首页> 外国专利> Enforcing micro-segmentation policies for physical and virtual application components in data centers

Enforcing micro-segmentation policies for physical and virtual application components in data centers

机译:对数据中心中的物理和虚拟应用程序组件执行微细分策略

摘要

A device may receive policy information associated with a first application group and a second application group. The device may receive network topology information associated with a network. The device may generate a first policy based on the policy information and the network topology information, and generate a second policy based on the policy information and the network topology information. The device may provide, to the virtual network device, information associated with the first policy to permit the virtual network device to implement the first policy in association with network traffic transferred between the first application group and the second application group. The device may provide, to the physical network device, information associated with the second policy to permit the physical network device to implement the second policy in association with network traffic transferred between the first application group and the second application group.
机译:设备可以接收与第一应用程序组和第二应用程序组相关联的策略信息。该设备可以接收与网络相关联的网络拓扑信息。设备可以基于策略信息和网络拓扑信息来生成第一策略,并且可以基于策略信息和网络拓扑信息来生成第二策略。设备可以向虚拟网络设备提供与第一策略相关联的信息,以允许虚拟网络设备与在第一应用程序组和第二应用程序组之间传输的网络流量相关联地实施第一策略。设备可以向物理网络设备提供与第二策略相关联的信息,以允许物理网络设备与在第一应用程序组和第二应用程序组之间传输的网络流量相关联地实施第二策略。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号