INTENT-BASED NETWORK SECURITY POLICY MODIFICATION

A device may receive first information associated with a set of security rules (145). The first information may identify a set of security actions a device is to implement when the set of security rules applies to traffic. The device may determine (135) a manner in which the set of security rules is...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: SESHADRI, Prakash T, KUMAR, Rakesh, NIMMAGADDA, Srinivas
Format: Patent
Sprache:eng ; fre ; ger
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:A device may receive first information associated with a set of security rules (145). The first information may identify a set of security actions a device is to implement when the set of security rules applies to traffic. The device may determine (135) a manner in which the set of security rules is to apply using the first information. The device may determine whether the manner in which the set of security rules is to apply and an intent of a network security policy or a manner in which a set of previously defined security rules (130) is to apply match to determine whether the set of security rules conflicts with the network security policy or whether the set of security rules and the set of previously defined security rules are related. The device may perform an action (140), such as inserting the security rules into the security policy.