发明名称 Network traffic monitoring system and method to redirect network traffic through a network intermediary
摘要 A network traffic monitoring system for redirecting network traffic between a client device and a cloud service includes a monitor proxy server configured as a network intermediary between the client device and a federated identity provider and between the client device and the cloud service. The monitor proxy server is configured to receive a redirect response generated by the federated identity provider upon user authentication. The monitor proxy server is configured to rewrite the redirect web address to the web address of the monitor proxy server. The monitor proxy server is further configured to rewrite a response web address in network communications between the cloud service and the client device to the web address of the monitor proxy server. As a result, network traffic between the cloud service and the client device is routed through the monitor proxy server after user authentication by the federated identity provider.
申请公布号 US9137131(B1) 申请公布日期 2015.09.15
申请号 US201313797634 申请日期 2013.03.12
申请人 Skyhigh Networks, Inc. 发明人 Sarukkai Sekhar;Narayan Kaushik;Gupta Rajiv
分类号 G06F15/173;H04L12/26;H04L29/06 主分类号 G06F15/173
代理机构 Van Pelt, Yi & James LLP 代理人 Van Pelt, Yi & James LLP
主权项 1. A network traffic monitoring system for redirecting network traffic between a client device and a cloud service, the system comprising: a monitor proxy server configured as a network intermediary between the client device and a federated identity provider and between the client device and the cloud service, the monitor proxy server being designated by the cloud service to receive a redirected login request, the redirected login request being a login request originated from the client device and destined for the cloud service for accessing the cloud service, the login request being redirected by the cloud service to the monitor proxy server as the redirected login request wherein the redirected login request identifies the cloud service, the monitor proxy server being configured to provide, on behalf of the client device, a login credential including a password of the client device to the federated identity provider in response to the client device being redirected to the monitor proxy server by the cloud service and to receive from the federated identity provider a redirect response including an identity assertion or token generated by the federated identity provider upon user authentication, the redirect response containing a redirect web address to the cloud service, the monitor proxy server being configured to rewrite the redirect web address to the web address of the monitor proxy server, the monitor proxy server further being configured to rewrite a response web address in network communications between the cloud service and the client device to the web address of the monitor proxy server, wherein network traffic between the cloud service and the client device is routed through the monitor proxy server after user authentication by the federated identity provider.
地址 Campbell CA US
您可能感兴趣的专利