-
公开(公告)号:US10728252B2
公开(公告)日:2020-07-28
申请号:US16029558
申请日:2018-07-07
Applicant: Zscaler, Inc.
Inventor: Purvi Desai , Abhinav Bansal
Abstract: A cloud-based security system enforcing application-based control of network resources includes a plurality of nodes communicatively coupled to the Internet; and one or more authority nodes communicatively coupled to the plurality of nodes; wherein a node of the plurality of nodes is communicatively coupled to a user device via the Internet, and wherein the node is configured to receive a request from a user device for network resources on the Internet or in an external network, to evaluate the request to determine an application on the user device associated with the request, and to provide application-based control of the request based on the determined application and the network resources.
-
公开(公告)号:US10574652B2
公开(公告)日:2020-02-25
申请号:US15404761
申请日:2017-01-12
Applicant: Zscaler, Inc.
Inventor: Purvi Desai , Abhinav Bansal , Tejus Gangadharappa
Abstract: A cloud-based method of service function chaining using Security Assertion Markup Language (SAML) assertions includes receiving configuration information related to any of users, services, and correspondence between the users and the services; responsive to a request from a user, generating a SAML assertion for the request and attaching a stack of service tags with the SAML assertion, wherein the stack of service tags defines a service chain for the user and for the request; and providing the SAML assertion with the stack of service tags to the user in response to the request. The method can further include providing the SAML assertion by the user to one or more services, wherein each of the services creates a context based on the stack of service tags. Each of the services identifies itself in the stack and sends the SAML assertion to a next service or application in the stack.
-
3.
公开(公告)号:US20180115463A1
公开(公告)日:2018-04-26
申请号:US15377051
申请日:2016-12-13
Applicant: Zscaler, Inc.
Inventor: Amit Sinha , Prem Mohan , Arshi Chadha , Preeti Arora , Ajit Singh , Purvi Desai
Abstract: A method for troubleshooting and performance analysis of a cloud based system, the method implemented by an analyzer service executed on one or more servers, and the analyzer service communicatively coupled to a network and to user devices, the method includes receiving results from execution of an analyzer application on each of the user devices, wherein the analyzer application is executed locally on user devices to perform tests comprising traceroutes and web page loads, and wherein the plurality of tests are performed both through the cloud based system to the network and directly to the network; processing the results to determine a status of the cloud based system and associated user devices communicating therewith; utilizing the status to identify bottlenecks and issues associated with the cloud based system and the network; and causing performance of remedial actions based on the identified bottlenecks and the issues.
-
公开(公告)号:US10728113B2
公开(公告)日:2020-07-28
申请号:US15377051
申请日:2016-12-13
Applicant: Zscaler, Inc.
Inventor: Amit Sinha , Prem Mohan , Arshi Chadha , Preeti Arora , Ajit Singh , Purvi Desai
Abstract: A method for troubleshooting and performance analysis of a cloud based system, the method implemented by an analyzer service executed on one or more servers, and the analyzer service communicatively coupled to a network and to user devices, the method includes receiving results from execution of an analyzer application on each of the user devices, wherein the analyzer application is executed locally on user devices to perform tests comprising traceroutes and web page loads, and wherein the plurality of tests are performed both through the cloud based system to the network and directly to the network; processing the results to determine a status of the cloud based system and associated user devices communicating therewith; utilizing the status to identify bottlenecks and issues associated with the cloud based system and the network; and causing performance of remedial actions based on the identified bottlenecks and the issues.
-
5.
公开(公告)号:US10432673B2
公开(公告)日:2019-10-01
申请号:US15420715
申请日:2017-01-31
Applicant: Zscaler, Inc.
Inventor: Abhinav Bansal , Vikas Mahajan , Purvi Desai
Abstract: Systems and methods in a mobile device communicatively coupled to a cloud based security system, the method for detecting and processing in-channel events associated with a network agnostic mobile application, the method includes intercepting outgoing data from the network agnostic mobile application at a tunnel interface on the mobile device; monitoring the outgoing data for network transactions from the network agnostic mobile application to maintain a context of the network transactions and intended responses for every request; transmitting the outgoing data from the tunnel interface to the cloud based security system; and receiving a response from the cloud based security system responsive to the outgoing data and processing any deviation from the intended responses.
-
6.
公开(公告)号:US20190158503A1
公开(公告)日:2019-05-23
申请号:US16252961
申请日:2019-01-21
Applicant: Zscaler, Inc.
