Invention Application
- Patent Title: METHOD AND SYSTEM FOR VPN ISOLATION USING NETWORK NAMESPACES
-
Application No.: US14994383Application Date: 2016-01-13
-
Publication No.: US20160127321A1Publication Date: 2016-05-05
- Inventor: Alexander Fainkichen , Craig Newell
- Applicant: VMware, Inc.
- Applicant Address: US CA Palo Alto
- Assignee: VMware, Inc.
- Current Assignee: VMware, Inc.
- Current Assignee Address: US CA Palo Alto
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06F9/455

Abstract:
One embodiment of the present invention provides a system for providing exclusive access to a virtual private network (VPN) connection to an authorized application. During operation, the system creates a unique network namespace that is different from a default network namespace of a host system. The system then places a pseudo network interface associated with the VPN connection into the unique network namespace. Furthermore, the system places at least one socket for an authorized application into the unique network namespace. The system also precludes unauthorized applications on the host from accessing the unique network namespace, thereby facilitating exclusive access to the VPN connection by the authorized application.
Public/Granted literature
- US09769120B2 Method and system for VPN isolation using network namespaces Public/Granted day:2017-09-19
Information query