US2021185009A1PendingUtilityA1

Methods, systems, and media for modifying firewalls based on dynamic ip addresses

Assignee: TAYLOR WAYNEPriority: Sep 12, 2017Filed: Feb 5, 2021Published: Jun 17, 2021
Est. expirySep 12, 2037(~11.1 yrs left)· nominal 20-yr term from priority
Inventors:Thien Van Pham
H04L 61/5014H04L 63/20H04L 63/0236H04L 63/08H04L 63/0263H04L 63/105H04L 63/14H04L 61/2015
55
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

Methods, systems, and media for modifying firewall rules based on dynamic Internet Protocol (IP) addresses are provided. In some embodiments, the method comprises: receiving, from a database server, a request to modify a firewall rule of a firewall protecting a remote computer, wherein the request includes an IP address of a user device initiating a connection to the remote computer, and wherein the firewall rule indicates IP addresses of devices allowed to establish connections to the remote computer; determining whether the IP address of the user device is to be added to the firewall rule; and in response to determining that the IP address of the user device is to be added to the firewall rule, adding the current IP address to the firewall rule.

Claims

exact text as granted — not AI-modified
What is claimed is: 
     
         1 . A method for modifying firewall rules based on dynamic Internet Protocol (IP) addresses, comprising:
 identifying, using a hardware processor, at least one computer that a user of a user device has permission to establish a remote connection with;   causing indications of the at least one computer to be presented to the user for selection by the user;   receiving a selection of a name of a computer of the at least one computer from the user;   determining whether the user device is using a particular type of encryption;   determining whether a current IP address of the user device is to be added to a firewall rule of a firewall protecting the computer based on whether the user device is using the particular type of encryption; and   in response to determining that the current IP address of the user device is to be added to the firewall rule, adding the current IP address to the firewall rule.   
     
     
         2 . The method of  claim 1 , further comprising:
 determining whether the current IP address of the user device is to be removed from the firewall rule; and   in response to determining that the current IP address of the user device is to be removed from the firewall rule, removing the current IP address from the firewall rule.   
     
     
         3 . The method of  claim 1 , further comprising:
 determining that the firewall rule does not exist; and   in response to determining that the firewall rule does not exist, creating the firewall rule.   
     
     
         4 . The method of  claim 1 , wherein determining whether the current IP address of the user device is to be added to the firewall rule is also based on whether the user device is using a particular type of authentication. 
     
     
         5 . The method of  claim 4 , wherein determining whether the current IP address of the user device is to be added to the firewall rule is also based on whether the user device is using a particular type of remote desktop protocol. 
     
     
         6 . A system for modifying firewall rules based on dynamic Internet Protocol (IP) addresses, the system comprising:
 a first hardware processor that is programmed to:   identify at least one computer that a user of a user device has permission to establish a remote connection with;   cause indications of the at least one computer to be presented to the user for selection by the user; and   receive a selection of a name of a computer of the at least one computer from the user; and   a second hardware processor that is programmed to:   determine whether the user device is using a particular type of encryption;   determine whether a current IP address of the user device is to be added to a firewall rule of a firewall protecting the computer based on whether the user device is using the particular type of encryption; and   in response to determining that the current IP address of the user device is to be added to the firewall rule, add the current IP address to the firewall rule.   
     
     
         7 . The system of  claim 6 , wherein the second hardware processor is further programmed to:
 determine whether the current IP address of the user device is to be removed from the firewall rule; and   in response to determining that the current IP address of the user device is to be removed from the firewall rule, remove the current IP address from the firewall rule.   
     
     
         8 . The system of  claim 6 , wherein the second hardware processor is further programmed to:
 determine that the firewall rule does not exist; and   in response to determining that the firewall rule does not exist, create the firewall rule.   
     
     
         9 . The system of  claim 6 , wherein determining whether the current IP address of the user device is to be added to the firewall rule is also based on whether the user device is using a particular type of authentication. 
     
     
         10 . The system of  claim 9 , wherein determining whether the current IP address of the user device is to be added to the firewall rule is also based on whether the user device is using a particular type of remote desktop protocol. 
     
     
         11 . A non-transitory computer-readable medium containing computer executable instructions that, when executed by a plurality of processors, cause the plurality of processors to perform a method for modifying firewall rules based on dynamic Internet Protocol (IP) addresses, the method comprising:
 identifying at least one computer that a user of a user device has permission to establish a remote connection with;   causing indications of the at least one computer to be presented to the user for selection by the user;   receiving a selection of a name of a computer of the at least one computer from the user;   determining whether the user device is using a particular type of encryption;   determining whether a current IP address of the user device is to be added to a firewall rule of a firewall protecting the computer based on whether the user device is using the particular type of encryption; and   in response to determining that the current IP address of the user device is to be added to the firewall rule, adding the current IP address to the firewall rule.   
     
     
         12 . The non-transitory computer-readable medium of  claim 11 , wherein the method further comprises:
 determining whether the current IP address of the user device is to be removed from the firewall rule; and   in response to determining that the current IP address of the user device is to be removed from the firewall rule, removing the current IP address from the firewall rule.   
     
     
         13 . The non-transitory computer-readable medium of  claim 11 , wherein the method further comprises:
 determining that the firewall rule does not exist; and   in response to determining that the firewall rule does not exist, creating the firewall rule.   
     
     
         14 . The non-transitory computer-readable medium of  claim 11 , wherein determining whether the current IP address of the user device is to be added to the firewall rule is also based on whether the user device is using a particular type of authentication. 
     
     
         15 . The non-transitory computer-readable medium of  claim 14 , wherein determining whether the current IP address of the user device is to be added to the firewall rule is also based on whether the user device is using a particular type of remote desktop protocol.

Join the waitlist — get patent alerts

Track US2021185009A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.