Patents Assigned to InfoExpress, Inc.
-
Patent number: 9621553Abstract: A new approach to network security includes manipulating an access point such that an initial communication from an external device is passed to a restricted subset of a computing network including a gatekeeper. The gatekeeper is configured to enforce a security policy against the external device before granting access to a less-restricted subset of the computing network. If requirements of the security policy are satisfied, then the gatekeeper reconfigures the access point such that further communication from the external device may be received by elements of the less-restricted subset. Enforcement of the security policy optionally includes performing a security audit of the external device.Type: GrantFiled: June 17, 2015Date of Patent: April 11, 2017Assignee: INFOEXPRESS, INC.Inventors: Alice Lee, Stacey Lum
-
Patent number: 9083753Abstract: A new approach to network security includes manipulating an access point (215) such that an initial communication from an external device (230) is passed to a restricted subset (205) of a computing network (200) including a gatekeeper (225). The gatekeeper is configured to enforce a security policy (330A) against the external device before granting access to a less-restricted subset (210) of the computing network. If requirements of the security policy are satisfied, then the gatekeeper reconfigures the access point such that further communication from the external device may be received by elements of the less-restricted subset. Enforcement of the security policy optionally includes performing a security audit of the external device.Type: GrantFiled: February 7, 2014Date of Patent: July 14, 2015Assignee: InfoExpress, Inc.Inventors: Alice Lee, Stacey Lum
-
Patent number: 8677450Abstract: A new approach to network security includes manipulating an access point such that an initial communication from an external device is passed to a restricted subset of a computing network including a gatekeeper. The gatekeeper is configured to enforce a security policy against the external device before granting access to a less-restricted subset of the computing network. If requirements of the security policy are satisfied, then the gatekeeper reconfigures the access point such that further communication from the external device may be received by elements of the less-restricted subset. Enforcement of the security policy optionally includes performing a security audit of the external device.Type: GrantFiled: June 14, 2012Date of Patent: March 18, 2014Assignee: InfoExpress, Inc.Inventors: Stacey C. Lum, Yuhshiow Alice Lee
-
Patent number: 8650610Abstract: A new approach to network security includes manipulating an access point such that an initial communication from an external device is passed to a restricted subset of a computing network including a gatekeeper. The gatekeeper is configured to enforce a security policy against the external device before granting access to a less-restricted subset of the computing network. If requirements of the security policy are satisfied, then the gatekeeper reconfigures the access point such that further communication from the external device may be received by elements of the less-restricted subset. Enforcement of the security policy optionally includes performing a security audit of the external device.Type: GrantFiled: June 14, 2012Date of Patent: February 11, 2014Assignee: InfoExpress, Inc.Inventors: Stacey C. Lum, Yuhshiow Alice Lee
-
Patent number: 8347351Abstract: A new approach to network security includes manipulating an access point such that an initial communication from an external device is passed to a restricted subset of a computing network including a gatekeeper. The gatekeeper is configured to enforce a security policy against the external device before granting access to a less-restricted subset of the computing network. If requirements of the security policy are satisfied, then the gatekeeper reconfigures the access point such that further communication from the external device may be received by elements of the less-restricted subset. Enforcement of the security policy optionally includes performing a security audit of the external device.Type: GrantFiled: June 14, 2012Date of Patent: January 1, 2013Assignee: InfoExpress, Inc.Inventors: Stacey C. Lum, Yuhshiow Alice Lee
-
Patent number: 8347350Abstract: A new approach to network security includes manipulating an access point such that an initial communication from an external device is passed to a restricted subset of a computing network including a gatekeeper. The gatekeeper is configured to enforce a security policy against the external device before granting access to a less-restricted subset of the computing network. If requirements of the security policy are satisfied, then the gatekeeper reconfigures the access point such that further communication from the external device may be received by elements of the less-restricted subset. Enforcement of the security policy optionally includes performing a security audit of the external device.Type: GrantFiled: February 10, 2012Date of Patent: January 1, 2013Assignee: InfoExpress, Inc.Inventors: Stacey C. Lum, Yuhshiow Alice Lee
-
Patent number: 8117645Abstract: A new approach to network security includes manipulating an access point such that an initial communication from an external device is passed to a restricted subset of a computing network including a gatekeeper. The gatekeeper is configured to enforce a security policy against the external device before granting access to a less-restricted subset of the computing network. If requirements of the security policy are satisfied, then the gatekeeper reconfigures the access point such that further communication from the external device may be received by elements of the less-restricted subset. Enforcement of the security policy optionally includes performing a security audit of the external device.Type: GrantFiled: June 10, 2011Date of Patent: February 14, 2012Assignee: Infoexpress, Inc.Inventors: Stacey C. Lum, Yuhshiow Alice Lee
-
Patent number: 8112788Abstract: A new approach to network security includes manipulating an access point such that an initial communication from an external device is passed to a restricted subset of a computing network including a gatekeeper. The gatekeeper is configured to enforce a security policy against the external device before granting access to a less-restricted subset of the computing network. If requirements of the security policy are satisfied, then the gatekeeper reconfigures the access point such that further communication from the external device may be received by elements of the less-restricted subset. Enforcement of the security policy optionally includes performing a security audit of the external device.Type: GrantFiled: June 10, 2011Date of Patent: February 7, 2012Assignee: InfoExpress, Inc.Inventors: Stacey C. Lum, Yuhshiow Alice Lee
