USRE50113EActiveUtility

Reverse access method for securing front-end applications and others

Assignee: SAFE T DATA A R LTDPriority: Feb 19, 2012Filed: Feb 13, 2013Granted: Sep 3, 2024
Est. expiryFeb 19, 2032(~5.6 yrs left)· nominal 20-yr term from priority
Inventors:Amir Mizhar
G06F 21/60H04L 63/029H04L 63/0209H04L 63/10
46
PatentIndex Score
0
Cited by
22
References
14
Claims

Abstract

A System that provides a secured connection between servers on the LAN and clients on the WAN comprises the LAN (which includes LAN Server and LAN Controller) and the DMZ (which includes DMZ Server and DMZ Stack Pool Service). Wherein the Client Request reaches the DMZ Server it stores it in the DMZ Stack Pool Service and the LAN Controller establishes outbound TCP based connection to the DMZ Stack Pool Service that passes the Client Connection Information to the LAN Server via the LAN Controller. Then the LAN Server then generates a connection between the Service and DMZ Server.

Claims

exact text as granted — not AI-modified
What is claimed: 
     
       1. A system for reverse access, said system comprising:
 a De-Militarized Zone (DMZ) Stack Pool Service executing on a device so that the DMZ Stack Pool Service is located in a De-Militarized Zone DMZ, the DMZ Stack Pool Service being arranged configured to store requests received from a client, wherein said requests are stored at the a TCP/IP level using a TCP/IP protocol; 
 a local area network (LAN) Controller located in a LAN, the LAN Controller being configured to check for existence of the requests in said DMZ Stack Pool Service of said requests, wherein said checking is performed at the TCP/IP level and said LAN Controller is located in a LAN; and 
 a DMZ server configured to receive said requests from a LAN server of said LAN, and, responsive to the requests, to route said requests stream client request data, to said client, wherein the receiving and routing streaming by said DMZ server occurs at the TCP/IP level using the TCP/IP protocol; 
 wherein said DMZ Stack Pool Service, said LAN Controller, and said DMZ server do does not change the data of said requests and the system requires no administrative management after initial installation and configuration. 
 
     
     
       2. The system of  claim 1 , wherein computer programs and sensitive data of said LAN server reside only in the LAN. 
     
     
       3. A method for reverse access, said method comprising:
 storing requests received from a client, wherein said requests are stored in a De-Militarized zone Zone (DMZ) Stack Pool Service at the a TCP/IP level using a TCP/IP protocol, wherein said DMZ Stack Pool Service is located executing on a device in a De-Militarized Zone DMZ; 
 checking, at the TCP/IP level, said DMZ Stack Pool Service for existence of said requests, wherein said checking is performed by a local area network (LAN) Controller located in a LAN; and 
 receiving said requestsestablishing an outbound connection from a LAN server of said LAN and routing said requestsclient request data, responsive to said requests, by a DMZ server to said client; 
 wherein said storing and routing occurs at the TCP/IP level using the TCP/IP protocol and said storing and routing DMZ server does not change data of said requests; and 
 wherein said method requires no administrative management of the LAN server after initial installation and configuration. 
 
     
     
       4. The method of  claim 3 , wherein computer programs and sensitive data of said LAN server, reside only in the LAN. 
     
     
       5. The method of  claim 3 , wherein the client request data is routed over the outbound connection. 
     
     
       6. The method of  claim 3 , further comprising:
 establishing a connection from the LAN server to a destination service in the LAN that supplies the client request data, wherein the client request data is initially transmitted from a destination service in the LAN that supplies the client request data and is thereafter routed over the outbound connection.   
     
     
       7. The method of  claim 3 , further comprising:
 establishing a connection from the LAN server to a destination service in the LAN that supplies the client request data; and   binding the connection from the LAN server to the destination service in the LAN that supplies the client request data to the outbound connection.   
     
     
       8. The method of  claim 7 , wherein the connection from the LAN server to the destination service in the LAN is established at a TCP/IP level to use a TCP/IP protocol. 
     
     
       9. The method of  claim 3 , wherein the outbound connection is established to a DMZ server. 
     
     
       10. The method of  claim 9 , wherein the outbound connection is further established at a TCP/IP level to use a TCP/IP protocol. 
     
     
       11. The method of  claim 9 , wherein the outbound connection is bound by the DMZ server to one of the requests stored in the DMZ Stack Pool Service. 
     
     
       12. The system of  claim 1 , wherein using the TCP/IP protocol comprises using information associated with the TCP/IP protocol. 
     
     
       13. A method for reverse access, said method comprising:
 storing requests received from a client in a De-Militarized Zone (DMZ) Stack Pool Service at a TCP/IP level using a TCP/IP level-based protocol, wherein said DMZ Stack Pool Service is executing on a device in a DMZ;   checking, at the TCP/IP level, said DMZ Stack Pool Service for existence of said requests, wherein said checking is performed by a local area network (LAN) Controller located in a LAN;   establishing an outbound connection from a LAN server of said LAN and routing by a DMZ server, client request data, responsive to said requests, to said client;   wherein said storing and routing occurs at the TCP/IP level using a TCP/IP level-based protocol and said DMZ server does not change data of said requests; and   wherein said method requires no administrative management of the LAN server after initial installation and configuration.   
     
     
       14. A system for reverse access, said system comprising:
 a De-Militarized Zone (DMZ) Stack Pool Service executing on a device so that the DMZ Stack Pool Service is located in a DMZ, the DMZ Stack Pool Service being configured to store requests received from a client, wherein said requests are stored at a TCP/IP level;   a local area network (LAN) Controller located in a LAN, the LAN Controller being configured to check for existence of the requests in said DMZ Stack Pool Service, wherein said checking is performed at the TCP/IP level; and   a DMZ server configured to receive said requests from a LAN server of said LAN, and, responsive to the requests, to stream client request data, to said client, wherein the receiving and streaming by said DMZ server occurs at the TCP/IP level;   wherein said DMZ server does not change the data of said requests and the system requires no administrative management after initial installation and configuration.

Join the waitlist — get patent alerts

Track USRE50113E — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.