KR20230101868A - 중앙 네트워크 메시를 통한 서비스 간 통신 및 인증 - Google Patents
중앙 네트워크 메시를 통한 서비스 간 통신 및 인증 Download PDFInfo
- Publication number
- KR20230101868A KR20230101868A KR1020237018742A KR20237018742A KR20230101868A KR 20230101868 A KR20230101868 A KR 20230101868A KR 1020237018742 A KR1020237018742 A KR 1020237018742A KR 20237018742 A KR20237018742 A KR 20237018742A KR 20230101868 A KR20230101868 A KR 20230101868A
- Authority
- KR
- South Korea
- Prior art keywords
- service
- pod
- request
- access
- security
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Pending
Links
Images
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
- H04L63/0876—Network architectures or network communication protocols for network security for authentication of entities based on the identity of the terminal or configuration, e.g. MAC address, hardware or software configuration or device fingerprint
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/10—Network architectures or network communication protocols for network security for controlling access to devices or network resources
- H04L63/102—Entity profiles
-
- G—PHYSICS
- G16—INFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR SPECIFIC APPLICATION FIELDS
- G16H—HEALTHCARE INFORMATICS, i.e. INFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR THE HANDLING OR PROCESSING OF MEDICAL OR HEALTHCARE DATA
- G16H10/00—ICT specially adapted for the handling or processing of patient-related medical or healthcare data
- G16H10/60—ICT specially adapted for the handling or processing of patient-related medical or healthcare data for patient-specific data, e.g. for electronic patient records
-
- G—PHYSICS
- G16—INFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR SPECIFIC APPLICATION FIELDS
- G16H—HEALTHCARE INFORMATICS, i.e. INFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR THE HANDLING OR PROCESSING OF MEDICAL OR HEALTHCARE DATA
- G16H40/00—ICT specially adapted for the management or administration of healthcare resources or facilities; ICT specially adapted for the management or operation of medical equipment or devices
- G16H40/60—ICT specially adapted for the management or administration of healthcare resources or facilities; ICT specially adapted for the management or operation of medical equipment or devices for the operation of medical equipment or devices
- G16H40/67—ICT specially adapted for the management or administration of healthcare resources or facilities; ICT specially adapted for the management or operation of medical equipment or devices for the operation of medical equipment or devices for remote operation
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/10—Network architectures or network communication protocols for network security for controlling access to devices or network resources
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/10—Network architectures or network communication protocols for network security for controlling access to devices or network resources
- H04L63/105—Multiple levels of security
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/20—Network architectures or network communication protocols for network security for managing network security; network security policies in general
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/20—Network architectures or network communication protocols for network security for managing network security; network security policies in general
- H04L63/205—Network architectures or network communication protocols for network security for managing network security; network security policies in general involving negotiation or determination of the one or more network security mechanisms to be used, e.g. by negotiation between the client and the server or between peers or by selection according to the capabilities of the entities involved
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L67/00—Network arrangements or protocols for supporting network services or applications
- H04L67/50—Network services
- H04L67/56—Provisioning of proxy services
- H04L67/568—Storing data temporarily at an intermediate stage, e.g. caching
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L67/00—Network arrangements or protocols for supporting network services or applications
- H04L67/50—Network services
