Patent · US Active

Dynamically scalable application firewall deployment for cloud native applications

US11575651B2 · kind B2 · utility

0Cited by
1References
20Claims
0Family size

Assignee

Inventors

Key dates

Filing dateDec 31, 2020
Grant dateFeb 7, 2023
Priority date
Expiry dateApr 26, 2041

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L61/5038
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

A configuration of a cloud application exposed via a public IP address is duplicated with modifications to include a private IP address to expose the application internally. The original configuration is updated so that external network traffic sent to the application is redirected to and distributed across agents running on nodes of a cloud cluster by which web application firewalls (WAFs) are implemented. A set of agents for which the respective WAFs should inspect the redirected network traffic are selected based on cluster metrics, such as network and resource utilization metrics. The redirected network traffic targets a port allocated to the agents that is unique to the application, where ports are allocated on a per-application basis so each of the agents can support WAF protection for multiple applications. Network traffic which a WAF allows to pass is directed from the agent to the application via its private IP address.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.