-
公开(公告)号:US20170230425A1
公开(公告)日:2017-08-10
申请号:US15498927
申请日:2017-04-27
Applicant: Cisco Technology, Inc.
Inventor: Denis Knjazihhin , Yedidya Dotan , Burak Say , Robin Martherus , Sachin Vasant
IPC: H04L29/06
CPC classification number: H04L63/20 , G06F21/604 , H04L41/28 , H04L63/10 , H04L63/102
Abstract: A management entity generates for display multiple icons, each icon representing an actor or a resource in a networking environment, and defines a generic security policy by receiving user input in the form of a line drawn between a first icon representing an actor and a second icon representing a resource to control abilities between the actor and the resource. The management entity translates the generic security policy to multiple native security policies each of which is based on a corresponding one of multiple native policy models associated with corresponding ones of multiple security devices, and supply data descriptive of the multiple native security policies to the corresponding ones of the security devices to configure the corresponding ones of the security devices to implement the native security policies.
-
2.
公开(公告)号:US20160212169A1
公开(公告)日:2016-07-21
申请号:US14600495
申请日:2015-01-20
Applicant: Cisco Technology, Inc.
Inventor: Denis Knjazihhin , Yedidya Dotan , Burak Say , Robin Martherus , Sachin Vasant
IPC: H04L29/06
CPC classification number: H04L63/20 , G06F21/604 , H04L41/0843 , H04L41/0893 , H04L63/10
Abstract: A management entity receives from multiple security devices corresponding native security policies each based on a native policy model associated with the corresponding security device. Each security device controls access to resources by devices associated with the security device according to the corresponding native security policy. The management entity normalizes the received native security policies across the security devices based on a generic policy model, to produce a normalized security policy that is based on the generic policy model and representative of the native security polices.
Abstract translation: 管理实体从多个安全设备接收对应的本地安全策略,每个基于与相应的安全设备相关联的本地策略模型。 每个安全设备根据相应的本地安全策略控制与安全设备相关联的设备对资源的访问。 管理实体基于通用策略模型,在安全设备之间规范化接收到的本地安全策略,以生成基于通用策略模型并代表本机安全策略的规范化安全策略。
-
公开(公告)号:US10116702B2
公开(公告)日:2018-10-30
申请号:US15498927
申请日:2017-04-27
Applicant: Cisco Technology, Inc.
Inventor: Denis Knjazihhin , Yedidya Dotan , Burak Say , Robin Martherus , Sachin Vasant
Abstract: A management entity generates for display multiple icons, each icon representing an actor or a resource in a networking environment, and defines a generic security policy by receiving user input in the form of a line drawn between a first icon representing an actor and a second icon representing a resource to control abilities between the actor and the resource. The management entity translates the generic security policy to multiple native security policies each of which is based on a corresponding one of multiple native policy models associated with corresponding ones of multiple security devices, and supply data descriptive of the multiple native security policies to the corresponding ones of the security devices to configure the corresponding ones of the security devices to implement the native security policies.
-
公开(公告)号:US09680875B2
公开(公告)日:2017-06-13
申请号:US14600495
申请日:2015-01-20
Applicant: Cisco Technology, Inc.
Inventor: Denis Knjazihhin , Yedidya Dotan , Burak Say , Robin Martherus , Sachin Vasant
CPC classification number: H04L63/20 , G06F21/604 , H04L41/0843 , H04L41/0893 , H04L63/10
Abstract: A management entity receives from multiple security devices corresponding native security policies each based on a native policy model associated with the corresponding security device. Each security device controls access to resources by devices associated with the security device according to the corresponding native security policy. The management entity normalizes the received native security policies across the security devices based on a generic policy model, to produce a normalized security policy that is based on the generic policy model and representative of the native security polices.
-
-
-