IP Library › Granted Patent US 11,799,828
Granted Patent B1
US 11,799,828 · App. 17/954,301 · Granted Oct 24, 2023

Customized filtering of transmissions from a device

Inventors: Juta Gurinaviciute (Vilnius, LT); Carlos Eliseo Salas Lumbreras (Vilnius, LT)
Assignee: UAB 360 IT
H04L63/0227H04L63/0236
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,799,828
App. No.
17/954,301
Granted
Oct 24, 2023
Kind
B1
Abstract

A method including receiving, by a security device, registration information indicating groups to which user devices belong; receiving, by the security device, policy information indicating respective filtering policies for each group of user devices; receiving, from a user device, a transmission packet for transmission to a destination device over an open Internet; determining, by the security device based on the registration information, the group of user devices to which the user device belongs; determining, by the security device based on the policy information and on determining the group of user devices to which the user device belongs, whether the user device is permitted to transmit the transmission packet to the destination device; and selectively blocking, by the security device, transmission of the transmission packet on determining whether the user device is permitted to transmit the transmission packet to the destination device is disclosed. Various other aspects are contemplated.

Claims (40)

1. A security device, comprising:

a memory; and

a processor communicatively coupled to the memory, the memory and the processor being configured to:

receive registration information indicating groups to which user devices belong;

receive policy information indicating respective filtering policies for each group of user devices;

receive, from a user device, a transmission packet for transmission to a destination device over an open internet;

determine, based at least in part on the registration information, the group of user devices to which the user device belongs;

determine, based at least in part on the policy information and on determining the group of user devices to which the user device belongs, whether the user device is permitted to transmit the transmission packet to the destination device over the open internet; and

selectively block transmission of the transmission packet based at least in part on determining whether the user device is permitted to transmit the transmission packet to the destination device over the open internet.

2. The security device of claim 1 , wherein, to determine whether the user device is permitted to transmit the transmission packet, the memory and the processor are configured to determine whether the user device is permitted to transmit the transmission packet to an internet protocol (IP) address associated with the destination device.

3. The security device of claim 1 , wherein, to determine whether the user device is permitted to transmit the transmission packet, the memory and the processor are configured to determine whether the user device is permitted to transmit the transmission packet to a port related to an internet protocol (IP) address associated with the destination device.

4. The security device of claim 1 , wherein, to determine whether the user device is permitted to transmit the transmission packet, the memory and the processor are configured to determine whether the user device is permitted to utilize a protocol utilized by the user device to transmit the transmission packet.

5. The security device of claim 1 , wherein, to determine whether the user device is permitted to transmit the transmission packet, the memory and the processor are configured to determine whether the user device is permitted to utilize a web application utilized by the user device to transmit the transmission packet.

6. The security device of claim 1 , wherein, to selectively block transmission of the transmission packet, the memory and the processor are configured to transmit the transmission packet to the destination device on the open internet based at least in part on determining that the user device is permitted to transmit the transmission packet.

7. The security device of claim 1 , wherein, to selectively block transmission of the transmission packet, the memory and the processor are configured to block transmission of the transmission packet based at least in part on determining that the user device is not permitted to transmit the transmission packet.

8. A method, comprising:

receiving, by a security device, registration information indicating groups to which user devices belong;

receiving, by the security device, policy information indicating respective filtering policies for each group of user devices;

receiving, from a user device, a transmission packet for transmission to a destination device over an open internet;

determining, by the security device based at least in part on the registration information, the group of user devices to which the user device belongs;

determining, by the security device based at least in part on the policy information and on determining the group of user devices to which the user device belongs, whether the user device is permitted to transmit the transmission packet to the destination device over the open internet; and

selectively blocking, by the security device, transmission of the transmission packet based at least in part on determining whether the user device is permitted to transmit the transmission packet to the destination device over the open internet.

9. The method of claim 8 , wherein determining whether the user device is permitted to transmit the transmission packet includes the security device determining whether the user device is permitted to transmit the transmission packet to an internet protocol (IP) address associated with the destination device.

10. The method of claim 8 , wherein determining whether the user device is permitted to transmit the transmission packet includes the security device determining whether the user device is permitted to transmit the transmission packet to a port related to an internet protocol (IP) address associated with the destination device.

11. The method of claim 8 , wherein determining whether the user device is permitted to transmit the transmission packet includes the security device determining whether the user device is permitted to utilize a protocol utilized by the user device to transmit the transmission packet.

12. The method of claim 8 , wherein determining whether the user device is permitted to transmit the transmission packet includes the security device determining whether the user device is permitted to utilize a web application utilized by the user device to transmit the transmission packet.

13. The method of claim 8 , wherein selectively blocking transmission of the transmission packet includes transmitting the transmission packet to the destination device on the open internet based at least in part on determining that the user device is permitted to transmit the transmission packet.

14. The method of claim 8 , wherein selectively blocking transmission of the transmission packet includes blocking transmission of the transmission packet based at least in part on determining that the user device is not permitted to transmit the transmission packet.

15. A non-transitory computer-readable medium configured to store instructions, which when executed by a processor associated with a security device, configure the processor to:

receive registration information indicating groups to which user devices belong;

receive policy information indicating respective filtering policies for each group of user devices;

receive, from a user device, a transmission packet for transmission to a destination device over an open internet;

determine, based at least in part on the registration information, the group of user devices to which the user device belongs;

determine, based at least in part on the policy information and on determining the group of user devices to which the user device belongs, whether the user device is permitted to transmit the transmission packet to the destination device over the open internet; and

selectively block transmission of the transmission packet based at least in part on determining whether the user device is permitted to transmit the transmission packet to the destination device over the open internet.

16. The non-transitory computer-readable medium of claim 15 , wherein, to determine whether the user device is permitted to transmit the transmission packet, the processor is configured to determine whether the user device is permitted to transmit the transmission packet to an internet protocol (IP) address associated with the destination device.

17. The non-transitory computer-readable medium of claim 15 , wherein, to determine whether the user device is permitted to transmit the transmission packet, the processor is configured to determine whether the user device is permitted to transmit the transmission packet to a port related to an internet protocol (IP) address associated with the destination device.

18. The non-transitory computer-readable medium of claim 15 , wherein, to determine whether the user device is permitted to transmit the transmission packet, the processor is configured to determine whether the user device is permitted to utilize a protocol utilized by the user device to transmit the transmission packet.

19. The non-transitory computer-readable medium of claim 15 , wherein, to determine whether the user device is permitted to transmit the transmission packet, the processor is configured to determine whether the user device is permitted to utilize a web application utilized by the user device to transmit the transmission packet.

20. The non-transitory computer-readable medium of claim 15 , wherein, to selectively block transmission of the transmission packet, the processor is configured to transmit the transmission packet to the destination device on the open internet based at least in part on determining that the user device is permitted to transmit the transmission packet.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 14, 2026
From: UAB 360 IT
To: 720 IT, UAB
Reel/Frame 074330/0675 →
Continuity (1)
Continuation 17952295 · Sep 25, 2022