US 12,081,517 B2
End-to-end network security service for workloads across different network environments
Peter Brecl, Highlands Ranch, CO (US); Steven Casey, Littleton, CO (US); and Kevin M. McBride, Denver, CO (US)
Assigned to Level 3 Communications, LLC, Denver, CO (US)
Filed by Level 3 Communications, LLC, Broomfield, CO (US)
Filed on Nov. 12, 2021, as Appl. No. 17/524,982.
Claims priority of provisional application 63/137,464, filed on Jan. 14, 2021.
Claims priority of provisional application 63/113,647, filed on Nov. 13, 2020.
Prior Publication US 2022/0158975 A1, May 19, 2022
Int. Cl. H04L 45/00 (2022.01); H04L 9/40 (2022.01); H04L 12/46 (2006.01); H04L 41/14 (2022.01); H04L 43/0876 (2022.01); H04L 45/74 (2022.01); H04L 61/4511 (2022.01); H04L 67/10 (2022.01); H04L 61/5007 (2022.01)
CPC H04L 63/0209 (2013.01) [H04L 12/4633 (2013.01); H04L 41/145 (2013.01); H04L 43/0876 (2013.01); H04L 45/74 (2013.01); H04L 61/4511 (2022.05); H04L 63/1416 (2013.01); H04L 67/10 (2013.01); H04L 61/5007 (2022.05)] 13 Claims
OG exemplary drawing
 
1. A method for providing a security service to network communications, the method comprising:
mapping a network address associated with a workload instantiated in a cloud network to an Internet Protocol (IP) address associated with a security environment of a backbone network, the cloud network different than the backbone network;
updating a domain name server (DNS) to provide, based on receiving a Uniform Resource Locator (URL) associated with the workload, the IP address associated with the security environment; and
routing a received communication to the security environment based on a header of the communication comprising the IP address, the security environment applying a security feature to the communication,
wherein mapping the network address associated with the workload to the Internet Protocol IP address comprises:
associating the network address with a service indicator of the workload instantiated in the cloud network; and
storing the network address as associated with the service indicator associated in a routing table of a Route Named Service (RNS) of the backbone network.