CPC H04L 63/1416 (2013.01) [H04L 41/06 (2013.01); H04L 41/40 (2022.05)] | 23 Claims |
1. A computer-implemented method of operating a software-defined network, the method comprising:
obtaining specifications of a plurality of data plane elements which together form a path through a data plane suitable for carrying traffic associated with a category of applications and/or services;
determining, based on the specifications, which one or more of a plurality of security profiles the path is capable of complying with;
selecting one of the one or more security profiles to be an initial security profile;
routing traffic associated with the category of applications and/or services via the path in compliance with the initial security profile;
subsequently obtaining an alert that network performance conditions have worsened; and
responsive thereto:
selecting a different one of the plurality of security profiles, that is less resource-intensive than the initial security profile, to be a replacement security profile; and
routing traffic associated with the category of applications and/or services in compliance with the replacement security profile.
|