HK1140883A1 - Systems and methods for application-based interception and authorization of ssl/vpn traffic - Google Patents

Systems and methods for application-based interception and authorization of ssl/vpn traffic

Info

Publication number
HK1140883A1
HK1140883A1 HK10107195.6A HK10107195A HK1140883A1 HK 1140883 A1 HK1140883 A1 HK 1140883A1 HK 10107195 A HK10107195 A HK 10107195A HK 1140883 A1 HK1140883 A1 HK 1140883A1
Authority
HK
Hong Kong
Prior art keywords
ssl
authorization
systems
methods
application
Prior art date
Application number
HK10107195.6A
Inventor
Amarnath Mullick
Charu Venkatraman
Junxiao He
Shashi Nanjundaswami
James Harris
Ajay Soni
Original Assignee
Citrix Systems Inc
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Priority claimed from US11/462,321 external-priority patent/US8495181B2/en
Priority claimed from US11/462,329 external-priority patent/US8869262B2/en
Application filed by Citrix Systems Inc filed Critical Citrix Systems Inc
Publication of HK1140883A1 publication Critical patent/HK1140883A1/en

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/02Network architectures or network communication protocols for network security for separating internal from external traffic, e.g. firewalls
    • H04L63/0227Filtering policies
    • H04L63/0236Filtering by address, protocol, port number or service, e.g. IP-address or URL
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/02Network architectures or network communication protocols for network security for separating internal from external traffic, e.g. firewalls
    • H04L63/0227Filtering policies
    • H04L63/0245Filtering by information in the payload
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/02Network architectures or network communication protocols for network security for separating internal from external traffic, e.g. firewalls
    • H04L63/0272Virtual private networks
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/30Network architectures or network communication protocols for network security for supporting lawful interception, monitoring or retaining of communications or communication related information
    • H04L63/306Network architectures or network communication protocols for network security for supporting lawful interception, monitoring or retaining of communications or communication related information intercepting packet switched data communications, e.g. Web, Internet or IMS communications
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/02Network architectures or network communication protocols for network security for separating internal from external traffic, e.g. firewalls
    • H04L63/0227Filtering policies
    • H04L63/0263Rule management
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/10Network architectures or network communication protocols for network security for controlling access to devices or network resources
    • H04L63/101Access control lists [ACL]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/10Network architectures or network communication protocols for network security for controlling access to devices or network resources
    • H04L63/104Grouping of entities
HK10107195.6A 2006-08-03 2010-07-27 Systems and methods for application-based interception and authorization of ssl/vpn traffic HK1140883A1 (en)

Applications Claiming Priority (3)

Application Number Priority Date Filing Date Title
US11/462,321 US8495181B2 (en) 2006-08-03 2006-08-03 Systems and methods for application based interception SSI/VPN traffic
US11/462,329 US8869262B2 (en) 2006-08-03 2006-08-03 Systems and methods for application based interception of SSL/VPN traffic
PCT/US2007/075035 WO2008017011A2 (en) 2006-08-03 2007-08-02 Systems and methods for application-based interception and authorization of ssl/vpn traffic

Publications (1)

Publication Number Publication Date
HK1140883A1 true HK1140883A1 (en) 2010-10-22

Family

ID=38904791

Family Applications (1)

Application Number Title Priority Date Filing Date
HK10107195.6A HK1140883A1 (en) 2006-08-03 2010-07-27 Systems and methods for application-based interception and authorization of ssl/vpn traffic

Country Status (4)

Country Link
CN (1) CN103384250B (en)
AU (1) AU2007281166B2 (en)
HK (1) HK1140883A1 (en)
WO (1) WO2008017011A2 (en)

