CA3075079A1 - Methods, systems, and media for modifying firewalls based on dynamic ip addresses - Google Patents
Methods, systems, and media for modifying firewalls based on dynamic ip addresses Download PDFInfo
- Publication number
- CA3075079A1 CA3075079A1 CA3075079A CA3075079A CA3075079A1 CA 3075079 A1 CA3075079 A1 CA 3075079A1 CA 3075079 A CA3075079 A CA 3075079A CA 3075079 A CA3075079 A CA 3075079A CA 3075079 A1 CA3075079 A1 CA 3075079A1
- Authority
- CA
- Canada
- Prior art keywords
- firewall rule
- address
- firewall
- user device
- remote computer
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Abandoned
Links
- 238000000034 method Methods 0.000 title claims abstract description 119
- 230000004044 response Effects 0.000 claims abstract description 31
- 230000000977 initiatory effect Effects 0.000 claims abstract description 8
- 230000008569 process Effects 0.000 description 86
- 238000004891 communication Methods 0.000 description 21
- 230000009471 action Effects 0.000 description 9
- 230000000694 effects Effects 0.000 description 6
- 238000004590 computer program Methods 0.000 description 4
- 230000003287 optical effect Effects 0.000 description 4
- 230000005540 biological transmission Effects 0.000 description 3
- 230000006870 function Effects 0.000 description 3
- 230000007246 mechanism Effects 0.000 description 3
- 238000012546 transfer Methods 0.000 description 3
- 230000008901 benefit Effects 0.000 description 2
- 239000004065 semiconductor Substances 0.000 description 2
- 239000004020 conductor Substances 0.000 description 1
- 238000010586 diagram Methods 0.000 description 1
- 238000012986 modification Methods 0.000 description 1
- 230000004048 modification Effects 0.000 description 1
- 239000013307 optical fiber Substances 0.000 description 1
- 238000012545 processing Methods 0.000 description 1
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/02—Network architectures or network communication protocols for network security for separating internal from external traffic, e.g. firewalls
- H04L63/0227—Filtering policies
- H04L63/0263—Rule management
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L61/00—Network arrangements, protocols or services for addressing or naming
- H04L61/50—Address allocation
- H04L61/5007—Internet protocol [IP] addresses
- H04L61/5014—Internet protocol [IP] addresses using dynamic host configuration protocol [DHCP] or bootstrap protocol [BOOTP]
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/02—Network architectures or network communication protocols for network security for separating internal from external traffic, e.g. firewalls
- H04L63/0227—Filtering policies
- H04L63/0236—Filtering by address, protocol, port number or service, e.g. IP-address or URL
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/10—Network architectures or network communication protocols for network security for controlling access to devices or network resources
- H04L63/105—Multiple levels of security
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/14—Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/20—Network architectures or network communication protocols for network security for managing network security; network security policies in general
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Computer Hardware Design (AREA)
- Computing Systems (AREA)
- General Engineering & Computer Science (AREA)
- Business, Economics & Management (AREA)
- General Business, Economics & Management (AREA)
- Data Exchanges In Wide-Area Networks (AREA)
- Computer And Data Communications (AREA)
Applications Claiming Priority (3)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| US15/702,355 US10917384B2 (en) | 2017-09-12 | 2017-09-12 | Methods, systems, and media for modifying firewalls based on dynamic IP addresses |
| US15/702,355 | 2017-09-12 | ||
| PCT/US2018/050411 WO2019055391A1 (en) | 2017-09-12 | 2018-09-11 | METHODS, SYSTEMS, AND MEDIA FOR MODIFYING FIREWALLS BASED ON DYNAMIC IP ADDRESSES |
