Systems and methods for enhanced client side policy
    11.
    发明授权
    Systems and methods for enhanced client side policy 有权
    增强客户端策略的系统和方法

    公开(公告)号:US09407608B2

    公开(公告)日:2016-08-02

    申请号:US14448298

    申请日:2014-07-31

    Abstract: An appliance and method for authorizing a level of access of a client to a virtual private network connection, based on a client-side attribute includes the step of establishing, by an appliance, a control connection with a client upon receiving a client request to establish a virtual private network connection with a network. The appliance transmits, via the control connection, a request to the client to evaluate at least one clause of a security string, the at least one clause including an expression associated with a client-side attribute. The client transmits, via the control connection, a response to the appliance comprising a result of evaluating the at least one clause by the client. The appliance assigns the client to an authorization group based on the result of evaluation of the at least one clause.

    Abstract translation: 基于客户端属性来授权客户端访问虚拟专用网络连接的级别的设备和方法包括以下步骤:当设备在接收到建立客户端请求时建立与客户端的控制连接 与网络的虚拟专用网络连接。 该设备经由控制连接向客户端发送请求以评估安全字符串的至少一个子句,所述至少一个子句包括与客户端属性相关联的表达式。 客户端经由控制连接发送对设备的响应,包括由客户端评估至少一个子句的结果。 该设备基于至少一个子句的评估结果将客户端分配给授权组。

    Systems and methods for application-based interception of SSL/VPN traffic
    12.
    发明授权
    Systems and methods for application-based interception of SSL/VPN traffic 有权
    用于基于应用程序拦截SSL / VPN流量的系统和方法

    公开(公告)号:US09294439B2

    公开(公告)日:2016-03-22

    申请号:US13943662

    申请日:2013-07-16

    CPC classification number: H04L63/0227 H04L63/0272 H04L63/0876 H04L63/102

    Abstract: A method for intercepting, by an agent of a client, communications from the client to be transmitted via a virtual private network connection includes the step of intercepting communications based on identification of an application from which the communication originates. The agent receives information identifying a first application. The agent determines a network communication transmitted by the client originates from the first application and intercepts that communication. The agent transmits the intercepted communication via the virtual private network connection.

    Abstract translation: 用于由客户的代理拦截要通过虚拟专用网络连接发送的通信的方法包括基于来自该通信的应用的识别来拦截通信的步骤。 代理接收标识第一应用的信息。 代理确定由客户端发送的网络通信源自第一应用,并拦截该通信。 该代理通过虚拟专用网络连接发送被拦截的通信。

    SYSTEMS AND METHODS FOR MANAGING APPLICATION SECURITY PROFILES
    13.
    发明申请
    SYSTEMS AND METHODS FOR MANAGING APPLICATION SECURITY PROFILES 有权
    用于管理应用程序安全性配置文件的系统和方法

    公开(公告)号:US20130304881A1

    公开(公告)日:2013-11-14

    申请号:US13943662

    申请日:2013-07-16

    CPC classification number: H04L63/0227 H04L63/0272 H04L63/0876 H04L63/102

    Abstract: A method for intercepting, by an agent of a client, communications from the client to be transmitted via a virtual private network connection includes the step of intercepting communications based on identification of an application from which the communication originates. The agent receives information identifying a first application. The agent determines a network communication transmitted by the client originates from the first application and intercepts that communication. The agent transmits the intercepted communication via the virtual private network connection.

    Abstract translation: 用于由客户的代理拦截要通过虚拟专用网络连接发送的通信的方法包括基于来自该通信的应用的识别来拦截通信的步骤。 代理接收标识第一应用的信息。 代理确定由客户端发送的网络通信源自第一应用,并拦截该通信。 该代理通过虚拟专用网络连接发送被拦截的通信。

Patent Agency Ranking