System and method for dynamically aggregating multiple firewall security configurations in a decentralized network
An apparatus comprises a memory communicatively coupled to a processor. The memory may be configured to store user profiles, security information, and multiple updated tokens. The processor may be configured to identify a first updated token and a second token that are associated with user profiles in a user group; determine a first entitlement associated with a first user profile; and determine a second entitlement associated with a second user profile. Further, the processor may be configured to generate an initial token indicating that the user group is entitled to access the first entitlement and the second entitlement; transmit the initial token to a decentralized network; and receive a third updated token from the decentralized network indicating a firewall configuration that a first user device and a second user device use to implement a firewall at the first user device and at the second user device.
1. An apparatus, comprising:
a memory, configured to store:
one or more user profiles associated with one or more user groups, each user profile comprising one or more entitlements;
security information comprising one or more firewall configurations, each firewall configuration being configured to enable each user profile to access the one or more entitlements; and
one or more updated tokens associated with one or more of the user profiles, each updated token indicating a firewall configuration configured to enable a corresponding user device to access an entitlement of the one or more entitlements;
a processor communicatively coupled to the memory and configured to:
identify a first updated token of the one or more updated tokens that is associated with a first user profile of the one or more user profiles, the first user profile being associated with a first user group of the one or more user groups;
determine a first entitlement of the one or more entitlements associated with the first user profile;
identify a second updated token of the one or more updated tokens that is associated with a second user profile of the one or more user profiles, the second user profile being associated with the first user group of the one or more user groups;
determine a second entitlement of the one or more entitlements associated with the second user profile;
generate a first initial token indicating that the first user group is entitled to access the first entitlement and the second entitlement;
transmit the first initial token to a decentralized network;
receive a third updated token from the decentralized network, wherein:
the third updated token indicates a first firewall configuration based at least in part upon the first initial token; and
the first firewall configuration is configured to enable a first user device associated with the first user profile and a second user device associated with the second user profile to access the first entitlement and the second entitlement; and
transmit the first firewall configuration to the first user device and the second user device to implement a first firewall at the first user device and at the second user device.
2. The apparatus of claim 1 , wherein the processor is further configured to:
identify a fourth updated token of the one or more updated tokens that is associated with a third user profile of the one or more user profiles, the third user profile being associated with a second user group of the one or more user groups;
determine a third entitlement of the one or more entitlements associated with the third user profile;
identify a fifth updated token of the one or more updated tokens that is associated with a fourth user profile of the one or more user profiles, the fourth user profile being associated with the second user group of the one or more user groups;
determine a fourth entitlement of the one or more entitlements associated with the fourth user profile;
generate a second initial token indicating that the second user group is entitled to access the third entitlement and the fourth entitlement;
transmit the second initial token to the decentralized network;
receive a sixth updated token from the decentralized network, wherein:
the sixth updated token indicates a second firewall configuration based at least in part upon the second initial token; and
the second firewall configuration is configured to enable a third user device associated with the third user profile and a fourth user device associated with the fourth user profile to access the third entitlement and the fourth entitlement; and
transmit the second firewall configuration to the third user device and the fourth user device to implement a second firewall at the third user device and at the fourth user device.
3. The apparatus of claim 2 , wherein the processor is further configured to:
in receive a first device profile from a fifth user device;
validate the first device profile against a fifth user profile of the one or more user profiles;
determine whether the fifth user profile is associated with the first user group or the second user group;
in response to determining that the fifth user profile is associated with the first user group, transmit the first firewall configuration to the fifth user device to implement the first firewall at the fifth user device; and
in response to determining that the fifth user profile is associated with the second user group, transmit the second firewall configuration to the fifth user device to implement the first firewall at the fifth user device.
4. The apparatus of claim 3 , wherein the processor is further configured to:
in conjunction with receiving the first device profile from the first user device, receive a first request for the first firewall configuration or the second firewall configuration from the first user device.
5. The apparatus of claim 3 , wherein the processor is further configured to:
in conjunction with receiving the first device profile from the fifth user device, monitor first communication information associated with the fifth user device;
determine whether the communication information comprises a first attempt at accessing the first entitlement or the second attempt; and
in response to determining that the communication information comprises the first attempt, indicate to the fifth user device to transmit the first device profile to the apparatus.
6. The apparatus of claim 5 , wherein the processor is further configured to:
dynamically monitor second communication information associated with the fifth user device;
determine whether the communication information comprises a second attempt at accessing a fifth entitlement;
in response to determining that the communication information comprises the second attempt, generate a third initial token indicating that the fifth device profile is entitled to access the fifth entitlement;
transmit the second initial token to the decentralized network;
receive a seventh updated token from the decentralized network, wherein:
the seventh updated token indicates a third firewall configuration based at least in part upon the second initial token; and
the third firewall configuration is configured to enable the fifth user device to access the first entitlement, the second entitlement, and the fifth entitlement; and
transmit the third firewall configuration to the first user device, the second user device, and the fifth user device to implement a third firewall at the first user device, the second user device, and the fifth user device.
