The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Aug. 07, 2018

Filed:

Aug. 24, 2015
Applicant:

International Business Machines Corporation, Armonk, NY (US);

Inventors:

Linwood Hugh Overby, Jr., Raleigh, NC (US);

Anthony Ffrench, Medford, MA (US);

Barry Mosakowski, Raleigh, NC (US);

Adolfo Francisco Rodriguez, Raleigh, NC (US);

Attorneys:
Primary Examiner:
Int. Cl.
CPC ...
G06F 15/16 (2006.01); H04L 29/06 (2006.01); H04L 29/08 (2006.01); G06F 9/50 (2006.01);
U.S. Cl.
CPC ...
H04L 63/20 (2013.01); G06F 9/50 (2013.01); H04L 63/0227 (2013.01); H04L 63/0236 (2013.01); H04L 63/0272 (2013.01); H04L 63/0281 (2013.01); H04L 63/10 (2013.01); H04L 63/101 (2013.01); H04L 63/168 (2013.01); H04L 65/102 (2013.01); H04L 67/02 (2013.01); H04L 67/10 (2013.01); H04L 67/28 (2013.01);
Abstract

An application deployed in a public cloud is enabled to access an on-premises resource securely and without requiring additional ports on a firewall. A pair of security gateways is instantiated, one at the cloud, and another located on-premises. Each gateway can access information that is necessary to locate and establish a secure connection to the on-premises resource. In response to a determination that the application needs to access the on-premises resource, the data set is used to locate the resource. A communication request is then issued from the cloud gateway to the on-premises gateway over a socket-based communication channel established between the gateways. The communication request is sent over an HTTP-based protocol such that the application is able to access the on-premises resource without requiring an additional IP address/port to be defined at the firewall. Proxied connectivity is then enabled from the application to the on-premises resource.


Find Patent Forward Citations

Loading…