IP Library Granted Patent US 11,363,022
Granted Patent B2
US 11,363,022 · App. 16/858,798 · Granted Jun 14, 2022

Use of DHCP for location information of a user device for automatic traffic forwarding

Inventors: Sreedhar Pampati (San Jose, CA); David Creedy (Los Gatos, CA); Vikas Mahajan (Ludhiana, IN)
Assignee: Zscaler, Inc.
H04L63/0884H04L61/1511H04L63/0272H04L63/0281H04L67/02H04L67/10H04L67/1002H04L67/125H04L67/16H04L67/28H04L67/2814H04L67/2819H04L69/162H04L61/6063
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,363,022
App. No.
16/858,798
Granted
Jun 14, 2022
Kind
B2
Abstract

Systems and methods implemented by an application executed on a user device for service discovery and connectivity include, responsive to joining a new network, performing a Dynamic Host Configuration Protocol (DHCP) operation to obtain network configuration parameters; receiving a DHCP message in response with the network configuration parameters; via an application executed on the user device for service discovery and connectivity analyzing data in the DHCP message to determine one or more forwarding profiles on the new network, wherein the one or more forwarding profiles are based on a location or trust of the new network; and automatically installing the determined one or more forwarding profiles.

Claims (36)

1. A non-transitory computer-readable medium storing computer-executable instructions that, when executed, cause a processor of a user device to perform the steps of:

responsive to joining a new network, performing a Dynamic Host Configuration Protocol (DHCP) operation to obtain network configuration parameters;

receiving a DHCP message in response with the network configuration parameters;

via an application executed on the user device for service discovery and connectivity, analyzing data in the DHCP message to determine one or more forwarding profiles on the new network, wherein the one or more forwarding profiles are based on a location or trust of the new network, and wherein the data includes one of a predetermined value indicative of a trusted network and absence of the predetermined value indicative of an untrusted network, the predetermined value is included or excluded by a DHCP server;

automatically installing the determined one or more forwarding profiles which determines how subsequent traffic is forwarded in the new network; and

enforcing policy via a cloud service based on the location or trust of the new network, wherein the location and trust are used to determine rules associated with the network.

2. The non-transitory computer-readable medium of claim 1 , wherein the computer-executable instructions that, when executed, cause the processor of the user device to further perform the steps of

forwarding traffic from one or more applications executed on the user device based on the one or more forwarding profiles.

3. The non-transitory computer-readable medium of claim 1 , wherein the data in the DHCP message is located in DHCP options.

4. The non-transitory computer-readable medium of claim 1 , wherein the one or more forwarding profiles include one of a tunnel, a connection to a proxy, and direct forwarding.

5. The non-transitory computer-readable medium of claim 1 , wherein the one or more forwarding profiles include secure forwarding on the untrusted network and unsecure forwarding on the trusted network.

6. The non-transitory computer-readable medium of claim 5 , wherein the data further includes a second predetermined value indicative of another trusted network, and wherein the one or more forwarding profiles include secure forwarding on the another trusted network.

7. A user device configured to execute an application for service discovery and connectivity, the user device comprising:

a network interface, a data store, and a processor communicatively coupled to one another; and

memory storing computer-executable instructions that, when executed, cause the processor to perform the steps of

responsive to joining a new network, perform a Dynamic Host Configuration Protocol (DHCP) operation to obtain network configuration parameters,

receive a DHCP message in response with the network configuration parameters,

via the application, analyze data in the DHCP message to determine one or more forwarding profiles on the new network, wherein the one or more forwarding profiles are based on a location or trust of the new network, and wherein the data includes one of a predetermined value indicative of a trusted network and absence of the predetermined value indicative of an untrusted network, the predetermined value is included or excluded by a DHCP server,

automatically install the determined one or more forwarding profiles which determines how subsequent traffic is forwarded in the new network, and

enforce policy via a cloud service based on the location or trust of the new network, wherein the location and trust are used to determine rules associated with the network.

8. The user device of claim 7 , wherein the computer-executable instructions that, when executed, cause the processor to further perform the steps of

forward traffic from one or more applications executed on the user device based on the one or more forwarding profiles.

9. The user device of claim 7 , wherein the data in the DHCP message is located in DHCP options.

10. The user device of claim 7 , wherein the one or more forwarding profiles include one of a tunnel, a connection to a proxy, and direct forwarding.

11. The user device of claim 7 , wherein the one or more forwarding profiles include secure forwarding on the untrusted network and unsecure forwarding on the trusted network.

12. The user device of claim 11 , wherein the data further includes a second predetermined value indicative of another trusted network, and wherein the one or more forwarding profiles include secure forwarding on the another trusted network.

13. A method implemented by a user device, comprising:

responsive to joining a new network, performing a Dynamic Host Configuration Protocol (DHCP) operation to obtain network configuration parameters;

receiving a DHCP message in response with the network configuration parameters;

via an application executed on the user device for service discovery and connectivity, analyzing data in the DHCP message to determine one or more forwarding profiles on the new network, wherein the one or more forwarding profiles are based on a location or trust of the new network, and wherein the data includes one of a predetermined value indicative of a trusted network and absence of the predetermined value indicative of an untrusted network, the predetermined value is included or excluded by a DHCP server;

automatically installing the determined one or more forwarding profiles which determines how subsequent traffic is forwarded in the new network; and

enforcing policy via a cloud service based on the location or trust of the new network, wherein the location and trust are used to determine rules associated with the network.

14. The method of claim 13 , further comprising

forwarding traffic from one or more applications executed on the user device based on the one or more forwarding profiles.

15. The method of claim 13 , wherein the data in the DHCP message is located in DHCP options.

16. The method of claim 13 , wherein the one or more forwarding profiles include one of a tunnel, a connection to a proxy, and direct forwarding.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 27, 2020
From: PAMPATI, SREEDHAR; CREEDY, DAVID; MAHAJAN, VIKAS
To: ZSCALER, INC.
Reel/Frame 052497/0742 →
Continuity (3)
Division 15900951 · Feb 21, 2018
Continuation 15153108 · May 12, 2016
Related Publication 20200259831A1 · Aug 13, 2020
Cited By (1)
US 12,647,418