US 11,695,773 B2
Distributing dynamic access control lists for managing interactions with a cloud datacenter
Barrett Allen Weisshaar, Portland, OR (US); and Luis Campo Giralte, Dublin (IE)
Assigned to Salesforce, Inc., San Francisco, CA (US)
Filed by salesforce.com, inc., San Francisco, CA (US)
Filed on Sep. 28, 2020, as Appl. No. 17/34,646.
Prior Publication US 2022/0103559 A1, Mar. 31, 2022
Int. Cl. H04L 9/40 (2022.01); H04L 67/10 (2022.01)
CPC H04L 63/101 (2013.01) [H04L 63/108 (2013.01); H04L 67/10 (2013.01)] 20 Claims
OG exemplary drawing
 
1. A computer implemented method for enabling access control to be performed on messages received in a data center from a cloud platform, the method comprising:
executing an access control system in the data center and an update service in the cloud platform;
receiving, by the access control system within the data center, from the update service executing in the cloud platform, a request to update access control permissions for a system within the cloud platform, the request specifying a network address of the system within the cloud platform, wherein the network address of the system within the cloud platform is generated by the cloud platform;
extracting from the request, by the access control system, the network address of the system within the cloud platform;
generating, by the access control system using the network address, an access control list (ACL) entry, the ACL entry, when applied, granting to the system within the cloud platform, permissions to access one or more systems within the data center; and
sending, by the access control system, the ACL entry to a set of devices, wherein one or more devices in the set of devices allow transmission of messages received from the system within the cloud platform to a target service within the data center in accordance with the ACL entry.