-
公开(公告)号:US11646995B2
公开(公告)日:2023-05-09
申请号:US16711101
申请日:2019-12-11
Applicant: Cisco Technology, Inc.
CPC classification number: H04L63/0209 , H04L12/4645 , H04L63/0245 , H04L63/0272 , H04L63/1408 , H04L63/1416 , H04L63/1466 , H04L63/168 , H04L63/20
Abstract: This disclosure describes methods to distribute intrusion detection in a network across multiple devices in the network, such as across routing/switching or other infrastructure devices. For example, as a packet is routed through a network infrastructure, an overlay mechanism may be utilized to indicate which of a total set of intrusion detection rules have been applied to the packet. Each infrastructure device may evaluate which rules have already been applied to the packet, using a result of the evaluation to determine where to route the packet in the network infrastructure for application of additional intrusion detection rules. Additionally, each infrastructure device may record a result of its application of the portion of intrusion detection rules directly into the packet.
-
公开(公告)号:US20210185006A1
公开(公告)日:2021-06-17
申请号:US16711101
申请日:2019-12-11
Applicant: Cisco Technology, Inc.
Abstract: This disclosure describes methods to distribute intrusion detection in a network across multiple devices in the network, such as across routing/switching or other infrastructure devices. For example, as a packet is routed through a network infrastructure, an overlay mechanism may be utilized to indicate which of a total set of intrusion detection rules have been applied to the packet. Each infrastructure device may evaluate which rules have already been applied to the packet, using a result of the evaluation to determine where to route the packet in the network infrastructure for application of additional intrusion detection rules. Additionally, each infrastructure device may record a result of its application of the portion of intrusion detection rules directly into the packet.
-