US 12,457,263 B2
Zero touch policy provisioning in workload protection solutions
Gabriel J. Fontenot, Richardson, TX (US); Paul Mach, San Jose, CA (US); Janardhanan Radhakrishnan, San Jose, CA (US); Jorge Quintero, Cracow (PL); and Troy Michael Traina, Richardson, TX (US)
Assigned to Cisco Technology, Inc., San Jose, CA (US)
Filed by Cisco Technology, Inc., San Jose, CA (US)
Filed on Nov. 29, 2023, as Appl. No. 18/523,514.
Prior Publication US 2025/0175520 A1, May 29, 2025
Int. Cl. G06F 15/173 (2006.01); H04L 67/1008 (2022.01)
CPC H04L 67/1008 (2013.01) 19 Claims
OG exemplary drawing
 
1. A device, comprising:
a processor;
at least one network interface controller configured to provide access to a network; and
a memory communicatively coupled to the processor, wherein the memory comprises a workload protection logic that is configured to:
establish a workload protection solution onto a network comprising a plurality of network devices;
deploy a plurality of agents onto one or more network devices;
receive telemetry data;
evaluate a subnet boundary associated with the telemetry data;
define one or more labels based on the subnet boundary;
assign the one or more labels to reflect any one of a functional, security, and communication characteristic corresponding to the subnet boundary; and
generate at least one policy recommendation based on the received telemetry data.