使用基于网络设备的区域将安全策略应用于网络业务

By identifying and applying security policies to regions based on entry and exit points in network devices, the problem of network service black holes is solved, improving the stability of network services and the efficiency of resource utilization.

CN116264514BActive Publication Date: 2026-07-17JUNIPER NETWORKS INC

Patent Information

Authority / Receiving Office
CN · China
Patent Type
Patents(China)
Current Assignee / Owner
JUNIPER NETWORKS INC
Filing Date
2022-01-30
Publication Date
2026-07-17

AI Technical Summary

Technical Problem

In existing technologies, when network devices route network services, communication sessions are easily torn down as the routing instance changes, resulting in network services being prevented from being forwarded, forming a network service black hole, and making it difficult to establish new sessions, thus wasting computing resources.

Method used

Network devices determine the source and destination regions based on entry and exit points, identify a set of security policies, and apply them to network services, thus avoiding region determination associated with routing instances.

Benefits of technology

It reduces the likelihood of network service sessions being torn down, decreases the occurrence of network service black holes, and saves on the waste of computing resources.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN116264514B_ABST
    Figure CN116264514B_ABST
Patent Text Reader

Abstract

本公开的实施例涉及使用基于网络设备的区域将安全策略应用于网络业务。一种网络设备可以被配置为接收网络业务。网络设备可以被配置为标识网络设备的与网络业务相关联的一个或多个入口点,并且基于网络设备的一个或多个入口点来确定与网络业务相关联的源区域。网络设备可以被配置为标识网络设备的与网络业务相关联的一个或多个出口点,并且基于网络设备的一个或多个出口点来确定与网络业务相关联的目的地区域。网络设备可以被配置为基于源区域和目的地区域来标识安全策略集合,并且将安全策略集合中的安全策略应用于网络业务。
Need to check novelty before this filing date? Find Prior Art