The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Oct. 22, 2024

Filed:

Jul. 31, 2023
Applicant:

Palo Alto Networks, Inc., Santa Clara, CA (US);

Inventors:

Jayant Jain, Cupertino, CA (US);

Brian Russell Kean, Cincinnati, OH (US);

Aditya Srinivasa Ivaturi, Santa Clara, CA (US);

Mohit Sahni, Fremont, CA (US);

Mingfei Peng, Pleasanton, CA (US);

Assignee:

Palo Alto Networks, Inc., Santa Clara, CA (US);

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
H04L 61/256 (2022.01); H04L 61/2592 (2022.01); H04L 61/4511 (2022.01); H04L 101/618 (2022.01);
U.S. Cl.
CPC ...
H04L 61/256 (2013.01); H04L 61/2592 (2013.01); H04L 61/4511 (2022.05); H04L 2101/618 (2022.05);
Abstract

A controller can securely publish an application of a tenant by securely extending a network fabric into the networks of the tenant with virtual private networks and NAT. After a tenant deploys an application into one or more networks of the tenant, the tenant can indicate select applications to publish. The network controller assigns a network address from the routable address space of the network fabric to the application and a network address aggregate to each application connector that will front an instance of the application, which securely extends the network fabric into the tenant network. The network controller configures NAT rules in the network fabric and on the application connector to create a route for traffic of the application through the network fabric to the application instance using a fully qualified domain name assigned to the application without exposing a private network address of the application instance and preserving security of other resource on the tenant network.


Find Patent Forward Citations

Loading…