IP Library › Granted Patent US 11,611,533
Granted Patent B1
US 11,611,533 · App. 17/952,295 · Granted Mar 21, 2023

Customized filtering of transmissions from a device

Inventors: Juta Gurinaviciute (Vilnius, LT); Carlos Eliseo Salas Lumbreras (Vilnius, LT)
Assignee: UAB 360 IT
H04L63/0227H04L63/0236
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,611,533
App. No.
17/952,295
Granted
Mar 21, 2023
Kind
B1
Abstract

A method including receiving, from a user device, a transmission packet for communication to a destination device; determining, based on an IP address of the destination device, whether the user device is permitted to transmit to the IP address; determining, based on determining that the user device is permitted to transmit to the IP address, whether the user device is permitted to transmit to a port associated with the IP address; determining, based on determining that the user device is permitted to transmit to the port, whether the user device is permitted to utilize a protocol utilized by the user device to transmit the transmission packet; and determining, based on determining that the user device is permitted to utilize the protocol, whether the user device is permitted to utilize a web application utilized by the user device to transmit the transmission packet is disclosed. Various other aspects are contemplated.

Claims (41)

1. A security device, comprising:

a memory; and

a processor communicatively coupled to the memory, the memory and the processor being configured to:

receive, from a user device that is in a private network, a transmission packet for communication to a destination device over an open internet;

determine, based at least in part on an internet protocol (IP) address associated with the destination device, whether the user device is permitted to transmit the transmission packet to the IP address over the open internet;

determine, based at least in part on determining that the user device is permitted to transmit the transmission packet to the IP address, whether the user device is permitted to transmit the transmission packet to a port associated with the IP address;

determine, based at least in part on determining that the user device is permitted to transmit the transmission packet to the port, whether the user device is permitted to utilize a protocol utilized by the user device to transmit the transmission packet; and

determine, based at least in part on determining that the user device is permitted to utilize the protocol, whether the user device is permitted to utilize a web application utilized by the user device to transmit the transmission packet.

2. The security device of claim 1 , wherein, to determine whether the user device is permitted to transmit the transmission packet to the IP address, the memory and the processor are configured to determine whether the IP address falls within the range of IP addresses to which the user device is permitted to transmit.

3. The security device of claim 1 , wherein, to determine whether the user device is permitted to transmit the transmission packet to the port, the memory and the processor are configured to determine whether the port falls with a range of ports to which the user device is permitted to transmit.

4. The security device of claim 1 , wherein, to determine whether the user device is permitted to utilize the protocol to transmit the transmission packet, the memory and the processor are configured to determine that the protocol matches a stored protocol that the user device is permitted to utilize to transmit.

5. The security device of claim 1 , wherein, to determine whether the user device is permitted to utilize the web application, the memory and the processor are configured to determine that a signature included in the transmission packet matches a signature associated with an application that the user device is permitted to utilize to transmit.

6. The security device of claim 1 , wherein the memory and the processor are configured to:

transmit, based at least in part on determining that the user device is permitted to utilize the web application, the transmission packet to the destination device over the open internet.

7. The security device of claim 1 , wherein the memory and the processor are configured to: determine the IP address based at least in part on domain information indicated in the transmission packet.

8. A method, comprising:

receiving, by a security device from a user device that is in a private network, a transmission packet for communication to a destination device over an open internet;

determining, by the security device based at least in part on an internet protocol (IP) address associated with the destination device, whether the user device is permitted to transmit the transmission packet to the IP address over the open internet;

determining, by the security device based at least in part on determining that the user device is permitted to transmit the transmission packet to the IP address, whether the user device is permitted to transmit the transmission packet to a port associated with the IP address;

determining, by the security device based at least in part on determining that the user device is permitted to transmit the transmission packet to the port, whether the user device is permitted to utilize a protocol utilized by the user device to transmit the transmission packet; and

determining, by the security device based at least in part on determining that the user device is permitted to utilize the protocol, whether the user device is permitted to utilize a web application utilized by the user device to transmit the transmission packet.

9. The method of claim 8 , wherein determining whether the user device is permitted to transmit the transmission packet to the IP address includes the security device determining whether the IP address falls with a range of IP addresses to which the user device is permitted to transmit.

10. The method of claim 8 , determining whether the user device is permitted to transmit the transmission packet to the port includes the security device determining whether the port falls with a range of ports to which the user device is permitted to transmit.

11. The method of claim 8 , wherein determining whether the user device is permitted to utilize the protocol to transmit the transmission packet includes the security device determining that the protocol matches a stored protocol that the user device is permitted to utilize to transmit.

12. The method of claim 8 , wherein determining whether the user device is permitted to utilize the web application includes the security device determining that a signature included in the transmission packet matches a signature associated with an application that the user device is permitted to utilize to transmit.

13. The method of claim 8 , further comprising:

transmitting, by the security device based at least in part on determining that the user device is permitted to utilize the web application, the transmission packet to the destination device over the open internet.

14. The method of claim 8 , further comprising:

determining, by the security device, the IP address based at least in part on domain information indicated in the transmission packet.

15. A non-transitory computer-readable medium configured to store instructions, which when executed by a processor associated with a security device, configure the processor to:

receive, from a user device that is in a private network, a transmission packet for communication to a destination device over an open internet;

determine, based at least in part on an internet protocol (IP) address associated with the destination device, whether the user device is permitted to transmit the transmission packet to the IP address over the open internet;

determine, based at least in part on determining that the user device is permitted to transmit the transmission packet to the IP address, whether the user device is permitted to transmit the transmission packet to a port associated with the IP address;

determine, based at least in part on determining that the user device is permitted to transmit the transmission packet to the port, whether the user device is permitted to utilize a protocol utilized by the user device to transmit the transmission packet; and

determine, based at least in part on determining that the user device is permitted to utilize the protocol, whether the user device is permitted to utilize a web application utilized by the user device to transmit the transmission packet.

16. The non-transitory computer-readable medium of claim 15 , wherein, to determine whether the user device is permitted to transmit the transmission packet to the IP address, the processor is configured to determine whether the IP address falls within the range of IP addresses to which the user device is permitted to transmit.

17. The non-transitory computer-readable medium of claim 15 , wherein, to determine whether the user device is permitted to transmit the transmission packet to the port, the processor is configured to determine whether the port falls with a range of ports to which the user device is permitted to transmit.

18. The non-transitory computer-readable medium of claim 15 , wherein, to determine whether the user device is permitted to utilize the protocol to transmit the transmission packet, the processor is configured to determine that the protocol matches a stored protocol that the user device is permitted to utilize to transmit.

19. The non-transitory computer-readable medium of claim 15 , wherein, to determine whether the user device is permitted to utilize the web application, the processor is configured to determine that a signature included in the transmission packet matches a signature associated with an application that the user device is permitted to utilize to transmit.

20. The non-transitory computer-readable medium of claim 15 , wherein the memory and the processor are configured to:

transmit, based at least in part on determining that the user device is permitted to utilize the web application, the transmission packet to the destination device over the open internet.

Assignments (2)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 14, 2026
From: UAB 360 IT
To: 720 IT, UAB
Reel/Frame 074330/0675 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 14, 2023
From: GURINAVICIUTE, JUTA; LUMBRERAS, CAROLOS ELISEO SALAS
To: UAB 360 IT
Reel/Frame 062697/0620 →