Patent · US Active

Protocol switching for connections to zero-trust proxy

US11811734B2 · kind B2 · utility

3Cited by
0References
18Claims
0Family size

Assignee

Inventors

Key dates

Filing dateJun 17, 2021
Grant dateNov 7, 2023
Priority date
Expiry dateOct 28, 2041

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L63/0815
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

An HTTP connection between a client computing device and an application is established through a reverse proxy. A response to the client computing device includes a payload instructing initiation of a non-HTTP connection (e.g., TCP, UDP). The response is modified to replace references to an original port with a dynamic port allocated to the non-HTTP connection and a temporary ACL entry is created. A subsequent connection request addressed to the dynamic port is authorized per the ACL, modified to replace the dynamic port with the original port, and forwarded to the application. Subsequent packets for the non-HTTP connection have port numbers translated between the original and dynamic ports.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.