US2011208838A1PendingUtilityA1

Method and system for providing secure access to private networks with client redirection

Assignee: JUNIPER NETWORKS INCPriority: Nov 2, 2001Filed: Apr 29, 2011Published: Aug 25, 2011
Est. expiryNov 2, 2021(expired)· nominal 20-yr term from priority
H04L 67/561H04L 67/564H04L 9/40H04L 67/563H04L 63/0407H04L 63/168H04L 63/166H04L 69/329H04L 67/06H04L 63/083H04L 63/0272H04L 63/0281H04L 2463/102H04L 63/08
47
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

Improved approaches for providing secure access to resources maintained on private networks are disclosed. The secure access can be provided through a public network using client software of client-server software and/or with file system software. Multiple remote users are able to gain restricted and controlled access to at least portions of a private network through a common access point, such as an intermediate server of the remote network.

Claims

exact text as granted — not AI-modified
1 - 39 . (canceled) 
     
     
         40 . A method comprising:
 generating a network connection request at a computer on a first network, the network connection request indicating a destination server on a second network;   redirecting the network connection request within a namespace provider or a layered service provider of a socket layer on the computer, the network connection request being redirected away from a transport service provider of the computer to an intermediate server in the second network; and   sending data from the computer towards the intermediate server, where the data is sent from the intermediate server toward the destination server when a connection is provided between the computer and the destination server.   
     
     
         41 . The method of  claim 40 , where the layered service provider is utilized for redirecting the data of the client application from the first network to the second network. 
     
     
         42 . The method of  claim 40 , where the namespace provider is utilized for domain name service lookups on the second network. 
     
     
         43 . The method of  claim 40 , where the transport service provider includes a TCI/IP transport service provider. 
     
     
         44 . The method of  claim 40 , further comprising:
 encrypting the data sent between the computer and the intermediate server.   
     
     
         45 . The method of  claim 40 , further comprising:
 providing an indication when the connection is a secure connection.   
     
     
         46 . The method of  claim 45 , where the indication is a visual indication. 
     
     
         47 . A system comprising:
 a processor to:
 receive a network connection request on a computer, the network connection request corresponding to a remote network, the network connection request including a name of a destination device on the remote network; 
 redirect the network connection request away from a transport driver on the computer, the network connection request being redirected to an intermediate server in the remote network; and 
 receive, at the computer, data of the destination device from the intermediate server when a connection is provided between the computer and the destination device, where the data of the destination device is transferred between the intermediate server and the destination device on the remote network. 
   
     
     
         48 . The system of  claim 47 , where the processor is further to:
 pass the network connection request through a transport driver interface filter prior to the redirecting.   
     
     
         49 . The system of  claim 47 , where the transport driver includes a TCI/IP transport driver. 
     
     
         50 . The system of  claim 47 , where the processor is further to:
 encrypt the data.   
     
     
         51 . The system of  claim 47 , where the processor is further to:
 redirect the network connection request based on a destination server or a destination port.   
     
     
         52 . The system of  claim 47 , where the processor is further to:
 automatically install a transport driver interface on the computer.   
     
     
         53 . The system of  claim 47 , where the processor is further to:
 automatically uninstall a transport driver interface from the computer.   
     
     
         54 . A computer-readable memory device including instructions for performing a method for network communication, the method comprising:
 generating a network connection request at a computer on a first network, the network connection request indicating a destination server on a second network;   redirecting the network connection request within a namespace provider or a layered service provider of a socket layer on the computer, the network connection request being redirected away from a transport service provider interface of the computer to an intermediate server in the second network; and   sending data from the computer towards the intermediate server, where the data is sent from the intermediate server toward the destination server when a connection is provided between the computer and the destination server in response to the network connection request.   
     
     
         55 . The computer-readable memory device of  claim 54 , where the layered service provider is utilized for redirecting the data from the first network to the second network. 
     
     
         56 . The computer-readable memory device of  claim 54 , where the namespace provider is utilized for domain name service lookups on the second network. 
     
     
         57 . The computer-readable memory device of  claim 54 , where the transport service provider interface includes a TCI/IP transport service provider interface. 
     
     
         58 . The computer-readable memory device of  claim 54 , where the method further comprises:
 encrypting the data sent between the computer and the intermediate server.   
     
     
         59 . The computer-readable memory device of  claim 54 , where the method further comprises:
 providing a visual indication when the connection is a secure connection.

Join the waitlist — get patent alerts

Track US2011208838A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.