Invention Grant
- Patent Title: Endpoint security mechanism to detect IP theft on a virtual machine mobility in switch fabric
-
Application No.: US17736748Application Date: 2022-05-04
-
Publication No.: US11757935B2Publication Date: 2023-09-12
- Inventor: Govind Prasad Sharma , Eshwar Rao Yedavalli , Mohammed Javed Asghar , Ashwath Kumar Chandrasekaran , Swapnil Mankar , Umamaheswararao Karyampudi
- Applicant: Cisco Technology, Inc.
- Applicant Address: US CA San Jose
- Assignee: CISCO TECHNOLOGY, INC.
- Current Assignee: CISCO TECHNOLOGY, INC.
- Current Assignee Address: US CA San Jose
- Agency: Edell, Shapiro & Finnan, LLC
- The original application number of the division: US16396096 2019.04.26
- Main IPC: H04L9/40
- IPC: H04L9/40 ; G06F9/455 ; H04L61/103 ; H04L101/622

Abstract:
Methods to secure against IP address thefts by rogue devices in a virtualized datacenter are provided. Rogue devices are detected and distinguished from a migration of an endpoint in a virtualized datacenter. A first hop network element in a one or more network fabrics intercepts a request that includes an identity of an endpoint and performs a local lookup for the endpoint entity identifier. Based on the lookup not finding the endpoint entity identifier, the first hop network element broadcasts a message such as a remote media access address (MAC) query to other network elements in the one or more network fabrics. Based on the received response, which may include an IP address associated with the MAC address, the first hop network element performs a theft validation process to determine whether the request originated from a migrated endpoint or a rogue device.
Public/Granted literature
- US20220263865A1 ENDPOINT SECURITY MECHANISM TO DETECT IP THEFT ON A VIRTUAL MACHINE MOBILITY IN SWITCH FABRIC Public/Granted day:2022-08-18
Information query