IP Library › Granted Patent US 12,199,984
Granted Patent B2
US 12,199,984 · App. 18/494,462 · Granted Jan 14, 2025

Blockchain-based admission processes for protected entities

Inventors: Alon Lelcuk (Ramot Meir, IL); David Aviv (Tel Aviv, IL)
Assignee: Radware Ltd.
H04L63/10G06Q20/3823H04L9/0637H04L9/3213H04L63/1441H04L63/20H04L9/50H04L2463/144
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,199,984
App. No.
18/494,462
Granted
Jan 14, 2025
Kind
B2
Abstract

Arrangements for controlling access to a protected entity include receiving a redirected request of the client to access the protected entity that was denied by the protected entity; granting, in response to the received redirected request, access tokens of a first type to the client; identifying a conversion transaction identifying a request to convert the first type of access tokens with access tokens of a second type, wherein the transaction designates at least the protected entity; converting, based on a determined conversion value, a first sum of the first type of access tokens into a second sum of the second type of access tokens wherein the conversion value is determined based on at least one access parameter; and granting the client access to the protected entity when the sum of the second type of access tokens is received as a payment from the protected entity.

Claims (42)

1. A method for controlling access to a protected entity by a client, comprising:

receiving a redirected request of the client to access the protected entity that was denied by the protected entity, the protected entity being an entity to be protected from malicious threats;

granting, in response to the received redirected request, access tokens of a first type to the client;

identifying a conversion transaction identifying a request to convert the first type of access tokens with access tokens of a second type, wherein the transaction designates at least the protected entity;

converting, based on a determined conversion value, a first sum of the first type of access tokens into a second sum of the second type of access tokens wherein the conversion value is determined based on at least one access parameter; and

granting the client access to the protected entity when the sum of the second type of access tokens is received as a payment from the protected entity.

2. The method of claim 1 , wherein granting the client access to the protected entity further comprises:

validating the client based on at least a predefined condition, wherein the first-type access tokens are granted only upon successful validation of the client.

3. The method of claim 1 , wherein the first-type access tokens and the second-type access tokens are different types.

4. The method of claim 3 , wherein the first-type access tokens and the second-type access tokens are cryptocurrency tokens having different cryptographic identities.

5. The method of claim 1 , wherein the least one access parameter weights a risk of false positive of granting access to an illegitimate client and of false negative of denying access of a legitimate client.

6. The method of claim 1 , wherein the at least one access parameter is related to any one of: the client, the protected entity, and at least one global indication.

7. The method of claim 1 , wherein determining the conversion value further comprises:

dynamically changing the conversion value based on at least one access parameter.

8. The method of claim 7 , wherein the conversion value is dynamically changed based on any one of: per transaction, per access request from the client, and per session.

9. The method of claim 1 , further comprising:

conditionally granting the client access to the protected entity; and

revoking the conditionally granted access, when a transaction holding the sum of the second type of access tokens is not identified.

10. The method of claim 1 , wherein the conversion transaction includes transaction data, a transaction hash value, and a previous transaction hash value, wherein the transaction data includes a unique transaction identifier (ID), a number of available first-type access tokens, an identification of a source granting the first-type access tokens, and an identifier of the protected entity.

11. The method of claim 10 , wherein the conversion transaction does not include information identifying at least one of: the client and a user of the client.

12. The method of claim 1 , further comprising:

logging at least the identified conversion transaction and the determined conversion value.

13. A non-transitory computer readable medium having stored thereon instructions for causing one or more processing units to execute the method according to claim 1 .

14. An access system for controlling access to a protected entity by a client, comprising:

a processing circuitry; and

a memory, the memory containing instructions that when, executed by the processing circuitry, configure the access system to:

receive a redirected request of the client to access the protected entity that was denied by the protected entity, the protected entity being an entity to be protected from malicious threats;

grant, in response to the received redirected request, access tokens of a first type to the client;

identify a conversion transaction identifying a request to convert the first type of access tokens with access tokens of a second type, wherein the transaction designates at least the protected entity;

convert, based on a determined conversion value, a first sum of the first type of access tokens into a second sum of the second type of access tokens wherein the conversion value is determined based on at least one access parameter; and

grant the client access to the protected entity when the sum of the second type of access tokens is received as a payment from the protected entity.