- H04L67/60—Scheduling or organising the servicing of application requests, e.g. requests for application data transmissions using the analysis and optimisation of the required network resources
- H04L67/63—Routing a service request depending on the request content or context
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Computer Hardware Design (AREA)
- Computing Systems (AREA)
- General Engineering & Computer Science (AREA)
- Health & Medical Sciences (AREA)
- Biomedical Technology (AREA)
- Epidemiology (AREA)
- General Health & Medical Sciences (AREA)
- Medical Informatics (AREA)
- Primary Health Care (AREA)
- Public Health (AREA)
- Business, Economics & Management (AREA)
- General Business, Economics & Management (AREA)
- Power Engineering (AREA)
- Management, Administration, Business Operations System, And Electronic Commerce (AREA)
- Information Transfer Between Computers (AREA)
Applications Claiming Priority (3)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| US202063111997P | 2020-11-10 | 2020-11-10 | |
| US63/111,997 | 2020-11-10 | ||
| PCT/US2021/058402 WO2022103681A1 (en) | 2020-11-10 | 2021-11-08 | Service to service communication and authentication via a central network mesh |
Publications (1)
| Publication Number | Publication Date |
|---|---|
| KR20230101868A true KR20230101868A (ko) | 2023-07-06 |
Family
ID=78822325
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| KR1020237018742A Pending KR20230101868A (ko) | 2020-11-10 | 2021-11-08 | 중앙 네트워크 메시를 통한 서비스 간 통신 및 인증 |
Country Status (6)
| Country | Link |
|---|---|
| US (1) | US12341776B2 (https=) |
| EP (1) | EP4245024B1 (https=) |
| JP (1) | JP7785076B2 (https=) |
| KR (1) | KR20230101868A (https=) |
| CN (1) | CN116569538A (https=) |
| WO (1) | WO2022103681A1 (https=) |
Cited By (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| KR102891300B1 (ko) * | 2025-03-28 | 2025-12-01 | 펜타시큐리티 주식회사 | 클라우드 환경 기반 머신 id 관리 방법 및 장치 |
Families Citing this family (5)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US12328391B2 (en) * | 2021-11-15 | 2025-06-10 | Sap Se | Managing secret values using a secrets manager |
| US20230395215A1 (en) * | 2022-06-02 | 2023-12-07 | Evernorth Strategic Development, Inc. | Scalable framework for digital mesh |
| US12381852B2 (en) | 2023-01-27 | 2025-08-05 | International Business Machines Corporation | Providing dynamic network security based on importance of proprietary content |
| US12348514B2 (en) * | 2023-04-21 | 2025-07-01 | Stripe, Inc. | Systems and methods for enforcing access requirements to services in a distributed services system |
| US12609934B2 (en) * | 2023-05-18 | 2026-04-21 | Pure Storage, Inc. | Service mesh-based control of access to a storage application |
Family Cites Families (18)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CA2574885A1 (en) * | 2004-07-23 | 2006-02-02 | Privit, Inc. | Privacy compliant consent and data access management system and method |
| US20070106754A1 (en) * | 2005-09-10 | 2007-05-10 | Moore James F | Security facility for maintaining health care data pools |
| US20170103231A1 (en) * | 2013-07-20 | 2017-04-13 | Keith Lipman | System and method for distributed, policy-based confidentiality management |
| US10536357B2 (en) * | 2015-06-05 | 2020-01-14 | Cisco Technology, Inc. | Late data detection in data center |
| US10148506B1 (en) | 2016-06-28 | 2018-12-04 | Juniper Networks, Inc. | Network configuration service discovery |
| US10027658B1 (en) * | 2017-06-12 | 2018-07-17 | Cyberark Software Ltd | Seamless provision of secret token to cloud-based assets on demand |
| US11637844B2 (en) * | 2017-09-28 | 2023-04-25 | Oracle International Corporation | Cloud-based threat detection |
| US10956563B2 (en) | 2017-11-22 | 2021-03-23 | Aqua Security Software, Ltd. | System for securing software containers with embedded agent |
| US11057393B2 (en) * | 2018-03-02 | 2021-07-06 | Cloudentity, Inc. | Microservice architecture for identity and access management |
| US10805213B2 (en) | 2018-11-19 | 2020-10-13 | International Business Machines Corporation | Controlling data communication between microservices |
| US10810003B2 (en) | 2019-01-30 | 2020-10-20 | Salesforce.Com, Inc. | Method and system for optimization of container image layering |
