Invention Grant
- Patent Title: Efficient and secure user credential store for credentials enforcement using a firewall
-
Application No.: US16030594Application Date: 2018-07-09
-
Publication No.: US10298610B2Publication Date: 2019-05-21
- Inventor: Robert Earle Ashley , Ho Yu Lam , Xuanyu Jin , Suiqiang Deng , Taylor Ettema , Robert Tesh
- Applicant: Palo Alto Networks, Inc.
- Applicant Address: US CA Santa Clara
- Assignee: Palo Alto Networks, Inc.
- Current Assignee: Palo Alto Networks, Inc.
- Current Assignee Address: US CA Santa Clara
- Agency: Van Pelt, Yi & James LLP
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06F16/951 ; G06F16/957

Abstract:
Techniques for an efficient and secure store for credentials enforcement using a firewall are disclosed. In some embodiments, a system, process, and/or computer program product for an efficient and secure store for credentials enforcement using a firewall includes receiving a space-efficient and secure data structure, such as bloom filter, from an agent executed on an authentication server, in which the bloom filter is generated by the agent based on a transformation of a plurality of user credentials extracted from the authentication server and/or intercepted at the authentication server; storing the bloom filter on the network device (e.g., in a cache on the network device); and monitoring network traffic at the network device to perform credentials enforcement using the bloom filter.
Public/Granted literature
- US20180332079A1 EFFICIENT AND SECURE USER CREDENTIAL STORE FOR CREDENTIALS ENFORCEMENT USING A FIREWALL Public/Granted day:2018-11-15
Information query