Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

A method for performing security control, a switch and a filtering device

A filtering device and security control technology, applied in the Internet field, can solve problems such as occupancy and virtual switch resource burden

Active Publication Date: 2021-04-27
CHINA MOBILE COMM LTD RES INST +1
View PDF5 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0005] The present invention provides a method for performing security control, a switch, and a filtering device, which are used to solve the problem that the security control method based on SDN technology in the prior art needs to install an additional virtual firewall on the virtual switch to verify the data packets. The virtual firewall occupies the resources of the virtual switch, thus causing a resource burden on the virtual switch

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • A method for performing security control, a switch and a filtering device
  • A method for performing security control, a switch and a filtering device
  • A method for performing security control, a switch and a filtering device

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0058] In order to make the purpose, technical solutions and advantages of the present invention clearer, the present invention will be further described in detail below in conjunction with the accompanying drawings. Obviously, the described embodiments are only some of the embodiments of the present invention, rather than all of them. Based on the embodiments of the present invention, all other embodiments obtained by persons of ordinary skill in the art without making creative efforts belong to the protection scope of the present invention.

[0059] Such as figure 1 As shown, a method for performing security control provided by an embodiment of the present invention includes the following steps:

[0060] Step 101: the switch judges whether the information of the received data packet complies with the first security rule;

[0061] Step 102: If the information of the data packet does not conform to the first security rule, the switch forwards the data packet to the filtering ...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses a method for performing safety control, a switch and filtering equipment. The security control method provided by the present invention includes: the switch judges whether the information of the received data packet conforms to the first security rule; if the information of the data packet does not conform to the first security rule, the switch forwards the data packet to the filtering device for The filtering device discards the data packet after determining that the information of the data packet does not comply with the second security rule. The present invention can realize the security control on the data packet without installing an additional virtual firewall under the switch, thereby alleviating the resource burden on the switch due to the external virtual firewall.

Description

technical field [0001] The invention relates to the technical field of the Internet, in particular to a method for performing security control, a switch and filtering equipment. Background technique [0002] The security group function must be provided in the cloud computing platform to protect the virtual machine network security. This function divides virtual machines with the same security requirements into the same security group, and sets one or more security rules in the security group according to the security requirements. The cloud computing platform instance applies SDN (Software Defined Network, software-defined network) technology to transform security requirements into specific five-tuple (source / destination IP (Internet Protocol, Internet Protocol) address, source / destination port, protocol type) rules, And deploy security rules on appropriate virtual or physical network elements to achieve the goal of filtering and protecting virtual machine network data pack...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & Authority Patents(China)
IPC IPC(8): H04L29/06
CPCH04L63/0227H04L63/0263
Inventor 董文英
Owner CHINA MOBILE COMM LTD RES INST
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products