15. The access system of claim 14 , wherein the access system is further configured to provide its public key to the client.

16. An access system for controlling access to a protected entity by a client, comprising:

a processing circuitry; and

a memory, the memory containing instructions that when, executed by the processing circuitry, configure the access system to:

receive a redirected request of the client to access the protected entity that was denied by the protected entity, the protected entity being an entity to be protected from malicious threats;

transmit the access system's public key toward the client'

receive a public key of the client;

grant, in response to the received redirected request, the transmitting of the access system's public key and the receiving of the client's public key, access tokens of a first type to the client;

identify a conversion transaction identifying a request to convert the first type of access tokens with access tokens of a second type, wherein the transaction designates at least the protected entity;

convert, based on a determined conversion value, a first sum of the first type of access tokens into a second sum of the second type of access tokens wherein the conversion value is determined based on at least one access parameter; and

grant the client access to the protected entity when the sum of the second type of access tokens is received as a payment from the protected entity.

Continuity (5)
Continuation 17816226 · Jul 29, 2022
Continuation 17132695 · Dec 23, 2020
Continuation 15994414 · May 31, 2018
Provisional Application 62663132 · Apr 26, 2018
Related Publication 20240064146A1 · Feb 22, 2024
References Cited (113)
US 7721107B2 · Golle et al. · 2010 [cited by applicant]
US 8671058B1 · Isaacs · 2014 [cited by applicant]
US 8752157B2 · Radhakrishnan · 2014 [cited by applicant]
US 9424414B1 · Demirjian et al. · 2016 [cited by applicant]
US 9426182B1 · Zeljko et al. · 2016 [cited by applicant]
US 9452355B1 · Lin · 2016 [cited by applicant]
US 9514293B1 · Moritz et al. · 2016 [cited by applicant]
US 9705895B1 · Gutzmann · 2017 [cited by applicant]
US 9723005B1 · McInerny et al. · 2017 [cited by applicant]
US 9807092B1 · Gutzmann · 2017 [cited by applicant]
US 10049202B1 · Johansson et al. · 2018 [cited by applicant]
US 10097583B1 · Demirjian et al. · 2018 [cited by applicant]
US 10268817B1 · Pham et al. · 2019 [cited by applicant]
US 10282557B1 · Pore et al. · 2019 [cited by applicant]
US 10587596B1 · Sahar et al. · 2020 [cited by applicant]
US 11195177B1 · Vijayvergia · 2021 [cited by applicant]
US 20060156385A1 · Chiviendacz et al. · 2006 [cited by applicant]
US 20070150934A1 · Fiszman et al. · 2007 [cited by applicant]
US 20100017890A1 · Tucker et al. · 2010 [cited by applicant]
US 20100037147A1 · Champion et al. · 2010 [cited by applicant]
US 20100037319A1 · Steeves et al. · 2010 [cited by applicant]
US 20100162357A1 · Chickering et al. · 2010 [cited by applicant]
US 20100222142A1 · Mori · 2010 [cited by applicant]
US 20100318669A1 · Chugh · 2010 [cited by applicant]
US 20110113147A1 · Poluri et al. · 2011 [cited by applicant]
US 20110231913A1 · Feng et al. · 2011 [cited by applicant]
US 20120023554A1 · Murgia et al. · 2012 [cited by applicant]
US 20120144501A1 · Vangpat et al. · 2012 [cited by applicant]
US 20130179958A1 · Fujiwara et al. · 2013 [cited by applicant]
