IP Library Granted Patent US 12,580,906
Granted Patent B2
US 12,580,906 · App. 18/216,378 · Granted Mar 17, 2026

Interface for creating a certificate-enforced network for devices in a logical group

Inventors: Georgi Muleshkov (Sofia, BG); Milen Donchev (Sofia, BG); Rumen Georgiev (Sofia, BG); Lyubomir Dimitrov (Sofia, BG); Steven Murhammer (Atlanta, GA)
Assignee: Omnissa, LLC
H04L63/0823H04L63/0876
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,580,906
App. No.
18/216,378
Granted
Mar 17, 2026
Kind
B2
Abstract

A single graphical user interface (“GUI”) for creating a certificate-enforced network for devices in a logical group is provided. The GUI can include a certificate upload tool for uploading a security certificate file for a new network, a logical group selection tool for selecting a logical group of computing devices to add to the network, and a network configuration tool for configuring settings for the network. An application of the GUI can send the security certificate file to a third-party network configuration manager that responds with a certificate identifier (“ID”). Without additional user action required, the application can input the certificate ID into a request to create the network that includes the network settings and the logical group selection. The third-party network configuration manager can then create the network using the information provided by the application.

Claims (70)

1 . A method for providing a graphical user interface (“GUI”) for creating a certificate-enforced network for computing devices in a logical group, comprising:

providing, in the GUI, a security certificate upload tool, a logical group selection tool, and a network configuration tool;

receiving, at the security certificate upload tool of the GUI, a security certificate;

receiving, at the logical group selection tool of the GUI, a selection of a logical group;

receiving, at the network configuration tool of the GUI, network settings for a network;

sending, to a server, the security certificate;

receiving, from the server, a certificate identifier (“ID”) corresponding to the security certificate;

in response to receiving the certificate ID and without user input, sending, to the server, a request for creating the network, the request including the network settings, the selection of the logical group, and the certificate ID, wherein the network is created by the server based on the network settings and the security certificate, wherein the network is a virtual private cloud that includes one or more virtual machines managed by the server and one or more endpoint computing devices that are not managed by the server, wherein the server provides the security certificate to the one or more virtual machines in the virtual private cloud; and

transmitting, to the one or more endpoint computing devices, the security certificate, wherein the one or more endpoint computing devices use the security certificate to communicate on the virtual private cloud.

2 . The method of claim 1 , further comprising:

providing, in the GUI, a security certificate selection tool;

populating the security certificate selection tool with a list of security certificates uniquely associated with the selected logical group; and

prior to sending the security certificate to the server, receiving a selection of the security certificate at the security certificate selection tool.

3 . The method of claim 1 , further comprising storing the received certificate ID at a local cache, wherein the certificate ID is inserted into the request for creating the network from the local cache.

4 . The method of claim 1 , wherein the security certificate upload tool includes an option to select a previously uploaded security certificate that is unique to the selected logical group.

5 . The method of claim 1 , wherein providing the logical group selection tool comprises:

requesting, from the server, a list of logical groups;

receiving the list of logical groups from the server; and

populating a selectable list of the logical groups in the GUI.

6 . The method of claim 1 , further comprising:

storing the received security certificate at a local storage device; and

inserting a reference to the security certificate into a security certificate selection tool in the GUI.

7 . The method of claim 1 , wherein the server is a cloud-based computing device manager, and the network is created within a cloud-based computing system.

8 . A non-transitory, computer-readable medium containing instructions that, when executed by a hardware-based processor, causes the processor to perform stages for providing a graphical user interface (“GUI”) for creating a certificate-enforced network for computing devices in a logical group, the stages comprising:

providing, in the GUI, a security certificate upload tool, a logical group selection tool, and a network configuration tool;

receiving, at the security certificate upload tool of the GUI, a security certificate;

receiving, at the logical group selection tool of the GUI, a selection of a logical group;

receiving, at the network configuration tool of the GUI, network settings for a network;

sending, to a server, the security certificate;

receiving, from the server, a certificate identifier (“ID”) corresponding to the security certificate;

in response to receiving the certificate ID and without user input, sending, to the server, a request for creating the network, the request including the network settings, the first selection of the logical group, and the certificate ID, wherein the network is created by the server based on the network settings and the security certificate, wherein the network is a virtual private cloud that includes one or more virtual machines managed by the server and one or more endpoint computing devices that are not managed by the server, wherein the server provides the security certificate to the one or more virtual machines in the virtual private cloud; and

transmitting, to the one or more endpoint computing devices, the security certificate, wherein the one or more endpoint computing devices use the security certificate to communicate on the virtual private cloud.

