The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
May. 31, 2016

Filed:

Dec. 17, 2015
Applicant:

A10 Networks, Inc., San Jose, CA (US);

Inventors:

Lee Chen, Saratoga, CA (US);

Dennis Oshiba, Fremont, CA (US);

John Chiong, San Jose, CA (US);

Assignee:

A10 Networks, Inc., San Jose, CA (US);

Attorney:
Primary Examiner:
Assistant Examiner:
Int. Cl.
CPC ...
H04L 29/06 (2006.01); G06F 21/00 (2013.01); H04L 29/08 (2006.01); H04W 12/00 (2009.01); H04M 1/725 (2006.01); H04L 12/58 (2006.01);
U.S. Cl.
CPC ...
H04L 63/0236 (2013.01); H04L 63/029 (2013.01); G06F 21/00 (2013.01); H04L 51/04 (2013.01); H04L 63/02 (2013.01); H04L 63/0407 (2013.01); H04L 63/20 (2013.01); H04L 65/1026 (2013.01); H04L 67/10 (2013.01); H04L 67/22 (2013.01); H04L 67/306 (2013.01); H04L 67/42 (2013.01); H04M 1/72547 (2013.01); H04W 12/00 (2013.01);
Abstract

A security gateway includes packet routing policies, each including a host network address, an application network address, and a forwarding interface. In routing data packets of an application session, the security gateway: recognizes the application session between a network and an application; determines a user identity from an application session record for the application session; determines packet routing policies applicable to the application session based on the user identity; receives a data packet for the application session, including a source network address and a destination network address; compares the source network address with the host network address, and the destination network address with the application network address; and in response to finding a match between the source network address and the host network address, and between the destination network address and the application network address, processes the data packet using the forwarding interface of the packet routing policy.


Find Patent Forward Citations

Loading…