APPLYING NETWORK ACCESS CONTROL CONFIGURATIONS WITH A NETWORK SWITCH BASED ON DEVICE HEALTH

    公开(公告)号:US20230319113A1

    公开(公告)日:2023-10-05

    申请号:US17749493

    申请日:2022-05-20

    Applicant: Sophos Limited

    CPC classification number: H04L63/20 H04L63/101

    Abstract: A method includes receiving, by a computer system, information related to device health of an electronic device, determining, by the computer system, a health status of the electronic device based at least in part on the received information related to the device health of the electronic device, requesting, by a switch having a port connected to the electronic device, the health status of the electronic device from the computer system, receiving, by the computer system, the request for the health status of the electronic device from the switch, transmitting, by the computer system, the health status of the electronic device to the switch, evaluating, by the switch, the transmitted health status of the electronic device using network access rules associated corresponding to health statuses, and applying, by the switch, a network access control configuration to the port of the switch based on the evaluating the transmitted health status.

    CLOUD MANAGEMENT OF CONNECTIVITY FOR EDGE NETWORKING DEVICES

    公开(公告)号:US20220272117A1

    公开(公告)日:2022-08-25

    申请号:US17212550

    申请日:2021-03-25

    Applicant: Sophos Limited

    Abstract: Certain edge networking devices such as application gateways may report status to a cloud-based threat management platform using a persistent network connection between the gateway and the cloud platform. Where a cloud computing platform for an edge networking device or the treat management platform imposes periodic timeouts, the threat management platform may monitor connects and disconnects for edge devices and asynchronously evaluate connection status of edge devices independently of a heartbeat or other signal through the persistent connection in order to distinguish periodic timeouts imposed by the cloud computing platform from networking devices that are compromised or malfunctioning.

    HYBRID APPLIANCE FOR ZERO TRUST NETWORK ACCESS TO CUSTOMER APPLICATIONS

    公开(公告)号:US20240129310A1

    公开(公告)日:2024-04-18

    申请号:US18090009

    申请日:2022-12-28

    Applicant: Sophos Limited

    CPC classification number: H04L63/0884 H04L63/029 H04L63/1441

    Abstract: A zero trust network access appliance deployed at a customer premises can support gateway and cloud modes. In a gateway mode, the appliance operates as a zero trust network access gateway, and provides zero trust network access to applications hosted at the customer premises, using a firewall at the customer premises for network security. In the cloud mode, the appliance initiates a secure connection with a remote, cloud computing platform that provides a front end for zero trust network access. A threat management facility for the customer provides a control plane for managing zero trust network access provided through the cloud computing platform.

    Applying network access control configurations with a network switch based on device health

    公开(公告)号:US11962621B2

    公开(公告)日:2024-04-16

    申请号:US17749493

    申请日:2022-05-20

    Applicant: Sophos Limited

    CPC classification number: H04L63/20 H04L63/101

    Abstract: A method includes receiving, by a computer system, information related to device health of an electronic device, determining, by the computer system, a health status of the electronic device based at least in part on the received information related to the device health of the electronic device, requesting, by a switch having a port connected to the electronic device, the health status of the electronic device from the computer system, receiving, by the computer system, the request for the health status of the electronic device from the switch, transmitting, by the computer system, the health status of the electronic device to the switch, evaluating, by the switch, the transmitted health status of the electronic device using network access rules associated corresponding to health statuses, and applying, by the switch, a network access control configuration to the port of the switch based on the evaluating the transmitted health status.

    SECURITY OF NETWORK TRAFFIC IN A CONTAINERIZED COMPUTING ENVIRONMENT

    公开(公告)号:US20230319114A1

    公开(公告)日:2023-10-05

    申请号:US17749510

    申请日:2022-05-20

    Applicant: Sophos Limited

    Abstract: A method comprises monitoring a computing environment including a plurality of containers, determining, for one of the containers, a service type and an IP address, assigning the IP address of the container having the determined service type to a first list of IP addresses, assigning an IP address of each of the containers to a second list of IP addresses, applying a first security policy for a first source of network traffic for processing by the container having the determined service type and the IP address assigned to the first list of IP addresses, and applying a second security policy for a second source of network traffic for processing by the containers having the IP addresses assigned to the second list of IP addresses.

Patent Agency Ranking