7. The apparatus of claim 5 , wherein the processor is further configured to:
periodically monitor second communication information associated with the fifth user device;
determine whether the communication information comprises a second attempt at accessing a fifth entitlement;
in response to determining that the communication information comprises the second attempt, generate a third initial token indicating that the fifth device profile is entitled to access the fifth entitlement;
transmit the second initial token to the decentralized network;
receive a seventh updated token from the decentralized network, wherein:
the seventh updated token indicates a third firewall configuration based at least in part upon the second initial token; and
the third firewall configuration is configured to enable the fifth user device to access the first entitlement, the second entitlement, and the fifth entitlement; and
transmit the third firewall configuration to the first user device, the second user device, and the fifth user device to implement a third firewall at the first user device, the second user device, and the fifth user device.
8. A system, comprising:
a decentralized network comprising:
a first node configured to:
receive a first initial token comprising a first initial encrypted firewall configuration; and
provide a first updated token comprising a first updated encrypted firewall configuration based at least in part upon the first initial token in accordance with a first security information; and
a server communicatively coupled to the decentralized network and configured to:
identify a second updated token of one or more updated tokens that is associated with a first user profile of one or more user profiles, the first user profile being associated with a first user group of one or more user groups;
determine a first entitlement associated with the first user profile;
identify a third updated token of the one or more updated tokens that is associated with a second user profile of the one or more user profiles, the second user profile being associated with the first user group of the one or more user groups;
determine a second entitlement associated with the second user profile;
generate the first initial token indicating that the first user group is entitled to access the first entitlement and the second entitlement;
transmit the first initial token to the decentralized network;
receive the first updated token from the decentralized network, wherein:
the first updated token indicates a first firewall configuration based at least in part upon the first initial token; and
the first firewall configuration is configured to enable a first user device associated with the first user profile and a second user device associated with the second user profile to access the first entitlement and the second entitlement; and
transmit the first firewall configuration to the first user device and the second user device to implement a first firewall at the first user device and at the second user device.
9. The system of claim 8 , wherein the server is further configured to:
identify a fourth updated token of the one or more updated tokens that is associated with a third user profile of the one or more user profiles, the third user profile being associated with a second user group of the one or more user groups;
determine a third entitlement of the one or more entitlements associated with the third user profile;
identify a fifth updated token of the one or more updated tokens that is associated with a fourth user profile of the one or more user profiles, the fourth user profile being associated with the second user group of the one or more user groups;
determine a fourth entitlement of the one or more entitlements associated with the fourth user profile;
generate a second initial token indicating that the second user group is entitled to access the third entitlement and the fourth entitlement;
transmit the second initial token to the decentralized network;
receive a sixth updated token from the decentralized network, wherein:
the sixth updated token indicates a second firewall configuration based at least in part upon the second initial token; and
the second firewall configuration is configured to enable a third user device associated with the third user profile and a fourth user device associated with the fourth user profile to access the third entitlement and the fourth entitlement; and
transmit the second firewall configuration to the third user device and the fourth user device to implement a second firewall at the third user device and at the fourth user device.
10. The system of claim 9 , wherein the server is further configured to:
receive a first device profile from a fifth user device;
validate the first device profile against a fifth user profile of the one or more user profiles;
determine whether the fifth user profile is associated with the first user group or the second user group;
in response to determining that the fifth user profile is associated with the first user group, transmit the first firewall configuration to the fifth user device to implement the first firewall at the fifth user device; and
in response to determining that the fifth user profile is associated with the second user group, transmit the second firewall configuration to the fifth user device to implement the first firewall at the fifth user device.
11. The system of claim 10 , wherein the server is further configured to:
in conjunction with receiving the first device profile from the first user device, receive a first request for the first firewall configuration or the second firewall configuration from the first user device.
12. The system of claim 10 , wherein the server is further configured to:
in conjunction with receiving the first device profile from the fifth user device, monitor first communication information associated with the fifth user device;
determine whether the communication information comprises a first attempt at accessing the first entitlement or the second attempt; and
in response to determining that the communication information comprises the first attempt, indicate to the fifth user device to transmit the first device profile to the apparatus.
13. The system of claim 12 , wherein the server is further configured to:
dynamically monitor second communication information associated with the fifth user device;
determine whether the communication information comprises a second attempt at accessing a fifth entitlement;
in response to determining that the communication information comprises the second attempt, generate a third initial token indicating that the fifth device profile is entitled to access the fifth entitlement;
transmit the second initial token to the decentralized network;
receive a seventh updated token from the decentralized network, wherein:
the seventh updated token indicates a third firewall configuration based at least in part upon the second initial token; and
the third firewall configuration is configured to enable the fifth user device to access the first entitlement, the second entitlement, and the fifth entitlement; and
transmit the third firewall configuration to the first user device, the second user device, and the fifth user device to implement a third firewall at the first user device, the second user device, and the fifth user device.
