CPC H04L 43/026 (2013.01) [G06F 9/45558 (2013.01); H04L 43/045 (2013.01); H04L 63/0263 (2013.01); H04L 67/14 (2013.01); H04L 67/51 (2022.05); G06F 2009/45595 (2013.01); H04L 43/18 (2013.01); H04L 63/0236 (2013.01); H04L 63/0254 (2013.01)] | 20 Claims |
1. A method of creating micro-segmentation policy for applications executing in a network, the method comprising:
monitoring network packet traffic to identify network traffic types and patterns;
based on the network traffic types and patterns, identifying a set of associated components as an affinity group in the network;
using an application template that comprises a set of application components for a particular application to reconcile the components of the application template and the associated affinity group; and
creating micro-segmentation policy for the network based on a mapping of the components of the affinity group into the components of the application template of the particular application.
|