The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.
The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.
Patent No.:
Date of Patent:
Aug. 25, 2026
Filed:
Jul. 31, 2023
Xage Security, Inc., Palo Alto, CA (US);
Andy Sugiarto, Palo Alto, CA (US);
Ravilochan Shamanna, San Jose, CA (US);
Ganesh Jampani, Gilroy, CA (US);
Xage Security, Inc., Palo Alto, CA (US);
Abstract
In one embodiment, a computer-implemented method comprises using one or more computing devices that are communicatively coupled to one or more internetworking devices in two or more logical layers of a multiple-layer distributed computing environment, the logical layers comprising at least an operational technology (OT) network and an information technology (IT) network, configuring one or more network firewalls in one or more of the logical layers to admit UDP protocol traffic on one or more specified ports; using the one or more computing devices, setting a current logical network layer to a lowest logical layer of the multiple-layer distributed computing environment; using the one or more computing devices, opening a secure tunnel using the internetworking stack of a first authentication service node at the current logical network layer; using the one or more computing devices, initiating secure tunnel communication toward a second authentication service node at a next higher logical layer of the computing environment; using the one or more computing devices, setting the current logical network layer to be the next higher logical layer, and repeating the opening and initiating one or more times between the current logical layer and the next successive higher logical layer; using the one or more computing devices, synchronizing user access policies between the first authentication service node and the second authentication service node using state synchronization messages communicated through the secure tunnel.