The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Aug. 26, 2025

Filed:

Sep. 09, 2021
Applicant:

Amazon Technologies, Inc., Seattle, WA (US);

Inventors:

Shridharan Chandramouli, Newcastle, WA (US);

Andrew Chen, Bellevue, WA (US);

Adhish Bhobe, Sammamish, WA (US);

Shuaijie Wang, Bellevue, WA (US);

Maritza Mills, Reston, VA (US);

Siman Huang, Bellevue, WA (US);

Yi-Ting Chen, Seattle, WA (US);

Xiangpeng Li, Redmond, WA (US);

Kunal Pandit, Maple Ridge, CA;

Assignee:

Amazon Technologies, Inc., Seattle, WA (US);

Attorneys:
Primary Examiner:
Int. Cl.
CPC ...
H04L 9/40 (2022.01); H04L 41/0816 (2022.01); H04L 41/0853 (2022.01);
U.S. Cl.
CPC ...
H04L 63/0263 (2013.01); H04L 41/0816 (2013.01); H04L 41/0853 (2013.01); H04L 63/0236 (2013.01); H04L 63/20 (2013.01);
Abstract

A firewall manager automates traffic route configuration, compliance monitoring, and remediation. An administrator specifies a firewall policy that includes rules and traffic description, and specifies accounts, isolated virtual networks (IVNs) and/or subnets for firewall deployment. For automated traffic route configuration, the manager provisions and configures firewalls for the specified networks. The manager uses discovered network resource of the specified networks to determine route information for the firewalls for the networks for the traffic, and sends instructions for routing updates for the IVNs to an IVN manager service. For compliance monitoring and remediation, the manager obtains information about new IVNs, subnets, resources and/or routes, and determines compliance by comparing the obtained information to the firewall policy. The manager generates a remediation plan for non-compliance and instructs remediation by performing programmatic calls to the IVN manager service.


Find Patent Forward Citations

Loading…