首页> 外国专利> Method and system for allowing the use of domain name based network policies stored in a second device in enforcing network policy at a first device

Method and system for allowing the use of domain name based network policies stored in a second device in enforcing network policy at a first device

机译:在第一设备执行网络策略时允许使用存储在第二设备中的基于域名的网络策略的方法和系统

摘要

A method and a system for creating Internet Protocol address based network policies (IPPs) by using domain name based network policies (DNNTPs) is disclosed. The DNNTPs are stored in a second device, and are used for enforcing IPPs at a first device. The first device retrieves one or more DNNTPs from the second device and monitors network traffic for Domain Name System (DNS) look-up reply. When a network device receives a record Domain Name System look-up reply, the network device identifies one or more Internet Protocol addresses of one or more host names specified in the address record Domain Name System look-up reply, then determine whether the one or more host names contain a domain name used in one or more DNNTPs and create one or more IPPs.
机译:公开了一种用于通过使用基于域名的网络策略(DNNTP)来创建基于互联网协议地址的网络策略(IPP)的方法和系统。 DNNTP存储在第二个设备中,并用于在第一个设备上强制执行IPP。第一台设备从第二台设备检索一个或多个DNNTP,并监视网络流量以获取域名系统(DNS)查找答复。当网络设备收到记录域名系统查询答复时,该网络设备会标识地址记录域名系统查询答复中指定的一个或多个主机名的一个或多个Internet协议地址,然后确定是一个还是多个多个主机名包含一个或多个DNNTP中使用的域名,并创建一个或多个IPP。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号