US 12,476,937 B2
Systems and methods for cloud based root service application across multiple cooperative security fabrics
Robert A. May, Burnaby (CA)
Assigned to Fortinet, Inc., Sunnyvale, CA (US)
Filed by Fortinet, Inc., Sunnyvale, CA (US)
Filed on Jul. 4, 2022, as Appl. No. 17/857,133.
Prior Publication US 2024/0007438 A1, Jan. 4, 2024
This patent is subject to a terminal disclaimer.
Int. Cl. H04L 9/40 (2022.01); H04L 41/16 (2022.01); H04W 12/08 (2021.01)
CPC H04L 63/0263 (2013.01) [H04L 9/40 (2022.05); H04L 41/16 (2013.01); H04L 63/00 (2013.01); H04L 63/10 (2013.01); H04L 63/14 (2013.01); H04L 63/1441 (2013.01); H04W 12/08 (2013.01)] 20 Claims
OG exemplary drawing
 
10. A system for providing network security across a cooperative security fabric, the system comprising:
a cloud based cooperative security fabric root services device including a processing resource;
a non-transitory computer readable storage medium coupled to the processing resource and having stored therein instructions that when executed by the processing resource cause the processing resource to:
receive a security rule relevant to at least a first cooperative security fabric, wherein the cloud based cooperative security fabric root services device is communicably coupled to at least the first cooperative security fabric and a second cooperative security fabric;
select at least a first network security device within the first cooperative security fabric in which the security rule will be implemented;
create a first security message specific to the first network security device, wherein the first security message includes an instruction to implement at least a portion of the security rule on the first network security device;
transmit the first security message to the first network security device via the first cooperative security fabric;
select a family mode for the first cooperative security fabric, wherein the family mode selection comprises: switching network security devices included in the first cooperative security fabric to the family mode; and
responsive to the family mode selection, changes to security processes for a respective network security device within the first cooperative security fabric are only accepted from the cloud based cooperative security fabric root services device.