首页> 外国专利> METHOD AND APPARATUS FOR APPLICATION AND L4-L7 PROTOCOL AWARE DYNAMIC NETWORK ACCESS CONTROL, THREAT MANAGEMENT AND OPTIMIZATIONS IN SDN BASED NETWORKS

METHOD AND APPARATUS FOR APPLICATION AND L4-L7 PROTOCOL AWARE DYNAMIC NETWORK ACCESS CONTROL, THREAT MANAGEMENT AND OPTIMIZATIONS IN SDN BASED NETWORKS

机译:基于SDN的网络中L4-L7协议动态网络访问控制,威胁管理和优化的应用方法和装置

摘要

A multi-cloud fabric system includes an open flow switch responsive to a first and subsequent data packets and a services controller including a flow database. Further, the multi-cloud fabric system includes a SDN controller that communicates with the services controller through an open flow switch, wherein upon the receipt of the first data packet, the open flow switch directs the first packet to the services controller. The services controller creates a flow entry and makes authentication decisions based on authentication information. The open flow controller based on authentication policies, determines whether to allow or deny access to a corporate network based on saved authentication policies and if the open flow controller determines to deny access, the first packet being re-directed to an authentication server for access.
机译:多云结构系统包括响应于第一和后续数据分组的开放流交换机以及包括流数据库的服务控制器。此外,多云结构系统包括SDN控制器,该SDN控制器通过开放流交换机与服务控制器通信,其中,在接收到第一数据分组之后,开放流交换机将第一分组引导至服务控制器。服务控制器创建流条目并根据身份验证信息做出身份验证决策。基于身份验证策略的开放流控制器基于保存的身份验证策略确定是允许还是拒绝对公司网络的访问,并且如果开放流控制器确定拒绝访问,则将第一个数据包重定向到身份验证服务器以进行访问。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号