Creating secure encrypted broadcast/multicast groups over wireless network

    公开(公告)号:US10944734B2

    公开(公告)日:2021-03-09

    申请号:US16104537

    申请日:2018-08-17

    摘要: Embodiments herein describe segmenting a Wi-Fi network into different groups. The embodiments herein assign a user, a client device, or a traffic flow originating from a client device to a group. For example, all the client devices for a particular user can be assigned to the same group tag, or each traffic flow in the client device may be assigned to different groups. Each group corresponds to a group key which can be transmitted to the client device when the device associates to an access point (AP). As such, within the same service set identifier (SSID), there can be multiple groups, and thus, client devices can use different group keys to communicate with other client devices associated to the same SSID. Put differently, rather than all devices connected the same SSID being assigned to the same group, the client devices can be assigned in different groups.

    Dynamic user authorization with a service provider

    公开(公告)号:US11695769B2

    公开(公告)日:2023-07-04

    申请号:US16989234

    申请日:2020-08-10

    IPC分类号: H04L29/06 H04L9/40

    CPC分类号: H04L63/0892

    摘要: This disclosure describes techniques for dynamically changing a user authorization with a service provider during an ongoing user session. The changing user authorization may be used to address changing confidence in an identity of a user consuming a service provided by the service provider. The changing user authorization may also be used to adjust a scope of a service to which a user has access. The present techniques may allow single-sign-on type protocols to accomplish the flexible and dynamic change-of-authorization functionality of some traditional protocols to handle ongoing client-server sessions, rather than simply revoking authorization for access to the service. For this reason, the present techniques are able to integrate advantages of traditional protocols with newer, single-sign-on-type protocols.

    Dynamic routing of files to a malware analysis system

    公开(公告)号:US10795998B2

    公开(公告)日:2020-10-06

    申请号:US15910458

    申请日:2018-03-02

    IPC分类号: G06F21/56 H04L29/06

    摘要: A method for selecting either a first malware analysis system or a second malware analysis system to analyze a file is disclosed. The method includes obtaining, at a network security element, a file sent between a first device and a second device, the file having one or more associated attributes; analyzing, at the network security element, the one or more attributes of the file; selecting, based on the analyzing, either the first malware analysis system or the second malware analysis system as a selected malware analysis system for malware analysis of the file; and providing the file to the selected malware analysis system.

    DYNAMIC ROUTING OF FILES TO A MALWARE ANALYSIS SYSTEM

    公开(公告)号:US20190272376A1

    公开(公告)日:2019-09-05

    申请号:US15910458

    申请日:2018-03-02

    IPC分类号: G06F21/56 H04L29/06

    摘要: A method for selecting either a first malware analysis system or a second malware analysis system to analyze a file is disclosed. The method includes obtaining, at a network security element, a file sent between a first device and a second device, the file having one or more associated attributes; analyzing, at the network security element, the one or more attributes of the file; selecting, based on the analyzing, either the first malware analysis system or the second malware analysis system as a selected malware analysis system for malware analysis of the file; and providing the file to the selected malware analysis system.