IP Library Granted Patent US 9,049,244
Granted Patent B2
US 9,049,244 · App. 13/451,353 · Granted Jun 2, 2015

Registering for internet-based proxy services

Inventors: Matthew Browning Prince (San Francisco, CA); Lee Hahn Holloway (Santa Cruz, CA); Michelle Marie Zatlyn (San Francisco, CA)
Assignee: CloudFlare, Inc.
H04L67/2814H04L41/069H04L61/1511H04L63/0281H04L67/1034H04L67/2842H04L69/40
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,049,244
App. No.
13/451,353
Granted
Jun 2, 2015
Kind
B2
Abstract

A domain name is received from a customer. DNS is queried for multiple possible subdomains of the domain. For each subdomain that resolves, information about that subdomain's corresponding resource record is stored in a zone file that also includes a resource record for the domain name. The zone file is presented to the customer. A designation from the customer of which of the resource records are to point to an IP address of a proxy server is received. The resource records are modified according to the input of the customer and the zone file is propagated including the modified resource records.

Claims (53)

1. A method, comprising:

receiving a domain name from a customer;

querying DNS (Domain Name System) for each of a plurality of possible subdomains of the domain;

for each subdomain that resolves, storing information about its corresponding resource record in a zone file that also includes a resource record for the domain name;

presenting the zone file to the customer;

receiving a designation from the customer of which of the resource records are to be protected by a proxy server;

automatically modifying those resource records designated by the customer to point to an IP address of the proxy server; and

propagating the zone file including the modified resource records.

2. The method of claim 1 , wherein prior to propagating the zone file, performing the following:

providing an identification of a plurality of name servers; and

determining that the plurality of name servers have been modified to be authoritative for the domain.

3. The method of claim 1 , wherein the plurality of possible subdomains are common across a plurality of domains.

4. The method of claim 3 , wherein the plurality of possible subdomains include www, blog, web, and mail.

5. The method of claim 1 , wherein the proxy server is part of a cloud-based proxy service.

6. The method of claim 1 , further comprising:

determining that at least one of the plurality of possible subdomains of the domain has Secure Sockets Layer (SSL) enabled; and

generating an SSL certificate for that at least one of the plurality of subdomains and installing that SSL certificate.

7. A non-transitory machine-readable storage medium that provides instructions that, when executed by a processor, cause said processor to perform operations comprising:

receiving a domain name from a customer;

querying DNS (Domain Name System) for each of a plurality of possible subdomains of the domain;

for each subdomain that resolves, storing information about its corresponding resource record in a zone file that also includes a resource record for the domain name;

presenting the zone file to the customer;

receiving a designation from the customer of which of the resource records are to be protected by a proxy server;

automatically modifying those resource records designated by the customer to point to an IP address of the proxy server; and

propagating the zone file including the modified resource records.

8. The non-transitory machine-readable storage medium of claim 7 , wherein the non-transitory machine-readable storage medium further provides instructions that, when executed by the processor, cause said processor to perform operations prior to propagating the zone file including the following:

providing an identification of a plurality of name servers; and

determining that the plurality of name servers have been modified to be authoritative for the domain.

9. The non-transitory machine-readable storage medium of claim 7 , wherein the plurality of possible subdomains are common across a plurality of domains.

10. The non-transitory machine-readable storage medium of claim 9 , wherein the plurality of possible subdomains include www, blog, web, and mail.

11. The non-transitory machine-readable storage medium of claim 7 , wherein the proxy server is part of a cloud-based proxy service.

12. The non-transitory machine-readable storage medium of claim 7 , wherein the non-transitory machine-readable storage medium further provides instructions that, when executed by a processor, cause said processor to further perform the following operations:

determining that at least one of the plurality of possible subdomains of the domain has Secure Sockets Layer (SSL) enabled; and

generating an SSL certificate for that at least one of the plurality of subdomains and installing that SSL certificate.

13. An apparatus, comprising:

a set of one or more processors;

a set of one or more non-transitory computer-readable storage mediums storing instructions, that when executed by the set of processors, cause the set of processors to perform the following operations:

receive a domain name from a customer;

query DNS (Domain Name System) for each of a plurality of possible subdomains of the domain;

for each subdomain that resolves, store information about its corresponding resource record in a zone file that also includes a resource record for the domain name;

present the zone file to the customer;

receive a designation from the customer of which of the resource records are to be protected by a proxy server;

automatically modify those resource records designated by the customer to point to an IP address of the proxy server; and

propagate the zone file including the modified resource records.

14. The apparatus of claim 13 , wherein the set of non-transitory computer-readable storage mediums further stores instructions, that when executed by the set of processors, cause the set of processors to perform the following operations prior to propagating the zone file:

provide an identification of a plurality of name servers; and

determine that the plurality of name servers have been modified to be authoritative for the domain.

15. The apparatus of claim 13 , wherein the plurality of possible subdomains are common across a plurality of domains.

16. The apparatus of claim 15 , wherein the plurality of possible subdomains include www, blog, web, and mail.

17. The apparatus of claim 13 , wherein the proxy server is part of a cloud-based proxy service.

18. The apparatus of claim 13 , wherein the set of non-transitory machine-readable storage mediums further stores instructions that, when executed by the set of processors, cause said set of processors to further perform the following operations:

determine that at least one of the plurality of possible subdomains of the domain has Secure Sockets Layer (SSL) enabled; and

generate an SSL certificate for that at least one of the plurality of subdomains and install that SSL certificate.

Assignments (2)
SECURITY INTEREST Recorded May 20, 2024
From: CLOUDFLARE, INC.
To: CITIBANK, N.A.
Reel/Frame 067472/0246 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 26, 2015
From: PRINCE, MATTHEW BROWNING; HOLLOWAY, LEE HAHN; ZATLYN, MICHELLE MARIE
To: CLOUDFLARE, INC.
Reel/Frame 035042/0507 →
Continuity (2)
Provisional Application 61477120 · Apr 19, 2011
Related Publication 20120324113A1 · Dec 20, 2012