Patent · US Active

Extended context delivery for context-based authorization

US11281485B2 · kind B2 · utility

6Cited by
60References
20Claims
0Family size

Assignee

Inventors

Key dates

Filing dateMay 3, 2019
Grant dateMar 22, 2022
Priority date
Expiry dateMar 5, 2040

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L63/104
  • WIPO fieldComputer technology
  • WIPO sectorElectrical engineering

Abstract

Some embodiments provide a novel method for authorizing network requests for a machine in a network. In some embodiments, the method is performed by security agents that execute on virtual machines operating on a host machine. In some embodiments, the method captures a network request (e.g., network control packets, socket connection request, etc.) from a primary application executing on the machine. The method identifies an extended context for the network request and determines whether the network request is authorized based on the extended context. The method then processes the network request according to the determination. The extended context of some embodiments includes identifications for primary and secondary applications associated with the network request. Alternatively, or conjunctively, some embodiments include identifications for primary and secondary users associated with the network request.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.