- 专利标题: Device discovery for cloud-based network security gateways
-
申请号: US17087816申请日: 2020-11-03
-
公开(公告)号: US11516257B2公开(公告)日: 2022-11-29
- 发明人: Eugene (John) Neystadt , Michael Graham , John Devasia
- 申请人: Akamai Technologies, Inc.
- 申请人地址: US MA Cambridge
- 专利权人: Akamai Technologies, Inc.
- 当前专利权人: Akamai Technologies, Inc.
- 当前专利权人地址: US MA Cambridge
- 主分类号: H04L9/40
- IPC分类号: H04L9/40 ; G06F21/55 ; H04L12/66 ; H04L61/2585 ; H04L67/563
摘要:
Among other things, this document describes systems, methods and devices for discovering and identifying client devices that attempt to access out-of-policy network services via a secure web gateway (or other network security gateway) that lacks visibility into the client network actual IP space. This is a common problem with cloud hosted SWG services that enforce access policy from outside of a customer network (e.g., external to an enterprise network), due to network address translation at the interface between the customer network and the public Internet where the cloud-hosted SWG resides. The teachings hereof address this problem. In one embodiment, a cloud hosted SWG can redirect a client to a bouncer device inside the customer network; that bouncer device can capture the actual client IP address.
公开/授权文献
信息查询