The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Nov. 29, 2022

Filed:

Feb. 03, 2021
Applicant:

Cisco Technology, Inc., San Jose, CA (US);

Inventors:

Alessandro Duminuco, Milan, IT;

Hendrikus G. P. Bosch, Aalsmeer, NL;

Jeffrey Michael Napper, Delft, NL;

Vinny Parla, North Hampton, NH (US);

Julien Barbot, Villebon-sur-Yvette, FR;

Sape Jurrien Mullender, Amsterdam, NL;

Assignee:

Cisco Technology, Inc., San Jose, CA (US);

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
G06F 17/00 (2019.01); H04L 9/40 (2022.01); H04L 67/141 (2022.01); H04L 67/146 (2022.01); H04L 61/4511 (2022.01); H04L 67/01 (2022.01);
U.S. Cl.
CPC ...
H04L 63/205 (2013.01); H04L 61/4511 (2022.05); H04L 63/0281 (2013.01); H04L 63/08 (2013.01); H04L 63/10 (2013.01); H04L 63/306 (2013.01); H04L 67/01 (2022.05); H04L 67/141 (2013.01); H04L 67/146 (2013.01); H04L 63/0815 (2013.01);
Abstract

Techniques for utilizing an enterprise traffic interception service (TIS) to enforce policies that mandate how clients access software as a service (SaaS) offered by service providers and selectively intercept enterprise network traffic utilizing a domain name service (DNS) and a single sign-on (SSO) service on a per-client per-service basis. The TIS may include a DNS server, an identity provider service, a TLS inspecting proxy, and/or a policy server. The DNS server may handle requests to resolve an address of a service, and identify a policy, stored in the policy server, to redirect the client based on the identity of the client and the service. The identity provider service may later query the policy server during client authorization for the service to verify that the client request is in line with the policy and allow or deny access to the service.


Find Patent Forward Citations

Loading…