Techniques are presented herein that enhance a user defined network (UDN) micro-segmentation approach to enable communication between only a select set of endpoints. Aspects of the presented techniques can also restrict the set of endpoints that can initiate communication, thereby enabling specific use cases such as quarantine and remediation workflows, without the need for installing software agents on endpoints. Among other things, aspects of the presented techniques support the dynamic creation of UDN rooms and groups of rooms, do not require configuration changes on intermediate devices, allow administrators to belong to multiple rooms or groups of rooms, and support an audit capability (that helps to detect, inspect, and monitor traffic patterns for endpoints that are under quarantine).

Creative Commons License

Creative Commons License
This work is licensed under a Creative Commons Attribution 4.0 License.