US 20130347067A1 · Li et al. · 2013 [cited by applicant]
US 20140325223A1 · Turgeman et al. · 2014 [cited by applicant]
US 20140325645A1 · Turgeman et al. · 2014 [cited by applicant]
US 20150128236A1 · Moscicki et al. · 2015 [cited by applicant]
US 20150222604A1 · Ylonen · 2015 [cited by applicant]
US 20150317463A1 · Herunde et al. · 2015 [cited by applicant]
US 20150356555A1 · Pennanen · 2015 [cited by applicant]
US 20150363769A1 · Ronca et al. · 2015 [cited by applicant]
US 20160012424A1 · Simon et al. · 2016 [cited by applicant]
US 20160048662A1 · Arnoud et al. · 2016 [cited by applicant]
US 20160162897A1 · Feeney · 2016 [cited by applicant]
US 20160188850A1 · Limbasia et al. · 2016 [cited by applicant]
US 20160224803A1 · Frank et al. · 2016 [cited by applicant]
US 20160292592A1 · Patthak et al. · 2016 [cited by applicant]
US 20160328545A1 · Chan et al. · 2016 [cited by applicant]
US 20160330235A1 · Thompson · 2016 [cited by applicant]
US 20160359904A1 · Ezra et al. · 2016 [cited by applicant]
US 20170031802A1 · Sowerby et al. · 2017 [cited by applicant]
US 20170048234A1 · Lohe et al. · 2017 [cited by applicant]
US 20170070534A1 · Bailey et al. · 2017 [cited by applicant]
US 20170149560A1 · Shah · 2017 [cited by applicant]
US 20170221052A1 · Sheng et al. · 2017 [cited by applicant]
US 20170237570A1 · Vandervort · 2017 [cited by applicant]
US 20170243208A1 · Kurian et al. · 2017 [cited by applicant]
US 20170244707A1 · Johnsrud et al. · 2017 [cited by applicant]
US 20170244709A1 · Jhingran et al. · 2017 [cited by applicant]
US 20170293912A1 · Furche et al. · 2017 [cited by applicant]
US 20170323392A1 · Kasper et al. · 2017 [cited by applicant]
US 20170331802A1 · Keshava et al. · 2017 [cited by applicant]
US 20170366564A1 · Ping et al. · 2017 [cited by applicant]
US 20170366566A1 · Demirjian et al. · 2017 [cited by applicant]
US 20180041336A1 · Keshava et al. · 2018 [cited by applicant]
US 20180060496A1 · Bulleit et al. · 2018 [cited by applicant]
US 20180068130A1 · Chan et al. · 2018 [cited by applicant]
US 20180096175A1 · Schmeling et al. · 2018 [cited by applicant]
US 20180159881A1 · Crabtree et al. · 2018 [cited by applicant]
US 20180197172A1 · Coburn et al. · 2018 [cited by applicant]
US 20180225466A1 · Ducatel et al. · 2018 [cited by applicant]
US 20180225469A1 · Daniel et al. · 2018 [cited by applicant]
US 20180280802A1 · Stroud · 2018 [cited by applicant]
US 20180332063A1 · Ford · 2018 [cited by applicant]
US 20190073666A1 · Ortiz et al. · 2019 [cited by applicant]
US 20190172026A1 · Vessenes et al. · 2019 [cited by applicant]
US 20190184286A1 · Du et al. · 2019 [cited by applicant]
US 20190205512A1 · Franco · 2019 [cited by applicant]
US 20190220592A1 · Liu et al. · 2019 [cited by applicant]
US 20190299105A1 · Knight et al. · 2019 [cited by applicant]
US 20190305968A1 · Versteeg et al. · 2019 [cited by applicant]
US 20190306235A1 · Veale et al. · 2019 [cited by applicant]
US 20190334717A1 · Lelcuk et al. · 2019 [cited by applicant]
US 20190370793A1 · Zhu et al. · 2019 [cited by applicant]
US 20190370813A1 · Bravick et al. · 2019 [cited by applicant]
US 20200027089A1 · Kuchar et al. · 2020 [cited by applicant]
US 20200028853A1 · Ford et al. · 2020 [cited by applicant]
US 20200366671A1 · Larson et al. · 2020 [cited by applicant]
US 20210152557A1 · Lelcuk · 2021 [cited by examiner]
