Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

Dynamic safety strategy migration method and device

A security strategy and dynamic migration technology, applied in the Internet field, can solve problems such as slow speed, business service interruption, complicated process, etc., and achieve the effect of improving efficiency and shortening recovery time

Active Publication Date: 2016-01-06
HUAWEI CLOUD COMPUTING TECH CO LTD
View PDF4 Cites 13 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0003] However, it has been found in practice that when a VM is migrated from a physical server in one physical data center (source data center) to a physical server in another physical data center (destination data center), the configuration information and device information on the VM and memory information can be migrated through the management platform, but the security policy information deployed on the network security device (such as a physical firewall) used to protect the migrated VM can only be manually configured and adjusted, that is, the destination data center bound Add the configuration for the migrated VM on the network security device, and delete the configuration for the migrated VM on the source network security device bound to the source data center
The entire process for administrators to manually configure security policy information on network security devices is complicated and slow, which is likely to cause long-term interruption of business services

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Dynamic safety strategy migration method and device
  • Dynamic safety strategy migration method and device
  • Dynamic safety strategy migration method and device

Examples

Experimental program
Comparison scheme
Effect test

Embodiment approach

[0135] As an optional implementation, the method may also include the following steps:

[0136] 11) The security management device sends routing policy information to the destination routing device bound to the destination data center, so that the destination routing device configures a routing path forwarded by the destination network security device according to the routing policy information for the session of the migrated virtual machine.

[0137] 12) The security management device receives the prompt information sent by the destination routing device for prompting that the routing policy information is successfully received.

[0138] In the embodiment of the present invention, after the migrated virtual machine is migrated to the destination data center, the location of the migrated virtual machine is changed. In order to enable the destination network security device to better monitor the migrated virtual machine migrated to the destination data center, it is necessary to...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses a dynamic safety strategy migration method and device. The method comprises that a target network safety device receives a safety strategy migration instruction issued by a safety management device, and obtains safety strategy information of a migration virtual machine, and the migration virtual machine needs to be migrated to a target data center protected by the target network safety device; and the target network safety device disposes safety strategy for the migration virtual machine according to safety strategy information of the migration virtual machine. The efficiency of safety strategy migration of the network safety device can be improved, and the service recovery time is shortened.

Description

technical field [0001] The invention relates to the technical field of the Internet, in particular to a method and device for dynamically migrating security policies. Background technique [0002] With the development of the Internet, virtualization technology has been widely used in data centers at all levels, especially server virtualization technology has been accepted and successfully implemented by the majority of users. Virtualization technology can virtualize multiple independent virtual machines (VM, Virtual Machine) on a single physical server. These VMs can be regarded as an independent server and have their own IP address and MAC address just like the physical server. , has its own operating system and various applications. Live migration (LiveMigration) technology is a hot spot among virtualization technologies. Live migration technology refers to the ability to migrate a virtual machine from one physical server to another. This technology adjusts the physical ...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & Authority Applications(China)
IPC IPC(8): H04L29/06
CPCH04L63/20
Inventor 贾海青刘春亮孙斗吴晓亮
Owner HUAWEI CLOUD COMPUTING TECH CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products