| US11711267B2 (en) * | 2019-02-25 | 2023-07-25 | Intel Corporation | 5G network slicing with distributed ledger traceability and resource utilization inferencing |
| US10868845B2 (en) | 2019-03-01 | 2020-12-15 | Netskope, Inc. | Recovery from failure in a dynamic scalable services mesh |
| EP3983894B1 (en) | 2019-06-12 | 2024-10-30 | Arigato Machine, Inc., dba Manifold | Predictive autoscaling and resource optimization |
| US11102125B2 (en) * | 2019-06-27 | 2021-08-24 | Citrix Systems, Inc. | Securing communications between services in a cluster using load balancing systems and methods |
| US12155731B2 (en) | 2019-10-09 | 2024-11-26 | Nutanix, Inc. | Platform-as-a-service deployment including service domains |
| US11816497B2 (en) | 2020-04-02 | 2023-11-14 | Vmware, Inc. | Container orchestration in a clustered and virtualized computer system |
| US11848998B2 (en) * | 2020-07-29 | 2023-12-19 | Control Plane Corporation | Cross-cloud workload identity virtualization |
-
2021
- 2021-11-08 KR KR1020237018742A patent/KR20230101868A/ko active Pending
- 2021-11-08 JP JP2023527689A patent/JP7785076B2/ja active Active
- 2021-11-08 CN CN202180075736.3A patent/CN116569538A/zh active Pending
- 2021-11-08 EP EP21820381.8A patent/EP4245024B1/en active Active
- 2021-11-08 WO PCT/US2021/058402 patent/WO2022103681A1/en not_active Ceased
-
2023
- 2023-05-04 US US18/312,561 patent/US12341776B2/en active Active
Cited By (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| KR102891300B1 (ko) * | 2025-03-28 | 2025-12-01 | 펜타시큐리티 주식회사 | 클라우드 환경 기반 머신 id 관리 방법 및 장치 |
Also Published As
| Publication number | Publication date |
|---|---|
| EP4245024A1 (en) | 2023-09-20 |
| EP4245024B1 (en) | 2024-08-14 |
| WO2022103681A1 (en) | 2022-05-19 |
| US12341776B2 (en) | 2025-06-24 |
| US20240129306A1 (en) | 2024-04-18 |
| JP7785076B2 (ja) | 2025-12-12 |
| JP2023551382A (ja) | 2023-12-08 |
| CN116569538A (zh) | 2023-08-08 |
| EP4245024C0 (en) | 2024-08-14 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| US12341776B2 (en) | Service to service communication and authentication via a central network mesh | |
| US10554622B2 (en) | Secure application delivery system with dial out and associated method | |
| US10116642B2 (en) | Identity management over multiple identity providers | |
| US9900301B2 (en) | Device management with tunneling | |
| JP7837968B2 (ja) | 分散ポッドベースシステム内でのサービスオーケストレーション | |
| EP3183666A1 (en) | Application programming interface wall | |
| US11310034B2 (en) | Systems and methods for securing offline data | |
| Lomotey et al. | Saas authentication middleware for mobile consumers of iaas cloud | |
| Nguyen et al. | Toward a unique IoT network via single sign-on protocol and message queue | |
| US20190199751A1 (en) | Shadow IT Discovery Using Traffic Signatures | |
| WO2016014370A1 (en) | Establishing secure computing devices for virtualization and administration | |
| US12309132B1 (en) | Continuous universal trust architecture and method | |
| Shukla et al. | Discerning the threats in cloud computing security | |
| US12563024B2 (en) | Continuous universal trust architecture and method |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| PA0105 | International application |
St.27 status event code: A-0-1-A10-A15-nap-PA0105 |
|
| PG1501 | Laying open of application |
St.27 status event code: A-1-1-Q10-Q12-nap-PG1501 |
|
| A201 | Request for examination | ||
| P11-X000 | Amendment of application requested |
St.27 status event code: A-2-2-P10-P11-nap-X000 |
|
| P13-X000 | Application amended |
St.27 status event code: A-2-2-P10-P13-nap-X000 |
|
| PA0201 | Request for examination |
St.27 status event code: A-1-2-D10-D11-exm-PA0201 |
|
| D13 | Search requested |
Free format text: ST27 STATUS EVENT CODE: A-1-2-D10-D13-SRH-X000 (AS PROVIDED BY THE NATIONAL OFFICE) |
|
| D13-X000 | Search requested |
St.27 status event code: A-1-2-D10-D13-srh-X000 |
|
| D21 | Rejection of application intended |
Free format text: ST27 STATUS EVENT CODE: A-1-2-D10-D21-EXM-PE0902 (AS PROVIDED BY THE NATIONAL OFFICE) |
|
| PE0902 | Notice of grounds for rejection |
St.27 status event code: A-1-2-D10-D21-exm-PE0902 |
|
| P11 | Amendment of application requested |
Free format text: ST27 STATUS EVENT CODE: A-2-2-P10-P11-NAP-X000 (AS PROVIDED BY THE NATIONAL OFFICE) |
|
| P11-X000 | Amendment of application requested |
St.27 status event code: A-2-2-P10-P11-nap-X000 |