System and Method for Instantiation of Stateless Extranets - US Patent No. 11,924,172
The patent describes creating secure, stateless extranets that facilitate communication between different enterprise networks to accelerate business to business commerce and data exchange between disparate systems. The system allows enterprises to establish connections dynamically without maintaining continuous state information, thus enhancing security and efficiency for instantiation of data transfers across boundaries subject to data governance policies while being ephemeral in nature to use on-demand as a service.
Key Points:
Service Definition and Anchor Points: The consumer receives a service definition from the provider over the control plane. This service definition helps in creating a service anchor point based on the service identifier, which acts as a reference for the stateless service.
Network Address Translation (NAT): The consumer sends a NAT IP request to the provider, which responds with a NAT IP associated with the service anchor point. This allows for seamless communication without maintaining session state information.
Stateless Service Instantiation: The primary innovation is the instantiation of a stateless service on the consumer, meaning that the system does not need to retain state information between sessions, thus enhancing security and scalability.
Secure Communication Tunnel: By utilizing NHOP and NAT IP, a secure communication tunnel is established in the data plane, ensuring that data packets are encrypted and securely transmitted between the consumer and provider.