Invention Grant
- Patent Title: Identity-based policy implementation in network address translation (NAT) environments
-
Application No.: US16502554Application Date: 2019-07-03
-
Publication No.: US10887175B2Publication Date: 2021-01-05
- Inventor: Sanjay Kumar Hooda , Syam Sundar V Appala , Kaushik Kumar Dam , Vimarsh Puneet
- Applicant: Cisco Technology, Inc.
- Applicant Address: US CA San Jose
- Assignee: Cisco Technology, Inc.
- Current Assignee: Cisco Technology, Inc.
- Current Assignee Address: US CA San Jose
- Agency: Edell, Shapiro & Finnan, LLC
- Main IPC: G06F15/16
- IPC: G06F15/16 ; H04L12/24 ; H04L29/08 ; H04L29/12

Abstract:
A policy server correlates information from several messages associated with a client device to implement an identity-based network access policy. A network element connected to the client device obtains an authentication message including a first network address from the client device. The network element provides the authentication device to an identity server via a Network Address Translation (NAT) device, which translates the first network address to a second network address. The network element also provides a first message including the first network address to the policy server to request an identity-based policy for network communications of the client device. The network element implements the identity-based policy authorized by the policy server.
Public/Granted literature
- US20190327150A1 IDENTITY-BASED POLICY IMPLEMENTATION IN NETWORK ADDRESS TRANSLATION (NAT) ENVIRONMENTS Public/Granted day:2019-10-24
Information query