| CPC H04L 63/0272 (2013.01) [H04L 61/4511 (2022.05); H04L 63/0236 (2013.01)] | 17 Claims |

|
7. A method, comprising:
receiving, at a DNS server for an enterprise network, a Domain Name System (DNS) request for a resource from an endpoint client, wherein the DNS request includes a Fully Qualified Domain Name (FQDN) and a client ID associated with the endpoint client;
determining an IP address and an authentication token for the endpoint client to access the resource using a secure tunnel, wherein the DNS server, via an authentication request including the FQDN and the client ID, requests the authentication token from an endpoint server, wherein the endpoint server identifies a set of authentication tokens based on a first client ID or a second client ID, determines the authentication token from the set of authentication tokens based on the FQDN, and returns the IP address and the authentication token to the DNS server; and
sending a DNS response, from the DNS server, including the IP address and the authentication token to the endpoint client.
|