Publications (1)
| Publication Number | Publication Date |
|---|---|
| CA3075079A1 true CA3075079A1 (en) | 2019-03-21 |
Family
ID=65632284
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| CA3075079A Abandoned CA3075079A1 (en) | 2017-09-12 | 2018-09-11 | Methods, systems, and media for modifying firewalls based on dynamic ip addresses |
Country Status (7)
| Country | Link |
|---|---|
| US (2) | US10917384B2 (enExample) |
| EP (1) | EP3682593A4 (enExample) |
| JP (1) | JP7010370B2 (enExample) |
| KR (1) | KR20200086659A (enExample) |
| CN (1) | CN111095862B (enExample) |
| CA (1) | CA3075079A1 (enExample) |
| WO (1) | WO2019055391A1 (enExample) |
Cited By (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN110213769A (zh) * | 2019-06-10 | 2019-09-06 | 平安科技(深圳)有限公司 | 一种内网访问方法及相关装置 |
Families Citing this family (9)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US11456994B2 (en) * | 2019-03-18 | 2022-09-27 | Charter Communications Operating, Llc | Methods and apparatus for controlling and implementing firewalls |
| DE102019210982A1 (de) * | 2019-07-24 | 2021-01-28 | Robert Bosch Gmbh | Verfahren zur abgesicherten Konfiguration von Automatisierungssystemen |
| CN111641597A (zh) * | 2020-05-11 | 2020-09-08 | 紫光云技术有限公司 | 一种针对云环境的防火墙动态安全防护系统及方法 |
| US11552943B2 (en) | 2020-11-13 | 2023-01-10 | Cyberark Software Ltd. | Native remote access to target resources using secretless connections |
| CN113904858A (zh) * | 2021-10-19 | 2022-01-07 | 中国联合网络通信集团有限公司 | Ip处理方法、装置、设备和存储介质 |
| CN116346375A (zh) * | 2021-12-22 | 2023-06-27 | 中兴通讯股份有限公司 | 访问控制方法、访问控制系统、终端及存储介质 |
| US12294587B2 (en) * | 2023-04-18 | 2025-05-06 | Dell Products L.P. | System and method for enforcing a security framework for high-risk operations |
| CN116566682B (zh) * | 2023-05-16 | 2023-12-08 | 赛姆科技(广东)有限公司 | 一种分布式信息网络安全防护方法、系统及其可读存储介质 |
| CN117579365B (zh) * | 2023-11-28 | 2024-11-15 | 赛安科技(广东)有限公司 | 基于无ip防火墙的ip自学习方法、装置及存储介质 |
Family Cites Families (20)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US7325248B2 (en) * | 2001-11-19 | 2008-01-29 | Stonesoft Corporation | Personal firewall with location dependent functionality |
| US7451234B1 (en) * | 2003-05-24 | 2008-11-11 | At&T Mobility Ii Llc | Systems and methods for updating dynamic IP addresses in a firewall using a DDNS server |
| JP2005203890A (ja) | 2004-01-13 | 2005-07-28 | Victor Co Of Japan Ltd | アクセス制御装置及びアクセス制御システム |
| EP1738530A2 (en) * | 2004-04-12 | 2007-01-03 | XDS, Inc. | System and method for automatically initiating and dynamically establishing secure internet connections between a fire-walled server and a fire-walled client |
| US8689313B2 (en) | 2004-06-21 | 2014-04-01 | Insors Integrated Communications | Real time streaming data communications through a security device |
| KR100656481B1 (ko) | 2006-02-03 | 2006-12-11 | 삼성전자주식회사 | 동적 네트워크 보안 시스템 및 그 제어방법 |
| US8099774B2 (en) * | 2006-10-30 | 2012-01-17 | Microsoft Corporation | Dynamic updating of firewall parameters |
| US8166534B2 (en) * | 2007-05-18 | 2012-04-24 | Microsoft Corporation | Incorporating network connection security levels into firewall rules |
| US8424075B1 (en) * | 2008-12-31 | 2013-04-16 | Qurio Holdings, Inc. | Collaborative firewall for a distributed virtual environment |
| US8606911B2 (en) | 2009-03-02 | 2013-12-10 | Headwater Partners I Llc | Flow tagging for service policy implementation |
| US8549609B2 (en) * | 2011-05-31 | 2013-10-01 | Red Hat, Inc. | Updating firewall rules |
| EP3085013B1 (en) * | 2013-12-20 | 2020-01-22 | McAfee, LLC | Intelligent firewall access rules |
| US9692727B2 (en) * | 2014-12-02 | 2017-06-27 | Nicira, Inc. | Context-aware distributed firewall |
| US9794229B2 (en) | 2015-04-03 | 2017-10-17 | Infoblox Inc. | Behavior analysis based DNS tunneling detection and classification framework for network security |
