WALLED GARDEN SYSTEM WITH CLEARED IPS LIST AUTOMATICALLY GENERATED FROM DNS QUERIES

    公开(公告)号:US20180124016A1

    公开(公告)日:2018-05-03

    申请号:US15796382

    申请日:2017-10-27

    Inventor: David T. Ong

    Abstract: A walled garden system includes a firewall controlling access between a first network and a second network at least by allowing connection requests originating from a user device on the first network to a destination IP address on the second network in response to determining that the destination IP address matches a cleared IP address on a cleared IP addresses list. A controller receives a domain name service (DNS) reply from a DNS server on the second network, and determines whether a domain name specified within the DNS reply matches a cleared domain name on a cleared domain names list. In response to determining that the domain name specified within the DNS reply matches the cleared domain name on the cleared domain names list, the controller adds a resolved IP address specified in the DNS reply to the cleared IP addresses list as a new cleared IP address.

    Off-site user access control
    65.
    发明授权

    公开(公告)号:US09917840B2

    公开(公告)日:2018-03-13

    申请号:US15260706

    申请日:2016-09-09

    Abstract: Systems and methods are described for off-site user access control to communications services via a site-based communications network. Embodiments operate in context of sites, each having one or more site-based networks in communication with external networks via one or more on-site routers. User devices are provided with controlled access to those external networks via wired or wireless connections between those user devices and the site based networks. In some embodiments, on-site routers maintain route maps that indicate which user devices are authorized. Standard routing functions are used so that traffic from authorized devices is routed normally, while traffic from unauthorized devices is automatically forwarded to an off-site (e.g., cloud-based) authentication system. As devices become remotely authenticated, the off-site authentication system can remotely update route maps of the on-site routers to add those devices.

Patent Agency Ranking