IP Library Granted Patent US 12,476,974
Granted Patent B2
US 12,476,974 · App. 17/138,482 · Granted Nov 18, 2025

Software defined network for creating a trusted network system

Inventor: Aaron Spradlin (Gilbert, AZ)
Assignee: Cleverdome, Inc
H04L63/102H04L41/20H04L45/64H04L63/0209H04L63/08H04L63/20H04L65/1073H04L63/10H04L63/18H04L2463/082
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,476,974
App. No.
17/138,482
Granted
Nov 18, 2025
Kind
B2
Abstract

Implementations of a software-defined network perimeter system may include: a security standards server configured to send an installer to a first client machine utilizing an endpoint protection server, a console server configured to route data across a dispersive network where the data is routed between the first client machine and second client machine, a controller configured to electronically couple the first and second client machines to network resources, a first and second endpoint device coupled to the first and second client machines, respectively, and a correlation server coupled to the security standards server, the console server, the controller, and the first and second endpoint devices where the correlation server is configured to match a physical or logical aspect of the client machine to a registration key included in a database of registration keys where the respective endpoint device provides access to the network resources after receiving the registration key.

Claims (14)

1 . A software-defined network perimeter system comprising:

a plurality of secure endpoint devices complying with a plurality of predefined security standards;

a console server coupled with each of the plurality of secure endpoint devices, wherein the console server is configured to route data across a dispersive network between the plurality of secure endpoint devices;

a correlation server coupled with the console server and configured to determine which one of the plurality of secure endpoint devices receives data from each other one of the plurality of secure endpoint devices across the dispersive network; and

a controller coupled with the correlation server, the controller configured to electronically couple the first secure endpoint device and a second secure endpoint device, from among the plurality of secure endpoint devices, with a plurality of network resources;

wherein the dispersive network includes one or more dynamically changing network paths that have data transmitted between the plurality of secure endpoint devices.

2 . The system of claim 1 , further comprising a security standards server coupled with the correlation server, the security standards server configured to send an installer to a first secure endpoint device utilizing an endpoint protection server, the first secure endpoint device configured to transmit the installer to a first client device.

3 . The system of claim 1 , further comprising a controller coupled with the correlation server, the controller configured to electronically couple the first secure endpoint device and a second secure endpoint device, from among the plurality of secure endpoint devices, with a plurality of network resources.

4 . The system of claim 1 , wherein each of the plurality of secure endpoint devices are coupled to each of a plurality of client machines, respectively, and each of the plurality of secure endpoint devices is configured to provide access to the plurality of network resources to a respective client machine of the plurality of client machines in response to receiving a registration key from the correlation server.

5 . The system of claim 1 , wherein the plurality of predefined security standards comprises an encryption standard.

6 . The system of claim 1 , wherein the plurality of predefined security standards comprises a plurality of device vulnerability tests.

7 . The system of claim 1 , wherein the plurality of predefined security standards comprises a security auditing standard.

8 . The system of claim 1 , wherein the console server is further configured to divide data transmitted over a network into a plurality of component transmissions, wherein each of the plurality of component transmissions is transmitted over independent paths over the dispersive network.

9 . The system of claim 1 , wherein the console server is further configured to randomize a plurality of data transmission paths over the dispersive network.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 30, 2020
From: SPRADLIN, AARON
To: CLEVERDOME, INC.
Reel/Frame 054780/0750 →
Continuity (3)
Continuation 16172779 · Oct 27, 2018
Provisional Application 62578300 · Oct 27, 2017
Related Publication 20210120007A1 · Apr 22, 2021
References Cited (24)
US 6826698B1 · Minkin · 2004 [cited by examiner]
US 7249374B1 · Lear · 2007 [cited by examiner]
US 7895348B2 · Twitchell, Jr. · 2011 [cited by applicant]
US 7987211B2 · Johnson et al. · 2011 [cited by applicant]
US 8955110B1 · Twitchell, Jr. · 2015 [cited by applicant]
US 9038151B1 · Chua et al. · 2015 [cited by applicant]
US 9088891B2 · Belton et al. · 2015 [cited by applicant]
US 9325719B2 · Lloyd · 2016 [cited by applicant]
US 9495194B1 · Twitchell, Jr. et al. · 2016 [cited by applicant]
US 9544287B1 · Sokolov et al. · 2017 [cited by applicant]
US 9769172B2 · Hunukumbure et al. · 2017 [cited by applicant]
US 20040102923A1 · Tracy · 2004 [cited by examiner]
US 20040103309A1 · Tracy · 2004 [cited by examiner]
US 20040186996A1 · Gibbs · 2004 [cited by examiner]
US 20060072583A1 · Sanda · 2006 [cited by examiner]
US 20060123465A1 · Ziegler · 2006 [cited by applicant]
US 20090049196A1 · Smith · 2009 [cited by examiner]
US 20150113589A1 · Lemaster · 2015 [cited by examiner]
US 20160128043A1 · Shuman · 2016 [cited by examiner]
US 20170214692A1 · Bathija et al. · 2017 [cited by applicant]
US 20170230350A1 · Enrique Salpico · 2017 [cited by applicant]
WO 2017079359A1 · 2017 [cited by applicant]
UCF/STIG Viewer, The Application Must Authenticate All Network Connected Endpoint Devices Before Establishing Any Connection, https://www.stigviewer.com/stig/application_security_and_development/2017-03-20/finding/V-695… [cited by applicant]
International Search Report and Written Opinion, PCT Patent Application No. PCT/US2018/057889, Jan. 16, 2019, 8 pages. [cited by applicant]