Claims
- 1. A method for determining whether a network comprising a plurality of network elements is conformant to a policy statement, wherein the policy statement indicates whether a set of clients is denied or granted access to a network-service supported by a set of servers, the method comprising the steps of:
building a topology and model of the network, wherein said model comprises a plurality of service models corresponding to the network elements, and wherein said service models indicate how the network elements will treat network packets, identifying a first network element from the set of clients and a second network element from the set of servers, building a packet in accordance with the network-service and the identified first and second network elements, attempting to move the packet from the first network element to the second network element by applying the packet to the network element service models, and based on whether the packet reaches the server, indicating whether the network is conformant to the policy statement.
- 2. The method of claim 1 wherein if the network is not conformant to the policy statement, determining a network configuration to make the network conformant to the policy statement.
RELATED APPLICATION
[0001] The present application claims the benefit of U.S. Provisional Application Number 60/288,226 filed on May 2, 2001 entitled, “Automatic Network Management of Data Communications Networks.”
GOVERNMENT RELATED RIGHTS
[0002] This invention was made with Government support under F30602-99-C-0182 awarded by the Department of the Air Force-Rome Laboratory. The Government has certain rights in this invention.
Provisional Applications (1)
|
Number |
Date |
Country |
|
60288226 |
May 2001 |
US |