US 11,792,194 B2
Microsegmentation for serverless computing
Peter Smith, Acton, MA (US)
Assigned to Zscaler, Inc., San Jose, CA (US)
Filed by Zscaler, Inc., San Jose, CA (US)
Filed on Dec. 17, 2020, as Appl. No. 17/124,693.
Prior Publication US 2022/0200993 A1, Jun. 23, 2022
Int. Cl. H04L 29/06 (2006.01); H04L 9/40 (2022.01)
CPC H04L 63/101 (2013.01) [H04L 63/0263 (2013.01); H04L 63/1408 (2013.01); H04L 63/20 (2013.01)] 15 Claims
OG exemplary drawing
 
1. A non-transitory computer-readable storage medium having computer-readable code stored thereon for programming a serverless computing system to perform steps of:
obtaining a set of policies in the serverless computing system, wherein the set of policies specify which applications are authorized for communication with the serverless computing system;
modifying rules in a network Access Control List (ACL) associated with the serverless computing system based on the set of policies, wherein the network ACL includes rules that specify allowing and blocking communication and operations with the applications;
obtaining updated network communication information based on monitoring in a microsegmentation system, wherein the microsegmentation system is a part of a Zero Trust Network Access (ZTNA) framework;
providing an update for the set of policies based on the updated network communication information; and
updating the rules in the network ACL based on the update.