×

Source specific network scanning in a distributed environment

  • US 10,320,750 B1
  • Filed: 03/30/2016
  • Issued: 06/11/2019
  • Est. Priority Date: 03/30/2016
  • Status: Active Grant
First Claim
Patent Images

1. A computer-implemented method, comprising:

  • obtaining a request to execute a network scan of a virtual network of a plurality of virtual networks operated by a plurality of customers of a computing resource service provider, the request indicating the network scan be internal to the virtual network and the plurality of virtual networks implemented by computing resources provided by the computing resource service provider;

    fulfilling the request by at least generating a scanning packet including network address information corresponding to the virtual network;

    generating an encapsulated packet corresponding to the scanning packet, where the encapsulated packet includes information identifying the virtual network so that the encapsulated packet is routed to the virtual network over a computing resource service provider network;

    transmitting the encapsulated packet to an endpoint of the virtual network, wherein the virtual network responds to the scanning packet as if the scanning packet originated from the endpoint and is addressable from within the virtual network;

    de-encapsulating the scanning packet from the encapsulated packet; and

    delivering the scanning packet to a destination within the virtual network based at least in part on network address information included in the scanning packet.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×