VMware, Inc.
Firewall configured with dynamic membership sets representing machine attributes
Last updated:
Abstract:
A method is provided to control the flow of packets within a system that includes one or more computer networks comprising: policy rules are provided that set forth attribute dependent conditions for communications among machines on the one or more networks; machine attributes and corresponding machine identifiers are obtained for respective machines on the networks; and policy rules are transformed to firewall rules that include machine identifiers of machines having attributes from among the obtained machine attributes that satisfy the attribute dependent policy rules.
Status:
Grant
Type:
Utility
Filling date:
8 Nov 2019
Issue date:
29 Jun 2021