US 12,113,859 B2
Zero-trust authentication for secure remote direct memory access
Hyunseok Chang, Holmdel, NJ (US); and Sarit Mukherjee, Morganville, NJ (US)
Assigned to NOKIA SOLUTIONS AND NETWORKS OY, Espoo (FI)
Filed by NOKIA SOLUTIONS AND NETWORKS OY, Espoo (FI)
Filed on Oct. 31, 2023, as Appl. No. 18/498,950.
Application 18/498,950 is a continuation of application No. 17/691,544, filed on Mar. 10, 2022, granted, now 11,818,213.
Prior Publication US 2024/0064203 A1, Feb. 22, 2024
This patent is subject to a terminal disclaimer.
Int. Cl. G06F 15/16 (2006.01); H04L 9/40 (2022.01); H04L 67/1097 (2022.01)
CPC H04L 67/1097 (2013.01) [H04L 63/0435 (2013.01); H04L 63/20 (2013.01)] 20 Claims
OG exemplary drawing
 
1. An apparatus, comprising:
at least one processor; and
at least one memory including instructions which, when executed by the at least one processor, cause the apparatus at least to perform:
receiving, by a device associated with a destination application, a packet associated with a remote direct memory access connection between a source application and the destination application, wherein the packet is an initial remote direct memory access data packet sent on the remote direct memory access connection after establishment of the remote direct memory access connection using an out-of-band communication channel;
determining, based on a tag associated with the packet, a set of application-level attributes associated with the source application;
determining, based on the packet, a set of application-level attributes associated with the destination application;
identifying, based on the set of application-level attributes associated with the source application and the set of application-level attributes associated with the destination application, a policy; and
performing, based on the policy, a policy enforcement action.