14. The system of claim 12 , wherein the server is further configured to:
periodically monitor second communication information associated with the fifth user device;
determine whether the communication information comprises a second attempt at accessing a fifth entitlement;
in response to determining that the communication information comprises the second attempt, generate a third initial token indicating that the fifth device profile is entitled to access the fifth entitlement;
transmit the second initial token to the decentralized network;
receive a seventh updated token from the decentralized network, wherein:
the seventh updated token indicates a third firewall configuration based at least in part upon the second initial token; and
the third firewall configuration is configured to enable the fifth user device to access the first entitlement, the second entitlement, and the fifth entitlement; and
transmit the third firewall configuration to the first user device, the second user device, and the fifth user device to implement a third firewall at the first user device, the second user device, and the fifth user device.
15. A method, comprising:
identifying a first updated token of one or more updated tokens that is associated with a first user profile of one or more user profiles, the first user profile being associated with a first user group of one or more user groups;
determining a first entitlement associated with the first user profile;
identifying a second updated token of the one or more updated tokens that is associated with a second user profile of the one or more user profiles, the second user profile being associated with the first user group of the one or more user groups;
determining a second entitlement associated with the second user profile;
generating a first initial token indicating that the first user group is entitled to access the first entitlement and the second entitlement;
transmitting the first initial token to the decentralized network;
receiving a third updated token from the decentralized network, wherein:
the third updated token indicates a first firewall configuration based at least in part upon the first initial token; and
the first firewall configuration is configured to enable a first user device associated with the first user profile and a second user device associated with the second user profile to access the first entitlement and the second entitlement; and
transmitting the first firewall configuration to the first user device and the second user device to implement a first firewall at the first user device and at the second user device.
16. The method of claim 15 , further comprising:
identifying a fourth updated token of the one or more updated tokens that is associated with a third user profile of the one or more user profiles, the third user profile being associated with a second user group of the one or more user groups;
determining a third entitlement of the one or more entitlements associated with the third user profile;
identifying a fifth updated token of the one or more updated tokens that is associated with a fourth user profile of the one or more user profiles, the fourth user profile being associated with the second user group of the one or more user groups;
determining a fourth entitlement of the one or more entitlements associated with the fourth user profile;
generating a second initial token indicating that the second user group is entitled to access the third entitlement and the fourth entitlement;
transmitting the second initial token to the decentralized network;
receiving a sixth updated token from the decentralized network, wherein:
the sixth updated token indicates a second firewall configuration based at least in part upon the second initial token; and
the second firewall configuration is configured to enable a third user device associated with the third user profile and a fourth user device associated with the fourth user profile to access the third entitlement and the fourth entitlement; and
transmitting the second firewall configuration to the third user device and the fourth user device to implement a second firewall at the third user device and at the fourth user device.
17. The method of claim 16 , further comprising:
receiving a first device profile from a fifth user device;
validating the first device profile against a fifth user profile of the one or more user profiles;
determining whether the fifth user profile is associated with the first user group or the second user group;
in response to determining that the fifth user profile is associated with the first user group, transmitting the first firewall configuration to the fifth user device to implement the first firewall at the fifth user device; and
in response to determining that the fifth user profile is associated with the second user group, transmitting the second firewall configuration to the fifth user device to implement the first firewall at the fifth user device.
18. The method of claim 17 , further comprising:
in conjunction with receiving the first device profile from the first user device, receiving a first request for the first firewall configuration or the second firewall configuration from the first user device.
19. The method of claim 17 , further comprising:
in conjunction with receiving the first device profile from the fifth user device, monitoring first communication information associated with the fifth user device;
determining whether the communication information comprises a first attempt at accessing the first entitlement or the second attempt; and
in response to determining that the communication information comprises the first attempt, indicating to the fifth user device to transmit the first device profile to the apparatus.
20. The method of claim 19 , further comprising:
dynamically monitoring second communication information associated with the fifth user device;
determining whether the communication information comprises a second attempt at accessing a fifth entitlement;
in response to determining that the communication information comprises the second attempt, generating a third initial token indicating that the fifth device profile is entitled to access the fifth entitlement;
transmitting the second initial token to the decentralized network;
receiving a seventh updated token from the decentralized network, wherein:
the seventh updated token indicates a third firewall configuration based at least in part upon the second initial token; and
the third firewall configuration is configured to enable the fifth user device to access the first entitlement, the second entitlement, and the fifth entitlement; and
transmitting the third firewall configuration to the first user device, the second user device, and the fifth user device to implement a third firewall at the first user device, the second user device, and the fifth user device.