US 12,301,569 B2
Exchange engine for secure access service edge (SASE) provider roaming
Sebastian Jeuk, Munich (DE); Gonzalo Salgueiro, Raleigh, NC (US); and M. David Hanes, Lewisville, NC (US)
Assigned to Cisco Technology, Inc., San Jose, CA (US)
Filed by Cisco Technology, Inc., San Jose, CA (US)
Filed on Oct. 28, 2022, as Appl. No. 17/976,009.
Prior Publication US 2024/0146727 A1, May 2, 2024
Int. Cl. H04L 9/40 (2022.01)
CPC H04L 63/0876 (2013.01) [H04L 63/0263 (2013.01); H04L 63/20 (2013.01)] 20 Claims
OG exemplary drawing
 
10. A method for providing security services to an endpoint device using a secure access service edge (SASE) provider, the method comprising:
receiving a service exchange request from a first secure access service edge (SASE) provider, the service exchange request including data identifying a requested SASE service and a data identifying an endpoint device;
determining, based at least in part on receiving the service exchange request, a first set of SASE service roaming rules associated with the first SASE provider, and a second set of SASE service sharing rules associated with a second SASE provider;
determining, based at least in part on the requested SASE service, the endpoint device, the first set of SASE service roaming rules, and the second set of SASE service sharing rules, the second SASE provider to provide the requested SASE service to the endpoint device;
providing, to the first SASE provider, a response to the service exchange request, the response including network address data associated with second SASE provider; and
providing, to the second SASE provider, the data identifying the endpoint device.