US 12,218,914 B2
Policy-based dynamic VPN profile selection using DNS protocol
Raghavendra Singh Niranjan, Bengaluru (IN)
Assigned to Infoblox Inc., Santa Clara, CA (US)
Filed by Infoblox Inc., Santa Clara, CA (US)
Filed on May 17, 2022, as Appl. No. 17/746,814.
Prior Publication US 2023/0379304 A1, Nov. 23, 2023
Int. Cl. H04L 9/40 (2022.01); H04L 61/4511 (2022.01)
CPC H04L 63/0272 (2013.01) [H04L 61/4511 (2022.05); H04L 63/0236 (2013.01)] 17 Claims
OG exemplary drawing
 
7. A method, comprising:
receiving, at a DNS server for an enterprise network, a Domain Name System (DNS) request for a resource from an endpoint client, wherein the DNS request includes a Fully Qualified Domain Name (FQDN) and a client ID associated with the endpoint client;
determining an IP address and an authentication token for the endpoint client to access the resource using a secure tunnel, wherein the DNS server, via an authentication request including the FQDN and the client ID, requests the authentication token from an endpoint server, wherein the endpoint server identifies a set of authentication tokens based on a first client ID or a second client ID, determines the authentication token from the set of authentication tokens based on the FQDN, and returns the IP address and the authentication token to the DNS server; and
sending a DNS response, from the DNS server, including the IP address and the authentication token to the endpoint client.