首页> 外国专利> System and method for providing an integrated firewall for secure network communication in a multi-tenant environment

System and method for providing an integrated firewall for secure network communication in a multi-tenant environment

机译:提供用于在多租户环境中进行安全网络通信的集成防火墙的系统和方法

摘要

An integrated firewall provides security in a multi-tenant environment having a connection-based switched fabric directly connecting database servers which provide a plurality of database services with application servers hosting database service consumers each having a different database service consumer identity. The firewall functionality integrated into each database server provides access control by discarding communication packets which do not include a database service consumer identity and using the database service consumer identity in combination with an access control list to control access from the database service consumers to the database services. The access control includes address resolution access control, connection establishment access control, and data exchange access control based on said access control list. The integrated firewall enables direct connection of database servers and application servers via an InfiniBand network providing without requiring a separate intermediary firewall appliance or security node.
机译:集成防火墙在具有基于连接的交换结构的多租户环境中提供安全性,该交换结构直接连接提供多个数据库服务的数据库服务器与托管数据库服务使用者的应用程序服务器,每个数据库服务器具有不同的数据库服务使用者身份。集成到每个数据库服务器中的防火墙功能通过丢弃不包含数据库服务使用者标识的通信数据包,并将数据库服务使用者标识与访问控制列表结合使用来控制从数据库服务使用者到数据库服务的访问,从而提供访问控制。访问控制包括地址解析访问控制,连接建立访问控制和基于所述访问控制列表的数据交换访问控制。集成防火墙允许通过InfiniBand网络直接连接数据库服务器和应用程序服务器,而无需单独的中间防火墙设备或安全节点。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号