US 12,003,348 B2
Micro and macro segmentation in enterprise networks without a per segment layer-3 domain
Anand Oswal, Pleasanton, CA (US); Muninder S. Sambi, Pleasanton, CA (US); Sanjay K. Hooda, Pleasanton, CA (US); Gangadharan Byju Pularikkal, San Jose, CA (US); and Kedar Karmarkar, San Jose, CA (US)
Assigned to Cisco Technology, Inc., San Jose, CA (US)
Filed by Cisco Technology, Inc., San Jose, CA (US)
Filed on Feb. 4, 2022, as Appl. No. 17/649,955.
Application 17/649,955 is a continuation of application No. 16/746,903, filed on Jan. 19, 2020, granted, now 11,277,282.
Prior Publication US 2022/0158869 A1, May 19, 2022
Int. Cl. H04L 12/46 (2006.01); H04L 12/18 (2006.01); H04L 61/5014 (2022.01); H04L 61/58 (2022.01); H04L 101/668 (2022.01)
CPC H04L 12/4679 (2013.01) [H04L 12/1886 (2013.01); H04L 12/4633 (2013.01); H04L 61/5014 (2022.05); H04L 61/58 (2022.05); H04L 2101/668 (2022.05); H04L 2212/00 (2013.01)] 20 Claims
OG exemplary drawing
 
1. A method comprising:
initiating a default external interface for an external network comprising a single default switched virtual interface (SVI) for communication with the external network and corresponding to a virtual local area network (VLAN) provided by the external network;
establishing a logical subnet segment interface from a main subnet segment, where a logical subnet segment and one or more additional logical subnet segments are represented to the external network as a single subnet segment and wherein the logical subnet segment interface does not have an assigned Internet Protocol (IP) address; and
assigning an identifier to the logical subnet segment interface for the logical subnet segment; and
mapping at least one tag to the identifier for the logical subnet segment.