Invention Grant
- Patent Title: System and method for securing network users in an enterprise network through cybersecurity controls
-
Application No.: US17465339Application Date: 2021-09-02
-
Publication No.: US11888869B2Publication Date: 2024-01-30
- Inventor: Mohammed I. Alghannam , Ahmad A. Alharbi
- Applicant: Saudi Arabian Oil Company
- Applicant Address: SA Dhahran
- Assignee: SAUDI ARABIAN OIL COMPANY
- Current Assignee: SAUDI ARABIAN OIL COMPANY
- Current Assignee Address: SA Dhahran
- Agency: Leason Ellis LLP
- Main IPC: H04L9/40
- IPC: H04L9/40 ; H04L67/141 ; G06F9/455

Abstract:
A system, a method, and a computer program are provided for securely isolating access by one or more users in a group of network users to an enterprise network implementing Multi-Protocol Label Switching (MPLS). The security system includes an MPLS Layer-3 VPN (L3VPN) instance created for a group of users to be isolated, and a remote and mobile enterprise access (RMEA) gateway with secure socket layer virtual private network (SSL-VPN) and two-factor user authentication capabilities. A de-militarized zone (DMZ) is positioned in the network to security scan data traffic between the L3VPN and RMEA gateway. The security protocol involves two-factor user authentication and establishing, on top of the L3VPN instance, an SSL-VPN session between the user and the RMEA gateway, which provides the authorized user access to the network. Additionally, data traffic to/from the user is routed through the RMEA and the DMZ.
Public/Granted literature
- US20230065575A1 SYSTEM AND METHOD FOR SECURING NETWORK USERS IN AN ENTERPRISE NETWORK THROUGH CYBERSECURITY CONTROLS Public/Granted day:2023-03-02
Information query