Rule placement in network devices

    公开(公告)号:US10389757B2

    公开(公告)日:2019-08-20

    申请号:US15476121

    申请日:2017-03-31

    Abstract: A device receives a new rule construct that includes a source address or a destination address, and at least one parameter, where the new rule construct includes a new rule to be provided to a network. The device identifies network devices, of the network, to which the new rule is to be provided based on the new rule construct, and determines a proper position for the new rule, in a list of existing rules provided in each network device, based on the new rule construct and information associated with the network devices. The device causes the new rule to be provided to and stored in the network devices, at the proper position, in the list of existing rules, determined for each network device.

    Integrated security system having threat visualization and automated security device control

    公开(公告)号:US10135841B2

    公开(公告)日:2018-11-20

    申请号:US14983983

    申请日:2015-12-30

    Abstract: Techniques are described for taking direct actions, such as selectively blocking or allowing traffic and applications, while monitoring events from a graphical representation of threats. As such, the administrator in an enterprise interacts with the graphical representation of threats rendered by the security management system to automatically invoke a policy/rule module of the security management system to configure and update security policies for the security devices deployed throughout the computer networks of the enterprise. An administrator may, for example, interact with the representation of threats rendered by the threat control module based on the data aggregated from the distributed security devices and, responsive to the interaction, the security management system may identify a relevant set of the security devices, automatically construct security policies having ordered rules within the policies for the identified set of security devices, and automatically communicate and install the policies in the identified set of security devices.

    RULE PLACEMENT IN NETWORK DEVICES
    7.
    发明申请

    公开(公告)号:US20180176257A1

    公开(公告)日:2018-06-21

    申请号:US15476121

    申请日:2017-03-31

    CPC classification number: H04L63/20 G06N3/04 G06N5/04 G06N20/00 H04L63/0263

    Abstract: A device receives a new rule construct that includes a source address or a destination address, and at least one parameter, where the new rule construct includes a new rule to be provided to a network. The device identifies network devices, of the network, to which the new rule is to be provided based on the new rule construct, and determines a proper position for the new rule, in a list of existing rules provided in each network device, based on the new rule construct and information associated with the network devices. The device causes the new rule to be provided to and stored in the network devices, at the proper position, in the list of existing rules, determined for each network device.

Patent Agency Ranking