DNS proxy that automatically clears IP addresses in firewall according to DNS queries of cleared domain names

    公开(公告)号:US11706197B2

    公开(公告)日:2023-07-18

    申请号:US17394170

    申请日:2021-08-04

    发明人: David T. Ong

    摘要: A walled garden system includes a firewall controlling access between a first network and a second network at least by allowing connection requests originating from a user device on the first network to a destination IP address on the second network in response to determining that the destination IP address matches a cleared IP address on a cleared IP addresses list. A controller receives a domain name service (DNS) reply from a DNS server on the second network, and determines whether a domain name specified within the DNS reply matches a cleared domain name on a cleared domain names list. In response to determining that the domain name specified within the DNS reply matches the cleared domain name on the cleared domain names list, the controller adds a resolved IP address specified in the DNS reply to the cleared IP addresses list as a new cleared IP address.

    DNS PROXY THAT AUTOMATICALLY CLEARS IP ADDRESSES IN FIREWALL ACCORDING TO DNS QUERIES OF CLEARED DOMAIN NAMES

    公开(公告)号:US20210367924A1

    公开(公告)日:2021-11-25

    申请号:US17394170

    申请日:2021-08-04

    发明人: David T. Ong

    IPC分类号: H04L29/06 H04L29/12

    摘要: A walled garden system includes a firewall controlling access between a first network and a second network at least by allowing connection requests originating from a user device on the first network to a destination IP address on the second network in response to determining that the destination IP address matches a cleared IP address on a cleared IP addresses list. A controller receives a domain name service (DNS) reply from a DNS server on the second network, and determines whether a domain name specified within the DNS reply matches a cleared domain name on a cleared domain names list. In response to determining that the domain name specified within the DNS reply matches the cleared domain name on the cleared domain names list, the controller adds a resolved IP address specified in the DNS reply to the cleared IP addresses list as a new cleared IP address.

    DNS-BASED CAPTIVE PORTAL WITH INTEGRATED TRANSPARENT PROXY TO PROTECT AGAINST USER DEVICE CACHING INCORRECT IP ADDRESS

    公开(公告)号:US20190007375A1

    公开(公告)日:2019-01-03

    申请号:US16033331

    申请日:2018-07-12

    IPC分类号: H04L29/06 H04L29/12

    摘要: A captive portal system includes a login database, a web server, and a name server. The name server receives a DNS request from a user device, queries the login database to determine whether the user device is logged in, and responds to the DNS request with the IP address of the web server as a resolved IP address of the specified domain name when the user device is not logged in. The web server accepts a connection request from the user device to the IP address of the web server, receives an HTTP request specifying a non-local target URL from the user device, queries the login database to determine whether the user device is logged in according to the source address of the user device, and acts as a transparent proxy between the user device and the non-local target URL when the user device is logged in.

    AUTOMATICALLY CONFIGURING COMPUTER NETWORK AT HOSPITALITY ESTABLISHMENT WITH RESERVATION-SPECIFIC SETTINGS
    7.
    发明申请
    AUTOMATICALLY CONFIGURING COMPUTER NETWORK AT HOSPITALITY ESTABLISHMENT WITH RESERVATION-SPECIFIC SETTINGS 有权
    在具有预定特定设置的医院建设中自动配置计算机网络

    公开(公告)号:US20140351392A1

    公开(公告)日:2014-11-27

    申请号:US14456148

    申请日:2014-08-11

    IPC分类号: H04W24/02 H04L12/24

    摘要: A system includes a storage device for storing details of a plurality of reservations of a hospitality establishment. A particular reservation includes a set of reservation-specific settings affecting behavior of the computer network at the hospitality establishment during the reservation. The settings may include a registered device setting for affecting behavior of a computer network at the hospitality establishment toward a user device having a specified device identifier. The system further includes a clock unit for tracking time, and a system controller coupled to the computer network and having access to the storage device and the clock unit. The system controller automatically configures one or more network components of the computer network when a start time of the particular reservation is reached in order to activate the reservation-specific settings.

    摘要翻译: 一种系统,包括用于存储酒店的多个保留​​的细节的存储装置。 特定的预约包括一组预留特定的设置,影响预订期间酒店的计算机网络的行为。 该设置可以包括用于影响在接待处建立时的计算机网络对具有指定设备标识符的用户设备的行为的注册设备设置。 该系统还包括用于跟踪时间的时钟单元,以及耦合到计算机网络并具有访问存储设备和时钟单元的系统控制器。 当达到特定预约的开始时间时,系统控制器自动配置计算机网络的一个或多个网络组件,以激活预定特定设置。

    DNS-BASED CAPTIVE PORTAL WITH INTEGRATED TRANSPARENT PROXY TO PROTECT AGAINST USER DEVICE CACHING INCORRECT IP ADDRESS
    9.
    发明申请
    DNS-BASED CAPTIVE PORTAL WITH INTEGRATED TRANSPARENT PROXY TO PROTECT AGAINST USER DEVICE CACHING INCORRECT IP ADDRESS 有权
    基于DNS的权限门户,具有集成的透明代理,用于保护用户设备缓存不正确的IP地址

    公开(公告)号:US20140344890A1

    公开(公告)日:2014-11-20

    申请号:US14279008

    申请日:2014-05-15

    IPC分类号: H04L29/06

    摘要: A captive portal system includes a login database, a web server, and a name server. The name server receives a DNS request from a user device, queries the login database to determine whether the user device is logged in, and responds to the DNS request with the IP address of the web server as a resolved IP address of the specified domain name when the user device is not logged in. The web server accepts a connection request from the user device to the IP address of the web server, receives an HTTP request specifying a non-local target URL from the user device, queries the login database to determine whether the user device is logged in according to the source address of the user device, and acts as a transparent proxy between the user device and the non-local target URL when the user device is logged in.

    摘要翻译: 强制门户系统包括登录数据库,Web服务器和名称服务器。 名称服务器从用户设备接收DNS请求,查询登录数据库以确定用户设备是否登录,并使用Web服务器的IP地址作为指定域名的解析IP地址响应DNS请求 当用户设备未登录时,Web服务器接受来自用户设备的连接请求到Web服务器的IP地址,从用户设备接收到指定非本地目标URL的HTTP请求,将登录数据库查询到 确定用户设备是否根据用户设备的源地址登录,并在用户设备登录时在用户设备和非本地目标URL之间充当透明代理。