-
Patent number: 8108909Abstract: A new approach to network security includes manipulating an access point such that an initial communication from an external device is passed to a restricted subset of a computing network including a gatekeeper. The gatekeeper is configured to enforce a security policy against the external device before granting access to a less-restricted subset of the computing network. If requirements of the security policy are satisfied, then the gatekeeper reconfigures the access point such that further communication from the external device may be received by elements of the less-restricted subset. Enforcement of the security policy optionally includes performing a security audit of the external device.Type: GrantFiled: June 10, 2011Date of Patent: January 31, 2012Assignee: InfoExpress, Inc.Inventors: Stacey C. Lum, Yuhshiow Alice Lee
-
Patent number: 8051460Abstract: A new approach to network security includes manipulating an access point such that an initial communication from an external device is passed to a restricted subset of a computing network including a gatekeeper. The gatekeeper is configured to enforce a security policy against the external device before granting access to a less-restricted subset of the computing network. If requirements of the security policy are satisfied, then the gatekeeper reconfigures the access point such that further communication from the external device may be received by elements of the less-restricted subset. Enforcement of the security policy optionally includes performing a security audit of the external device.Type: GrantFiled: November 18, 2008Date of Patent: November 1, 2011Assignee: InfoExpress, Inc.Inventors: Stacey C. Lum, Yuhshiow Alice Lee
-
Publication number: 20110231915Abstract: A new approach to network security includes manipulating an access point such that an initial communication from an external device is passed to a restricted subset of a computing network including a gatekeeper. The gatekeeper is configured to enforce a security policy against the external device before granting access to a less-restricted subset of the computing network. If requirements of the security policy are satisfied, then the gatekeeper reconfigures the access point such that further communication from the external device may be received by elements of the less-restricted subset. Enforcement of the security policy optionally includes performing a security audit of the external device.Type: ApplicationFiled: June 10, 2011Publication date: September 22, 2011Applicant: InfoExpress, Inc.Inventors: Stacey C. Lum, Yuhshiow Alice Lee
-
Publication number: 20110231928Abstract: A new approach to network security includes manipulating an access point such that an initial communication from an external device is passed to a restricted subset of a computing network including a gatekeeper. The gatekeeper is configured to enforce a security policy against the external device before granting access to a less-restricted subset of the computing network. If requirements of the security policy are satisfied, then the gatekeeper reconfigures the access point such that further communication from the external device may be received by elements of the less-restricted subset. Enforcement of the security policy optionally includes performing a security audit of the external device.Type: ApplicationFiled: June 10, 2011Publication date: September 22, 2011Applicant: InfoExpress, Inc.Inventors: Stacey C. Lum, Yuhshiow Alice Lee
-
Publication number: 20110231916Abstract: A new approach to network security includes manipulating an access point such that an initial communication from an external device is passed to a restricted subset of a computing network including a gatekeeper. The gatekeeper is configured to enforce a security policy against the external device before granting access to a less-restricted subset of the computing network. If requirements of the security policy are satisfied, then the gatekeeper reconfigures the access point such that further communication from the external device may be received by elements of the less-restricted subset. Enforcement of the security policy optionally includes performing a security audit of the external device.Type: ApplicationFiled: June 10, 2011Publication date: September 22, 2011Applicant: InfoExpress, Inc.Inventors: Stacey C. Lum, Yuhshiow Alice Lee
-
Patent number: 7890658Abstract: Systems and methods of managing security on a computer network are disclosed. The computer network includes a restricted subnet and a less-restricted subnet. Access to the restricted subnet is controlled by a network filter, optionally inserted as a software shim on a DHCP server. In some embodiments, the network filter is configured to manipulate relay IP addresses to control whether the DHCP server provides, in a DHCPOFFER packet, an IP address that can be used to access the restricted subset. In some embodiments, configuration information is communicated between the DHCP server and the network filter via DHCPOFFER packets.Type: GrantFiled: August 28, 2009Date of Patent: February 15, 2011Assignee: InfoExpress, Inc.Inventor: Stacey C. Lum
-
Patent number: 7590733Abstract: Systems and methods of managing security on a computer network are disclosed. The computer network includes a restricted subnet and a less-restricted subnet. Access to the restricted subnet is controlled by a network filter, optionally inserted as a software shim on a DHCP server. In some embodiments, the network filter is configured to manipulate relay IP addresses to control whether the DHCP server provides, in a DHCPOFFER packet, an IP address that can be used to access the restricted subset. In some embodiments, configuration information is communicated between the DHCP server and the network filter via DHCPOFFER packets.Type: GrantFiled: September 14, 2005Date of Patent: September 15, 2009Assignee: InfoExpress, Inc.Inventor: Stacey C. Lum
-
Patent number: 7523484Abstract: A new approach to network security includes manipulating an access point such that an initial communication from an external device is passed to a restricted subset of a computing network including a gatekeeper. The gatekeeper is configured to enforce a security policy against the external device before granting access to a less-restricted subset of the computing network. If requirements of the security policy are satisfied, then the gatekeeper reconfigures the access point such that further communication from the external device may be received by elements of the less-restricted subset. Enforcement of the security policy optionally includes performing a security audit of the external device.Type: GrantFiled: September 24, 2004Date of Patent: April 21, 2009Assignee: InfoExpress, Inc.Inventors: Stacey C. Lum, Yuhshiow Alice Lee