Inventor: Abhinav Bansal , Purvi Desai
Abstract: A server configured to profile a mobile device for a cloud-based system, includes a network interface, a data store, and a processor communicatively coupled to one another; and memory storing computer executable instructions, and in response to execution by the processor, the computer-executable instructions cause the processor to, based on communication to a client application on the mobile device, cause the client application to collect data associated with the mobile device; receive the collected data; and determine a device fingerprint and a risk index for the mobile device based on the collected data, wherein the device fingerprint is utilized to uniquely identify the mobile device and the risk index is utilized to manage the mobile device
-
公开(公告)号:US20180183794A1
公开(公告)日:2018-06-28
申请号:US15900951
申请日:2018-02-21
Applicant: Zscaler, Inc.
Inventor: Purvi Desai , Vikas Mahajan , Abhinav Bansal , Ajit Singh , Sandeep Kumar , Vivek Raman
CPC classification number: H04L63/0884 , H04L61/1511 , H04L61/6063 , H04L63/0272 , H04L63/0281 , H04L67/02 , H04L67/10 , H04L67/1002 , H04L67/125 , H04L67/16 , H04L67/28 , H04L67/2814 , H04L67/2819 , H04L69/162
Abstract: Systems and methods implemented by an application executed on a user device for service discovery and connectivity include discovering one or more cloud services for a user associated with the user device; creating and operating an interface on the user device; and intercepting traffic at the interface from one or more client applications on the user device and splitting the traffic based on configuration to the one or more cloud services. The method can further include authenticating the user into the one or more cloud services prior to the splitting.
-
公开(公告)号:US10225740B2
公开(公告)日:2019-03-05
申请号:US15377126
申请日:2016-12-13
Applicant: Zscaler, Inc.
Inventor: Abhinav Bansal , Purvi Desai
Abstract: Systems and methods implemented in a cloud node in a cloud based security system for network access control of a mobile device based on multidimensional risk profiling thereof include receiving posture data from the mobile device; determining a device fingerprint and a risk index of the mobile device based on the posture data; and, responsive to a request by the mobile device for network resources through the cloud based security system, performing a multidimensional risk analysis based on the device fingerprint and the risk index and allowing or denying the request based on the multidimensional risk analysis.
-
公开(公告)号:US11894993B2
公开(公告)日:2024-02-06
申请号:US16940549
申请日:2020-07-28
Applicant: Zscaler, Inc.
Inventor: Amit Sinha , Prem Mohan , Arshi Chadha , Preeti Arora , Ajit Singh , Purvi Desai
IPC: H04L12/24 , H04L41/5009 , H04L43/10 , H04L41/5067 , H04L41/0654
CPC classification number: H04L41/5009 , H04L41/5067 , H04L43/10 , H04L41/0654
Abstract: Systems and methods for troubleshooting and performance analysis of a cloud-based service include receiving metrics over time from a plurality of analyzers, wherein the metrics include service-related metrics and network-related metrics related to a cloud-based service, wherein each analyzer of the plurality of analyzers is executed at one of a user device accessing the cloud-based service and in the cloud-based service, and wherein at least one analyzer is executed in the cloud-based service; analyzing the metrics to determine a status of the cloud-based service over the time; and identifying issues related to the cloud-based service utilizing the analyzed metrics over the time, wherein the issues include any of an issue on a particular user device, an issue in a network between a particular user device and the cloud service, and an issue within the cloud service.
-
公开(公告)号:US11425097B2
公开(公告)日:2022-08-23
申请号:US16528931
申请日:2019-08-01
Applicant: Zscaler, Inc.
Inventor: Patrick Foxhoven , John A. Chanak , William Fehring , Denzil Wessels , Purvi Desai , Manoj Apte , Sudhindra P. Herle
IPC: H04L9/40 , H04L67/1021 , H04L67/01 , G06F16/28 , H04L61/4511
Abstract: Systems and methods include receiving a request, in a cloud system from a user device, to access an application, wherein the application is in one of a public cloud, a private cloud, and an enterprise network, and wherein the user device is remote over the Internet; determining if the user device is permitted to access the application; if the user device is not permitted to access the application, notifying the user device the application does not exist; and if the user device is permitted to access the application, stitching together connections between the cloud system, the application, and the user device to provide access to the application.
-
-
-
-
-
-
-
-
-