9 . The non-transitory, computer-readable medium of claim 8 , the stages further comprising:

providing, in the GUI, a security certificate selection tool;

populating the security certificate selection tool with a list of security certificates uniquely associated with the selected logical group; and

prior to sending the security certificate to the server, receiving a selection of the security certificate at the security certificate selection tool.

10 . The non-transitory, computer-readable medium of claim 8 , the stages further comprising storing the received certificate ID at a local cache, wherein the certificate ID is inserted into the request for creating the network from the local cache.

11 . The non-transitory, computer-readable medium of claim 8 , wherein the security certificate upload tool includes an option to select a previously uploaded security certificate that is unique to the selected logical group.

12 . The non-transitory, computer-readable medium of claim 8 , wherein providing the logical group selection tool comprises:

requesting, from the server, a list of logical groups;

receiving the list of logical groups from the server; and

populating a selectable list of the logical groups in the GUI.

13 . The non-transitory, computer-readable medium of claim 8 , the stages further comprising:

storing the received security certificate at a local storage device; and

inserting a reference to the security certificate into a security certificate selection tool in the GUI.

14 . The non-transitory, computer-readable medium of claim 8 , wherein the server is a cloud-based computing device manager, and the network is created within a cloud-based computing system.

15 . A system for providing a graphical user interface (“GUI”) for creating a certificate-enforced network for computing devices in a logical group, comprising:

a memory storage including a non-transitory, computer-readable medium comprising instructions; and

a hardware-based processor that executes the instructions to carry out stages comprising:

providing, in the GUI, a security certificate upload tool, a logical group selection tool, and a network configuration tool;

receiving, at the security certificate upload tool of the GUI, a security certificate;

receiving, at the logical group selection tool of the GUI, a selection of a logical group;

receiving, at the network configuration tool of the GUI, network settings for a network;

sending, to a server, the security certificate;

receiving, from the server, a certificate identifier (“ID”) corresponding to the security certificate;

in response to receiving the certificate ID and without user input, sending, to the server, a request for creating the network, the request including the network settings, the selection of the logical group, and the certificate ID, wherein the network is created by the server based on the network settings and the security certificate, wherein the network is a virtual private cloud that includes one or more virtual machines managed by the server and one or more endpoint computing devices that are not managed by the server, wherein the server provides the security certificate to the one or more virtual machines in the virtual private cloud; and

transmitting, to the one or more endpoint computing devices, the security certificate, wherein the one or more endpoint computing devices use the security certificate to communicate on the virtual private cloud.

16 . The system of claim 15 , the stages further comprising:

providing, in the GUI, a security certificate selection tool;

populating the security certificate selection tool with a list of security certificates uniquely associated with the selected logical group; and

prior to sending the security certificate to the server, receiving a selection of the security certificate at the security certificate selection tool.

17 . The system of claim 15 , the stages further comprising storing the received certificate ID at a local cache, wherein the certificate ID is inserted into the request for creating the network from the local cache.

18 . The system of claim 15 , wherein the security certificate upload tool includes an option to select a previously uploaded security certificate that is unique to the selected logical group.

19 . The system of claim 15 , wherein providing the logical group selection tool comprises:

requesting, from the server, a list of logical groups;

receiving the list of logical groups from the server; and

populating a selectable list of the logical groups in the GUI.

20 . The system of claim 15 , the stages further comprising:

storing the received security certificate at a local storage device; and

inserting a reference to the security certificate into a security certificate selection tool in the GUI.

Assignments (4)
PATENT ASSIGNMENT Recorded Aug 5, 2024
From: VMWARE LLC
To: OMNISSA, LLC
Reel/Frame 068327/0365 →
SECURITY INTEREST Recorded Jul 3, 2024
From: OMNISSA, LLC
To: UBS AG, STAMFORD BRANCH
Reel/Frame 068118/0004 →
CHANGE OF NAME Recorded Apr 25, 2024
From: VMWARE, INC.
To: VMWARE LLC
Reel/Frame 067239/0402 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 29, 2023
From: MULESHKOV, GEORGI; DONCHEV, MILEN; GEORGIEV, RUMEN; DIMITROV, LYUBOMIR; MURHAMMER, STEVEN
To: VMWARE, INC.
Reel/Frame 064118/0107 →
Continuity (1)
Related Publication 20250007900A1 · Jan 2, 2025
References Cited (4)
US 20170180459A1 · Frank · 2017 [cited by examiner]
US 20190081982A1 · Breton · 2019 [cited by examiner]
US 20210367975A1 · Wood · 2021 [cited by examiner]
US 20230403305A1 · Dementyev · 2023 [cited by examiner]