Juniper Networks, Inc.
Critical firewall functionality management

Last updated:

Abstract:

A network device may detect, from an application associated with a user space of the network device, a request to configure a firewall provided by a kernel of the network device with a rule. The network device may intercept the request to configure the firewall before the firewall is configured with the rule. The network device, based on intercepting the request to configure the firewall, may analyze the rule to determine whether the rule modifies a critical functionality of the firewall. The network device may reject the request to configure the firewall based on determining that the rule modifies the critical functionality of the firewall.

Status:
Grant
Type:

Utility

Filling date:

6 Mar 2019

Issue date:

8 Feb 2022