VMware, Inc.
Firewall configured with dynamic membership sets representing machine attributes

Last updated:

Abstract:

A method is provided to control the flow of packets within a system that includes one or more computer networks comprising: policy rules are provided that set forth attribute dependent conditions for communications among machines on the one or more networks; machine attributes and corresponding machine identifiers are obtained for respective machines on the networks; and policy rules are transformed to firewall rules that include machine identifiers of machines having attributes from among the obtained machine attributes that satisfy the attribute dependent policy rules.

Status:
Grant
Type:

Utility

Filling date:

8 Nov 2019

Issue date:

29 Jun 2021