The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Apr. 05, 2016

Filed:

Jun. 12, 2012
Applicants:

Tommy Koorevaar, Westmount, CA;

Makan Pourzandi, Montreal, CA;

Ying Zhang, San Jose, CA (US);

Inventors:

Tommy Koorevaar, Westmount, CA;

Makan Pourzandi, Montreal, CA;

Ying Zhang, San Jose, CA (US);

Attorney:
Primary Examiner:
Assistant Examiner:
Int. Cl.
CPC ...
G06F 21/00 (2013.01); G06F 9/455 (2006.01); H04L 29/06 (2006.01); H04L 12/725 (2013.01);
U.S. Cl.
CPC ...
G06F 9/45558 (2013.01); H04L 45/306 (2013.01); H04L 63/20 (2013.01); G06F 2009/4557 (2013.01); G06F 2009/45595 (2013.01);
Abstract

An efficient elastic enforcement layer (EEL) for realizing security policies is deployed in a cloud computing environment based on a split architecture framework. The split architecture network includes a controller coupled to switches. When the controller receives a packet originating from a source VM, it extracts an application identifier from the received packet that identifies an application running on the source VM. Based on the application identifier, the controller determines a chain of middlebox types. The controller further determines middlebox instances based on current availability of resources. The controller then adds a set of rules to the switches to cause the switches to forward the packet toward the destination VM via the middlebox instances.


Find Patent Forward Citations

Loading…