首页> 外国专利> FIREWALL IN A VIRTUALIZED COMPUTING ENVIRONMENT USING PHYSICAL NETWORK INTERFACE CONTROLLER (PNIC) LEVEL FIREWALL RULES

FIREWALL IN A VIRTUALIZED COMPUTING ENVIRONMENT USING PHYSICAL NETWORK INTERFACE CONTROLLER (PNIC) LEVEL FIREWALL RULES

机译:虚拟化计算环境中的防火墙使用物理网络接口控制器(PNIC)级别防火墙规则

摘要

Example methods are provided for a destination host to implement a firewall in a virtualized computing environment that includes the destination host and a source host. The method may comprise receiving, via a physical network interface controller (PNIC) of the destination host, an ingress packet sent by the source host. The ingress packet may be destined for a destination virtualized computing instance that is supported by the destination host and associated with a destination virtual network interface controller (VNIC). The method may further comprise retrieving a PNIC-level firewall rule associated with the destination virtualized computing instance, the PNIC-level firewall rule being applicable at the PNIC and generated by based on a VNIC-level firewall rule applicable at the destination VNIC. In response to determination that the PNIC-level firewall rule blocks the ingress packet from passing through, the ingress packet may be dropped such that the ingress packet is not sent to the destination VNIC.
机译:为目标主机提供示例方法,以在包括目标主机和源主机的虚拟化计算环境中实现防火墙。该方法可以包括经由目的主机的物理网络接口控制器(PNIC)接收源主机发送的入口分组。入口分组可以用于目的地主机支持的目的地虚拟化计算实例,并且与目的地虚拟网络接口控制器(VNIC)相关联。该方法还可以包括检索与目的地虚拟化计算实例相关联的生态级防火墙规则,该规则是在PNIC中适用的庞尼级防火墙规则,并通过基于在目的地VNIT上适用的vnic级防火墙规则生成。响应于确定跨级防火墙规则阻止入口分组通过,可以丢弃入口分组,使得入口分组未被发送到目的地vNIC。

著录项

  • 公开/公告号US2021176212A1

    专利类型

  • 公开/公告日2021-06-10

    原文格式PDF

  • 申请/专利权人 NICIRA INC.;

    申请/专利号US202117180606

  • 发明设计人 DONGHAI HAN;

    申请日2021-02-19

  • 分类号H04L29/06;

  • 国家 US

  • 入库时间 2022-08-24 19:07:03

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号