| CN105592052B (zh) * | 2015-09-10 | 2019-06-07 | 新华三技术有限公司 | 一种防火墙规则配置方法及装置 |
| US20170126727A1 (en) | 2015-11-03 | 2017-05-04 | Juniper Networks, Inc. | Integrated security system having threat visualization |
| US9628444B1 (en) | 2016-02-08 | 2017-04-18 | Cryptzone North America, Inc. | Protecting network devices by a firewall |
| US10200372B2 (en) * | 2016-06-02 | 2019-02-05 | Microsoft Technology Licensing, Llc | Principal access determination in an enviroment |
| CN106209799A (zh) * | 2016-06-29 | 2016-12-07 | 深圳市先河系统技术有限公司 | 一种实现动态网络防护的方法、系统及动态防火墙 |
| CN106790161A (zh) * | 2016-12-29 | 2017-05-31 | 武汉华星光电技术有限公司 | 一种保障服务器安全并减轻防火墙压力的通信系统和方法 |
-
2017
- 2017-09-12 US US15/702,355 patent/US10917384B2/en active Active
-
2018
- 2018-09-11 CN CN201880058908.4A patent/CN111095862B/zh not_active Expired - Fee Related
- 2018-09-11 JP JP2020514742A patent/JP7010370B2/ja active Active
- 2018-09-11 CA CA3075079A patent/CA3075079A1/en not_active Abandoned
- 2018-09-11 EP EP18856687.1A patent/EP3682593A4/en not_active Withdrawn
- 2018-09-11 WO PCT/US2018/050411 patent/WO2019055391A1/en not_active Ceased
- 2018-09-11 KR KR1020207009850A patent/KR20200086659A/ko not_active Ceased
-
2021
- 2021-02-05 US US17/169,298 patent/US20210185009A1/en not_active Abandoned
Cited By (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN110213769A (zh) * | 2019-06-10 | 2019-09-06 | 平安科技(深圳)有限公司 | 一种内网访问方法及相关装置 |
Also Published As
| Publication number | Publication date |
|---|---|
| CN111095862A (zh) | 2020-05-01 |
| US20190081927A1 (en) | 2019-03-14 |
| EP3682593A1 (en) | 2020-07-22 |
| CN111095862B (zh) | 2021-10-01 |
| US20210185009A1 (en) | 2021-06-17 |
| KR20200086659A (ko) | 2020-07-17 |
| EP3682593A4 (en) | 2021-06-02 |
| US10917384B2 (en) | 2021-02-09 |
| JP7010370B2 (ja) | 2022-02-10 |
| WO2019055391A1 (en) | 2019-03-21 |
| JP2020533908A (ja) | 2020-11-19 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| US20210185009A1 (en) | Methods, systems, and media for modifying firewalls based on dynamic ip addresses | |
| US7647430B2 (en) | Remote command framework for devices | |
| US10833922B2 (en) | Methods, systems, and media for adding IP addresses to firewalls | |
| US10623407B2 (en) | Systems, methods, and media for authenticating multiple devices | |
| US10924932B2 (en) | Virtual private network based parental control service with motion-based restricted mode | |
| EP4557132A1 (en) | Resource access control method and apparatus, computer-readable medium, and electronic device | |
| US11222099B2 (en) | Methods, systems, and media for authenticating users using blockchains | |
| US9774705B2 (en) | Router-based networking control | |
| US12278729B2 (en) | Systems, methods, and media for monitoring cloud configuration settings | |
| US9275204B1 (en) | Enhanced network access-control credentials | |
| US20130288661A1 (en) | Remote operation system, relay apparatus, mobile communication apparatus, in-terminal server control method, and relay processing method | |
| US20160028705A1 (en) | Communication system and router | |
| US20210314329A1 (en) | Systems, methods, and media for authorizing external network access requests | |
| CN106462443B (zh) | 用于管理节点的方法和系统 | |
| JP2015528154A (ja) | コンピュータ・ネットワークにおいてサーバからのコンテンツに対するアクセスのための要求を評価するための方法およびサーバ | |
| US11937085B2 (en) | Methods, systems, and media for creating temporary virtual access points using WiFi routers when portals cannot be presented | |
| EP3890271A1 (en) | Systems, methods, and media for authorizing external network access requests | |
| US11089020B1 (en) | Systems, methods, and media for protecting client devices from insecure cloud-based storage containers | |
| EP3729762A1 (en) | Double factor, asynchronous and asymmetric authentication system and method for accessing a company server through internet protocol | |
| JP2025173712A (ja) | 情報処理装置、およびシステム |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| FZDE | Discontinued |
Effective date: 20240313 |