-
公开(公告)号:US12159158B2
公开(公告)日:2024-12-03
申请号:US18183236
申请日:2023-03-14
Applicant: Sophos Limited
IPC: H04L9/40 , G06F3/0482 , G06F8/65 , G06F8/71 , G06F9/4401 , G06F9/455 , G06F9/50 , G06F11/14 , G06F21/62 , H04L9/32 , H04L12/66 , H04L41/082 , H04L43/0811 , H04L67/141 , H04L67/146
Abstract: A gateway performs silent authentication refreshes with an identity management platform in order to extend the expiration of a cookie provided to an endpoint that accesses network applications through the gateway.
-
2.
公开(公告)号:US20230319113A1
公开(公告)日:2023-10-05
申请号:US17749493
申请日:2022-05-20
Applicant: Sophos Limited
Inventor: Biju Ramachandra Kaimal , Andrew J. Thomas , Kerav Vaidya , Yogesh Bansal
IPC: H04L9/40
CPC classification number: H04L63/20 , H04L63/101
Abstract: A method includes receiving, by a computer system, information related to device health of an electronic device, determining, by the computer system, a health status of the electronic device based at least in part on the received information related to the device health of the electronic device, requesting, by a switch having a port connected to the electronic device, the health status of the electronic device from the computer system, receiving, by the computer system, the request for the health status of the electronic device from the switch, transmitting, by the computer system, the health status of the electronic device to the switch, evaluating, by the switch, the transmitted health status of the electronic device using network access rules associated corresponding to health statuses, and applying, by the switch, a network access control configuration to the port of the switch based on the evaluating the transmitted health status.
-
公开(公告)号:US20230117962A1
公开(公告)日:2023-04-20
申请号:US17690632
申请日:2022-03-09
Applicant: Sophos Limited
Inventor: Biju Ramachandra Kaimal , Avni Bhupendrakumar Wala , Nikhil Bhandari
IPC: H04L9/40 , H04L12/66 , G06F3/0482 , G06F21/62
Abstract: A policy created through an administrative user interface is converted into an intermediate representation that can be compiled for execution by a gateway or converted into a human-readable form for modifications by the administrator.
-
公开(公告)号:US20230123781A1
公开(公告)日:2023-04-20
申请号:US17690681
申请日:2022-03-09
Applicant: Sophos Limited
Inventor: Biju Ramachandra Kaimal , Andrew J. Thomas , Venkata Suresh Reddy Obulareddy , Mayur Premi , Robert W. Cook , Ramesh Kamath , Matthew Charles Setzer , Madan Mohan Nayak
IPC: H04L9/40
Abstract: In order to use zero trust network resources distributed across multiple gateways, an agent is deployed on an endpoint of an enterprise network. The agent maps requests for specific applications to corresponding gateways. The agent may also multiplex or otherwise aggregate communications among different network applications and gateways in order to provide seamless, transparent access to the distributed resources at a single endpoint, and/or within a single interface.
-
公开(公告)号:US20230121834A1
公开(公告)日:2023-04-20
申请号:US17690607
申请日:2022-03-09
Applicant: Sophos Limited
IPC: H04L9/32 , H04L67/141 , H04L67/146
Abstract: A gateway performs silent authentication refreshes with an identity management platform in order to extend the expiration of a cookie provided to an endpoint that accesses network applications through the gateway.
-
公开(公告)号:US20220272117A1
公开(公告)日:2022-08-25
申请号:US17212550
申请日:2021-03-25
Applicant: Sophos Limited
Inventor: Sanjeev Kumar Maheve , Biju Ramachandra Kaimal , Venkata Suresh Reddy Obulareddy , Neha Parshottam Patel
IPC: H04L29/06
Abstract: Certain edge networking devices such as application gateways may report status to a cloud-based threat management platform using a persistent network connection between the gateway and the cloud platform. Where a cloud computing platform for an edge networking device or the treat management platform imposes periodic timeouts, the threat management platform may monitor connects and disconnects for edge devices and asynchronously evaluate connection status of edge devices independently of a heartbeat or other signal through the persistent connection in order to distinguish periodic timeouts imposed by the cloud computing platform from networking devices that are compromised or malfunctioning.
-
公开(公告)号:US20240129310A1
公开(公告)日:2024-04-18
申请号:US18090009
申请日:2022-12-28
Applicant: Sophos Limited
Inventor: Robert Paul Andrews , Biju Ramachandra Kaimal , Nitin Gupta , Amit Katyal
IPC: H04L9/40
CPC classification number: H04L63/0884 , H04L63/029 , H04L63/1441
Abstract: A zero trust network access appliance deployed at a customer premises can support gateway and cloud modes. In a gateway mode, the appliance operates as a zero trust network access gateway, and provides zero trust network access to applications hosted at the customer premises, using a firewall at the customer premises for network security. In the cloud mode, the appliance initiates a secure connection with a remote, cloud computing platform that provides a front end for zero trust network access. A threat management facility for the customer provides a control plane for managing zero trust network access provided through the cloud computing platform.
-
8.
公开(公告)号:US11962621B2
公开(公告)日:2024-04-16
申请号:US17749493
申请日:2022-05-20
Applicant: Sophos Limited
Inventor: Biju Ramachandra Kaimal , Andrew J. Thomas , Kerav Vaidya , Yogesh Bansal , Robert Paul Andrews
IPC: H04L9/40
CPC classification number: H04L63/20 , H04L63/101
Abstract: A method includes receiving, by a computer system, information related to device health of an electronic device, determining, by the computer system, a health status of the electronic device based at least in part on the received information related to the device health of the electronic device, requesting, by a switch having a port connected to the electronic device, the health status of the electronic device from the computer system, receiving, by the computer system, the request for the health status of the electronic device from the switch, transmitting, by the computer system, the health status of the electronic device to the switch, evaluating, by the switch, the transmitted health status of the electronic device using network access rules associated corresponding to health statuses, and applying, by the switch, a network access control configuration to the port of the switch based on the evaluating the transmitted health status.
-
公开(公告)号:US20230319114A1
公开(公告)日:2023-10-05
申请号:US17749510
申请日:2022-05-20
Applicant: Sophos Limited
Inventor: Biju Ramachandra Kaimal , Jeffrey Martin Green
CPC classification number: H04L63/20 , G06F9/45558 , H04L63/0209 , G06F2009/45595 , G06F2009/45591
Abstract: A method comprises monitoring a computing environment including a plurality of containers, determining, for one of the containers, a service type and an IP address, assigning the IP address of the container having the determined service type to a first list of IP addresses, assigning an IP address of each of the containers to a second list of IP addresses, applying a first security policy for a first source of network traffic for processing by the container having the determined service type and the IP address assigned to the first list of IP addresses, and applying a second security policy for a second source of network traffic for processing by the containers having the IP addresses assigned to the second list of IP addresses.
-
公开(公告)号:US20230120785A1
公开(公告)日:2023-04-20
申请号:US17690654
申请日:2022-03-09
Applicant: Sophos Limited
Inventor: Biju Ramachandra Kaimal , Srisakthi Subramaniam , Nikhil Bhandari
Abstract: An administrator can initiate an automatic software update to a network appliance that is configured as a cluster of nodes. The update is performed sequentially on a node-by-node basis in order to maintain availability and performance of the network appliance during the update.
-
-
-
-
-
-
-
-
-