Invention Grant
- Patent Title: Method and apparatus for dynamic outbound firewalling via domain name system (DNS)
-
Application No.: US18045414Application Date: 2022-10-10
-
Publication No.: US12160407B2Publication Date: 2024-12-03
- Inventor: Daren Childers , Narseo Vallina-Rodriguez , Abhinav Saxena , Joel Reardon , Robert Richter , Pietro Francesco Tirenna , Nathaniel Good , Serge Egelman
- Applicant: AppCensus, Inc.
- Applicant Address: US CA El Cerrito
- Assignee: AppCensus, Inc.
- Current Assignee: AppCensus, Inc.
- Current Assignee Address: US CA El Cerrito
- Agency: Nicholson, De Vos, Webster & Elliott, LLP
- Main IPC: H04L9/40
- IPC: H04L9/40 ; H04L61/4511

Abstract:
A method performed by a computing device for implementing a dynamic outbound firewall. The method includes creating a localhost virtual private network (VPN) service, intercepting, using the localhost VPN service, outbound network traffic originated by the computing device, and responsive to detecting a first domain name service (DNS) query in the intercepted outbound network traffic, converting the DNS query to a first secure DNS query and sending the first secure DNS query to a trusted external DNS recursive resolver using a secure DNS protocol, receiving a first secure DNS response that includes a first DNS resolution result, adding an entry for the first DNS resolution result to a cache, and dropping a first outbound packet detected in the intercepted outbound network traffic based on a determination that the destination of the first outbound packet does not match an entry in the cache.
Public/Granted literature
- US20240121214A1 METHOD AND APPARATUS FOR DYNAMIC OUTBOUND FIREWALLING VIA DOMAIN NAME SYSTEM (DNS) Public/Granted day:2024-04-11
Information query