Families Citing this family (10)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101729543B (en) * 2009-12-04 2012-10-03 同济大学 Method for improving performance of mobile SSL VPN by utilizing remote Socks5 technology
US9237168B2 (en) * 2012-05-17 2016-01-12 Cisco Technology, Inc. Transport layer security traffic control using service name identification
CN104092691A (en) * 2014-07-15 2014-10-08 北京奇虎科技有限公司 Implementation method for implementing root-authority-free networking firewall and client-side
CN104144126B (en) * 2014-08-19 2018-01-23 北京奇虎科技有限公司 Method and system, the client of flow optimization are realized by image procossing
US9560078B2 (en) 2015-02-04 2017-01-31 Intel Corporation Technologies for scalable security architecture of virtualized networks
CN105049431B (en) * 2015-06-30 2019-02-15 深信服科技股份有限公司 Data access control method and device
CN109150751B (en) * 2017-06-16 2022-05-27 阿里巴巴集团控股有限公司 Network control method and device
CN109951575B (en) * 2017-12-20 2022-06-10 新智数字科技有限公司 Method and system for intercepting specified domain name
CN109543470A (en) * 2018-11-01 2019-03-29 郑州云海信息技术有限公司 A kind of storage equipment security access method and system
JP2022086597A (en) * 2020-11-30 2022-06-09 シャープ株式会社 Information processing device, control method, and program

Family Cites Families (11)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US5987611A (en) * 1996-12-31 1999-11-16 Zone Labs, Inc. System and methodology for managing internet access on a per application basis for client computers connected to the internet
US7096495B1 (en) * 2000-03-31 2006-08-22 Intel Corporation Network session management
US7093280B2 (en) * 2001-03-30 2006-08-15 Juniper Networks, Inc. Internet security system
US7574738B2 (en) * 2002-11-06 2009-08-11 At&T Intellectual Property Ii, L.P. Virtual private network crossovers based on certificates
US7260599B2 (en) * 2003-03-07 2007-08-21 Hyperspace Communications, Inc. Supporting the exchange of data by distributed applications
US8572249B2 (en) * 2003-12-10 2013-10-29 Aventail Llc Network appliance for balancing load and platform services
GB2414627A (en) * 2004-05-27 2005-11-30 Hewlett Packard Development Co Network administration
US7757074B2 (en) * 2004-06-30 2010-07-13 Citrix Application Networking, Llc System and method for establishing a virtual private network
EP1641215B1 (en) * 2004-09-28 2017-08-16 CA, Inc. System and method for bridging identities in a service oriented architecture
US7818781B2 (en) * 2004-10-01 2010-10-19 Microsoft Corporation Behavior blocking access control
US20060130135A1 (en) * 2004-12-10 2006-06-15 Alcatel Virtual private network connection methods and systems

Also Published As

Publication number Publication date
AU2007281166A1 (en) 2008-02-07
CN103384250A (en) 2013-11-06
CN103384250B (en) 2017-04-26
WO2008017011A3 (en) 2008-07-03
WO2008017011A2 (en) 2008-02-07
AU2007281166B2 (en) 2011-12-15

Similar Documents

Publication Publication Date Title
HK1140883A1 (en) Systems and methods for application-based interception and authorization of ssl/vpn traffic
HK1160708A1 (en) Systems and methods for gslb based on ssl vpn users ssl vpn
IL204749A0 (en) System and method for near field communications having local security
EP2462753A4 (en) Method and system for filtering of network traffic
EP2266107A4 (en) Methods and systems for efficient security screening
HK1182547A1 (en) System and method for distributed multi-processing security gateway
EP2430796A4 (en) Network traffic rate limiting system and method
EP2308035A4 (en) Traffic control system and method
GB0721337D0 (en) System and method for selection of security algorithms
EP2310996A4 (en) Secure wireless deposit system and method
GB0808448D0 (en) Secure communication system and method of operating the same
EP2122463A4 (en) Traffic based labor allocation method and system
HK1144509A1 (en) Method and system for aggregate bandwidth control
GB0716959D0 (en) Communications method and system
EP2153574A4 (en) Method and system for secure communication
EP2433215A4 (en) Systems and methods for application-level security
IL204153A (en) Runway surveillance system and method
EP2166711A4 (en) Method, device and system for protecting multicast traffic
EP1886447A4 (en) System and method for authentication of sp ethernet aggregation networks
IL199636A0 (en) Method and systems for allocating bandwidth
GB201113926D0 (en) Methods and systems for stripe blind encryption
IL202024A0 (en) Method and system for particle jet boring
EP2062156A4 (en) Systems and methods for providing secure communications for transactions
EP2382733A4 (en) Bandwidth efficient method and system for obscuring the existence of encryption in a communications channel
EP2163031A4 (en) Method and system for secure hardware provisioning

Legal Events

Date Code Title Description
PC Patent ceased (i.e. patent has lapsed due to the failure to pay the renewal fee)

Effective date: 20230802