Patent · US Active

Method for secure single-packet authorization within cloud computing networks

US9210126B2 · kind B2 · utility

4Cited by
3References
1Claims
0Family size

Inventors

Key dates

Filing dateApr 2, 2013
Grant dateDec 8, 2015
Priority date
Expiry dateOct 18, 2033

Classification

  • Technology area (CPC G)Physics
  • CPC primaryG06F2221/2151
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

A method for secure single-packet authorization and secure transparent access to software services residing on cloud-based servers other than the host system where the SPA server itself is running. A single packet authorization (SPA) server running on a host system passively monitors a network for a valid SPA packet while maintaining a default deny stance on a gateway packet filter. The SPA server stores the MD5 sum of every valid SPA packet that it monitors and flags any duplicate access attempts. This way, if any SPA packet has the same MD5 hash as a previously monitored packet the SPA server treats the packet as malicious. After a valid SPA packet is sent, the SPA host server provides a Network Address Translation (NAT) which essentially creates an “SPA gateway” within a Cloud network independent of any other border gateway devices that already exist within the Cloud. The client system may then request access via the SPA gateway to services that are on other Cloud systems besides the one where the SPA server is running.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.