the group of workloads; and based on the set of security policies, identifying an allowed forwarding path between a destination and a first workload. The method may also comprise configuring a whitelist set of flow entries and sending configuration information to the flow-based forwarding element to cause the flow-based forwarding element to apply the whitelist set. The whitelist set may include a first flow entry specifying match fields and a first action to allow communication over the allowed forwarding path, but excludes a second flow entry specifying a second action to block communication over a forbidden forwarding path between the destination and the second workload. The match fields may include transport layer information and network layer information.


Find Patent Forward Citations

Loading…