Invention Grant
- Patent Title: Intercepting network traffic routed by virtual switches for selective security processing
-
Application No.: US15396625Application Date: 2016-12-31
-
Publication No.: US10666617B2Publication Date: 2020-05-26
- Inventor: Ratinder Paul Singh Ahuja , Manuel Nedbal
- Applicant: ShieldX Networks, Inc.
- Applicant Address: US CA San Jose
- Assignee: ShieldX Networks, Inc.
- Current Assignee: ShieldX Networks, Inc.
- Current Assignee Address: US CA San Jose
- Agency: Nicholson de Vos Webster & Elliott LLP
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L12/26 ; H04L12/931 ; G06F9/455 ; H04L12/46

Abstract:
Systems, methods, and apparatuses enable an interface microservice to intercept and filter network traffic generated by virtual machines (VMs) and routed by a virtual switch (vSwitch). A vSwitch receiving network packets from the VMs is configured to route network packets to the interface microservice via a generated VLAN trunk. The interface microservice can retrieve and apply stored packet filters to the network packets intercepted by the microservice. If an intercepted network packet matches any of the applied packet filters, the interface microservice can perform various security operations, send the network packets to another microservice for security processing, or perform any other operations. For network packets which do not match a packet filter, the interface microservice forwards the packets to the originally intended destination.
Public/Granted literature
- US20180191680A1 INTERCEPTING NETWORK TRAFFIC ROUTED BY VIRTUAL SWITCHES FOR SELECTIVE SECURITY PROCESSING Public/Granted day:2018-07-05
Information query