IP Library Patent Application 16855223
Patent Application
App. No. 16/855,223

METHODS AND SYSTEMS OF A MACHINE ACCESS FIREWALL

Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US None
App. No.
16/855,223
Abstract

In one aspect, a computerized method for implementing a machine-identity firewall includes the step of providing a bi-directional Remote procedure call (RPC)-style channels within a uni-directional Hypertext Transfer Protocol Secure (HTTPS) tunnel. The method includes the step of implementing a proxy authentication and a stream-binder on behalf of an entity which cannot embed a native-tunnel endpoint, wherein a proxy end point of the proxy authentication converts a first authentication format to another authentication format and bridges a communication path to another communication path. The method includes the step of implementing a for security key management. The method includes the step of implementing a stream firewall, wherein the stream firewall provides access control on a segmented per-stream basis.

Claims (24)

1 . A computerized method for implementing a machine-identity firewall comprising:

providing a bi-directional Remote procedure call (RPC)-style channels within a uni-directional Hypertext Transfer Protocol Secure (HTTPS) tunnel;

implementing a proxy authentication and a stream-binder on behalf of an entity which cannot embed a native-tunnel endpoint, wherein a proxy end point of the proxy authentication converts a first authentication format to another authentication format and bridges a communication path to another communication path;

implementing a for security key management; and

implementing a stream firewall, wherein the stream firewall provides access control on a segmented per-stream basis.

2 . The computerized method of claim 1 , wherein the bi-directional RPC-style channels within the uni-directional HTTPS tunnel is used for a local connectivity.

3 . The computerized method of claim 1 , wherein the bi-directional RPC-style channels within the uni-directional HTTPS tunnel is used for a remote connectivity.

4 . The computerized method of claim 1 , wherein the tunnel end points are at each application and machine which is connected in a peer-to-peer format.

5 . The computerized method of claim 4 , wherein a peer-to-peer communication channel of the peer-to-peer format is used in a segmented implementation of the machine identity firewall or a scalable implementation of the machine identity firewall.

6 . The computerized method of claim 1 , wherein the segmented per-stream basis comprises a human access stream.

7 . The computerized method of claim 1 , wherein the segmented per-stream basis an application stream for each end device.

8 . A computerized system useful for implementing a machine-identity firewall processing comprising:

a processor;

a memory containing instructions when executed on the processor, causes the processor to perform operations that:

provide a bi-directional Remote procedure call (RPC)-style channels within a uni-directional Hypertext Transfer Protocol Secure (HTTPS) tunnel;

implement a proxy authentication and a stream-binder on behalf of an entity which cannot embed a native-tunnel endpoint, wherein a proxy end point of the proxy authentication converts a first authentication format to another authentication format and bridges a communication path to another communication path;

implement a for security key management; and

implement a stream firewall, wherein the stream firewall provides access control on a segmented per-stream basis.

9 . The computerized system of claim 8 , wherein the bi-directional RPC-style channels within the uni-directional HTTPS tunnel is used for a local connectivity.

10 . The computerized system of claim 8 , wherein the bi-directional RPC-style channels within the uni-directional HTTPS tunnel is used for a remote connectivity.

11 . The computerized system of claim 8 , wherein the tunnel end points are at each application and machine which is connected in a peer-to-peer format.

12 . The computerized system of claim 11 , wherein a peer-to-peer communication channel of the peer-to-peer format is used in a segmented implementation of the machine identity firewall or a scalable implementation of the machine identity firewall.

13 . The computerized system of claim 8 , wherein the segmented per-stream basis comprises a human access stream.

14 . The computerized system of claim 8 , wherein the segmented per-stream basis an application stream for each end device.

Assignments (8)
MERGER AND CHANGE OF NAME Recorded Dec 19, 2024
From: VIEW, INC.; PVMS MERGER SUB, INC.; VIEW OPERATING CORPORATION
To: VIEW OPERATING CORPORATION
Reel/Frame 069743/0586 →
CORRECTIVE ASSIGNMENT TO CORRECT THE CONVEYING PARTY/ASSIGNOR IS IOTIUM, INC PREVIOUSLY RECORDED AT REEL: 057810 FRAME: 0439. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Oct 21, 2021
From: IOTIUM, INC.
To: IOTIUM, INC.
Reel/Frame 057941/0403 →
EMPLOYEE CONFIDENTIALLY & INVENTIONS AGREEMENT Recorded Sep 17, 2021
From: VICTOR, RON
To: IOTIUM, INC.
Reel/Frame 057640/0443 →
AT-WILL EMPLOYMENT, CONFIDENTIAL INFORMATION, INVENTION ASSIGNMENT, AND ARBITRATION AGREEMENT Recorded Sep 17, 2021
From: RAJAGOPAL, SRIVATSAN
To: IOTIUM, INC.
Reel/Frame 057640/0464 →
AT-WILL EMPLOYMENT, CONFIDENTIAL INFORMATION, INVENTION ASSIGNMENT, AND ARBITRATION AGREEMENT Recorded Sep 17, 2021
From: TYAGI, DHAWAL
To: IOTIUM, INC.
Reel/Frame 057639/0572 →
MERGER Recorded Sep 9, 2021
From: VIEW MERGER SUB, INC.; IOTIUM, INC.
To: IOTIUM, INC.
Reel/Frame 057810/0439 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 9, 2021
From: NARASIMHAN, DHRUVA
To: IOTIUM SYSTEMS PRIVATE LIMITED
Reel/Frame 057439/0008 →
SERVICE AGREEMENT Recorded Sep 9, 2021
From: IOTIUM SYSTEMS PRIVATE LIMITED
To: IOTIUM, INC.
Reel/Frame 057454/0961 →