US 12,010,099 B1
Identity-based distributed cloud firewall for access and network segmentation
Carlos Eliseo Salas Lumbreras, Vilnius (LT); and Juta Gurinaviciute, Vilnius (LT)
Assigned to UAB 360 IT, Vilnius (LT)
Filed by UAB 360 IT, Vilnius (LT)
Filed on Oct. 10, 2023, as Appl. No. 18/378,370.
Int. Cl. H04L 9/40 (2022.01)
CPC H04L 63/0263 (2013.01) [H04L 63/0272 (2013.01); H04L 63/08 (2013.01)] 20 Claims
OG exemplary drawing
 
1. A method of controlling access to network resources, the method comprising:
receiving an authentication request from a user device to a core security service;
upon authentication of the user device by the core security service, authorizing the user device to connect to a private cloud, and connecting the user device to the private cloud comprising a gateway and a firewall and retrieving user-specific, segmented firewall rules stored in the private cloud;
routing a request by the user device to access an outer resource to the gateway;
evaluating the request against the segmented firewall rules;
if the request meets the segmented firewall rules, routing the request through security measures of the firewall; and
if the request does not meet the segmented firewall rules, denying the user device access to the outer resource.