Patent · US Active

Network-level access control management for the cloud

US9300633B2 · kind B2 · utility

20Cited by
0References
20Claims
0Family size

Assignee

Inventors

Key dates

Filing dateMar 24, 2014
Grant dateMar 29, 2016
Priority date
Expiry dateMar 24, 2034

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L61/2564
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

A cloud access manager obtains input regarding access control for at least one application deployed on a plurality of virtual machine instances in a cloud computing environment; the virtual machine instances are divided into at least first and second access zones. A cloud access manager registrar located in the cloud computing environment registers internet protocol addresses of external clients as seen from the cloud computing environment; at least some of the addresses are assigned to the clients via network address translation (NAT). Session traversal utility for NAT (STUN) is carried out to determine public internet protocol addresses assigned to the clients via NAT. The cloud access manager controls (i) access of the external clients to the plurality of virtual machine instances; and (ii) access of the plurality of virtual machine instances to each other, based on the registered internet protocol addresses, in accordance with the access zones.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.