IP Library Granted Patent US 10,305,935
Granted Patent B2
US 10,305,935 · App. 15/275,982 · Granted May 28, 2019

Methods and systems for enhancing cyber security in networks

Inventor: Michael J. Chen (Florham Park, NJ)
Assignee: LGS Innovations LLC
H04L63/20H04L12/4641H04L12/4679H04L41/22H04L63/0236H04L63/0272H04L63/083H04L63/0823H04L63/0876H04L67/10H04L67/1002H04W4/70H04W12/08
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,305,935
App. No.
15/275,982
Granted
May 28, 2019
Kind
B2
Abstract

The present application is directed a computer-implemented method for enhancing security on a network. The method includes a step of receiving, from user equipment on the network, information including a source IP address and a destination IP address. The method also includes a step of receiving, from a VPN service provider, credentials of a VPN server. The method also includes a step of creating a policy such that traffic associated with the information of the user equipment is routed to the VPN server. The method further includes a step of sending the traffic of the user equipment to the VPN server. The application is also directed to a system and method for securing web traffic on a network.

Claims (54)

1. A computer-implemented method for enhancing security and preventing cyber-attacks on a network comprising:

receiving, from a user equipment on the network, information including a source IP address and a destination IP address;

receiving, from a VPN service provider, credentials of a VPN server;

selecting the VPN server based upon the traffic-type of the user equipment;

creating, via a graphical user interface, a policy to prevent cyber-attacks such that traffic associated with the information of the user equipment is routed to the VPN server;

sending the traffic of the user equipment to the VPN server;

coordinating the created policy with the router on the network, with the traffic being sent to the VPN server via the router;

automatically sending, after a predetermined condition is met, a request to the VPN service provider to transmit a second VPN server;

receiving the second VPN server; and

redirecting the traffic of the user equipment from the first VPN server to the second VPN server,

wherein the VPN server terminates when the predetermined condition is met,

wherein the IP addresses of the first and second VPNs are different, and

wherein the method is performed by a policy controller embedded on the router.

2. The method of claim 1 , further comprising:

sending a request to the VPN service provider to provide the VPN server,

wherein the request includes the information of the user equipment.

3. The method of claim 1 , wherein the predetermined condition is selected from the group consisting of activity-type, traffic-type, load balancing, and combinations thereof.

4. The method of claim 3 , wherein the traffic-type is selected from the group consisting of video, web, voice and combinations thereof.

5. The method of claim 1 , wherein the network is an enterprise network for a company.

6. A computer-implemented system for enhancing security and preventing cyber-attacks of web traffic on a network comprising:

a non-transitory memory having instructions stored thereon for dynamically managing the web traffic of user equipment on the network;

a display including a graphical user interface; and

a processor, operably coupled to the memory, the processor configured to execute the instructions of:

receiving, from the user equipment, information including a source IP address and a destination IP address;

receiving, from a virtual private network (VPN) service provider, credentials for a VPN server; and

creating, via the graphical user interface, a policy to prevent cyber-attacks such that traffic associated with the received information of the user equipment is routed to the VPN server;

selecting the VPN server based upon the traffic-type of the user equipment;

coordinating the created policy with a router on the network, with the traffic being sent to the VPN server via the router;

automatically sending, after a predetermined condition is met, a request to the VPN service provider to transmit a second VPN server;

receiving the second VPN server; and

redirecting the traffic of the user equipment from the first VPN server to the second VPN server,

wherein the VPN server terminates when the predetermined condition is met, and

wherein the processor is located in a policy controller embedded on the router.

7. The system of claim 6 , wherein the processor is further configured to execute the instructions of:

configuring the router with the policy; and

authorizing the traffic of the user equipment be sent through the configured router to the VPN server.

8. The system of claim 6 , wherein the predetermined condition is selected from the group consisting of activity-type, traffic-type, load balancing, and combinations thereof.

9. The system of claim 8 , wherein the traffic-type is selected from the group consisting of video, web, voice and combinations thereof.

10. A system for securing web traffic to prevent cyber-attacks on a network comprising:

a policy controller including:

a non-transitory memory having instructions stored thereon for dynamically managing the web traffic of user equipment on the network;

a display including a graphical user interface; and

a processor, operably coupled to the memory, the processor configured to execute the instructions of:

receiving, from the user equipment, information including a source IP address and a destination IP address;

receiving, from a virtual private network (VPN) service provider, credentials for a VPN server;

selecting the VPN server based upon the traffic-type of the user equipment;

creating, via the graphical user interface, a policy to prevent cyber-attacks such that traffic associated with the received information of the user equipment is routed to the VPN server;

coordinating the created policy with a router on the network, with the traffic being sent to the VPN server via the router;

automatically sending, after a predetermined condition is met, a request to the VPN service provider to transmit a second VPN server;

receiving the second VPN server; and

redirecting the traffic of the user equipment from the first VPN server to the second VPN server, with the VPN server terminating when the predetermined condition is met; and

the router operably coupled to the policy controller embedded thereon for directing traffic of the user equipment to the VPN server.

11. The system according to claim 10 , further comprising:

user equipment operably coupled to the policy controller and the router, configured to access the internet via the VPN server.

Assignments (4)
NOTICE OF GRANT OF SECURITY INTEREST IN PATENTS Recorded Jan 22, 2025
From: CACI LGS INNOVATIONS LLC
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 069987/0444 →
CHANGE OF NAME Recorded Nov 4, 2024
From: LGS INNOVATIONS LLC
To: CACI LGS INNOVATIONS LLC
Reel/Frame 069292/0991 →
NOTICE OF GRANT OF SECURITY INTEREST IN PATENTS Recorded May 29, 2019
From: LGS INNOVATIONS LLC
To: BANK OF AMERICA, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 049312/0843 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 28, 2016
From: CHEN, MICHAEL J.
To: LGS INNOVATIONS LLC
Reel/Frame 040158/0917 →
Continuity (2)
Provisional Application 62347705 · Jun 9, 2016
Related Publication 20170359380A1 · Dec 14, 2017