US 11,777,718 B2
Unification of data flows over network links with different internet protocol (IP) addresses
Amit Bareket, Tel-Aviv (IL); and Sagi Gidali, Rishon-LeZion (IL)
Assigned to Perimeter 81 LTD, Tel-Aviv (IL)
Filed by Perimeter 81 LTD, Tel-Aviv (IL)
Filed on Dec. 12, 2022, as Appl. No. 18/79,036.
Application 18/079,036 is a continuation of application No. 16/988,662, filed on Aug. 9, 2020, granted, now 11,558,184.
Prior Publication US 2023/0106172 A1, Apr. 6, 2023
This patent is subject to a terminal disclaimer.
Int. Cl. H04L 9/08 (2006.01); H04L 69/164 (2022.01); H04L 12/66 (2006.01)
CPC H04L 9/0838 (2013.01) [H04L 9/0891 (2013.01); H04L 12/66 (2013.01); H04L 69/164 (2013.01)] 16 Claims
OG exemplary drawing
 
1. A system for opening connections in a gateway of a cloud based network for client devices connected via two different network links to the gateway and to a Software Defined Perimeter (SDP) controller, comprising: an SDP controller of at least one cloud based network configured to: receive, by the SDP controller, at least one connection request from at least one client device to connect to a gateway of the at least one cloud based network, the at least one client device is connected to the SDP controller via a first network link using a first Internet Protocol (IP) address and to the gateway via a second network link using a second IP address; generate, by the SDP controller, at least one one-time Single Packet Authentication (SPA) key for the at least one client device after authenticated, the at least one one-time SPA key having a predefined expiration time; and store, by the SDP controller, the at least one one-time SPA key in at least one access keys repository accessible to the gateway; wherein the gateway is configured to retrieve the at least one one-time SPA key from the at least one access keys repository and open at least one connection for the at least one client device via the second network link based on validation of at least one one-time SPA key received from the at least one client device compared to the retrieved at least one one-time SPA key; wherein the at least one one-time SPA key is transmitted by the SDP controller to the at least one client device via the first network link.