US 20210243188A1 · Grocutt · 2021 [cited by applicant]
US 20220272084A1 · Hyatt · 2022 [cited by applicant]
US 20230091851A1 · Tamir et al. · 2023 [cited by applicant]
CN 107079036A · 2017 [cited by applicant]
CN 107563846A · 2018 [cited by applicant]
DE 102017117598A1 · 2019 [cited by applicant]
KR 101837169B1 · 2018 [cited by applicant]
KR 101837170B1 · 2018 [cited by applicant]
WO 2017021154A1 · 2017 [cited by applicant]
WO 2017136956A1 · 2017 [cited by applicant]
First Office Action for app # CN 201980041504.9, dated Mar. 7, 2024. The State Intellectual Property Office of People's Republic of China, Bejing, China. [cited by applicant]
First Office Action for App No. CN 201980042983.6, dated Mar. 12, 2024. The State Intellectual Property Office of People's Republic of China. [cited by applicant]
Alexopoulos et al., “Towards Blockchain-Based Collaborative Intrusion Detection Systems”, Telecooperation Group, Oct. 2017, p. 1-13. [cited by applicant]
Boyd, et al., “Fair Client Puzzles from the Bitcoin Blockchain,” Norwegian University of Science and Technology, Norway, 2016, pp. 161-177. [cited by applicant]
Ho, et al., “Statistical Analysis of False Positives and False Negatives From Real Traffic with Intrusion Detection/Prevention Systems,” IEEE Communications Magazine, vol. 50, No. 3, Mar. 2012, pp. 146-154. [cited by applicant]
International Search Report and Written Opinion of International Searching Authority for PCT/US2019/027476, ISA/RU, Moscow, Russia, Dated: Aug. 8, 2019. [cited by applicant]
International Search Report and Written Opinion of International Searching Authority for PCT/US2019/028029, ISA/RU, Moscow, Russia, Dated: Aug. 26, 2019. [cited by applicant]
International Search Report and Written Opinion of International Searching Authority for PCT/US2019/028031, ISA/RU, Moscow, Russia, Dated: Aug. 8, 2019. [cited by applicant]
Kang, et al., “Online Game Bot Detection Based on Party-Play Log Analysis”, Computers and Mathematics with Applications, the Netherlands, vol. 65, 2013, pp. 1384-1395. [cited by applicant]
Ouaddah, et al., “FairAccess: a New Blockchain-based Access Control Framework for the Internet of Things: FairAccess: a New Access Control Framework for IoT,” Security and Communication Networks, vol. 9, No. 18, Dec. 20… [cited by applicant]
The European Search Report for European Patent Application No. 19730655.8, Sep. 29, 2020, EPO, Munich, Germany. [cited by applicant]
The European Search Report for European Patent Application No. 19730656.6 dated Dec. 8, 2020, EPO, Munich, Germany. [cited by applicant]
The European Search Report for European Patent Application No. 19730657.4 dated Dec. 10, 2020, EPO, Munich, Germany. [cited by applicant]
The European Search Report for European Patent Application No. 19730658.2 dated Sep. 30, 2020, EPO, Munich, Germany. [cited by applicant]
The First Foreign Office Action for European Patent Application No. 19730655.8 dated Jan. 13, 2022, EPO, Munich, Germany. [cited by applicant]
The First Foreign Office Action for European Patent Application No. 19730658.2 dated Jan. 13, 2022, EPO, Munich, Germany. [cited by applicant]
The International Search Report and the Written Opinion for PCT/US2019/028030, ISA/RU, Moscow, Russia, Dated: Jul. 23, 2019. [cited by applicant]
Yin, et all. Botnet Detection Based On Correlation of Malicious Behaviors, 2013. [cited by applicant]