Zero-Trust Policy Generation via Application Segmentation
Summary
USPTO granted patent US12592930B2 to Zscaler, Inc. covering systems and methods for generating zero-trust access policies through sequence-based application segmentation. The patent describes analyzing user application access log data to identify sequential patterns, grouping applications into app-segments and users into user-groups, and generating access policies accordingly.
What changed
USPTO issued patent US12592930B2 to Zscaler, Inc. on March 31, 2026. The patent covers methods for generating zero-trust policies for application access based on analyzing sequential patterns of application usage from user log data. The system determines app-segments (groupings of related applications) and user-groups (groupings of users with similar access patterns) to generate access policies. Inventors include Chenhui Hu, Devesh Solanki, Gaurav Garg, and others. The patent is classified under H04L 63/104 and H04L 63/20.
This is a patent grant announcement with no regulatory compliance requirements. Technology companies and cybersecurity firms developing zero-trust network solutions should be aware of this IP grant for potential patent landscape considerations. Patent infringement matters are addressed through legal counsel, not regulatory compliance processes.
Source document (simplified)
Generating zero-trust policy for application access based on sequence-based application segmentation
Grant US12592930B2 Kind: B2 Mar 31, 2026
Assignee
Zscaler, Inc.
Inventors
Chenhui Hu, Devesh Solanki, Gaurav Garg, Shikhar Omar, Raimi Shah, Dianhuan Lin, Rex Shang, Howie Xu
Abstract
Systems and methods include obtaining log data for a plurality of users of an enterprise where the log data relates to usage of a plurality of applications by the plurality of users and user metadata; analyzing the log data to determine one or more sequential patterns of application access; determining i) app-segments that are groupings of application of the plurality of applications and ii) user-groups that are groupings of users of the plurality of users, based on the log data and the one or more sequential patterns of application access; and providing access policy of the plurality of applications based on the user-groups and the app-segments. The one or more sequential patterns of application access include a sequence of accessing a plurality of applications in a given time period.
CPC Classifications
H04L 63/104 H04L 63/20
Filing Date
2023-01-18
Application No.
18098464
Claims
20
Related changes
Source
Classification
Who this affects
Taxonomy
Browse Categories
Get Telecom & Technology alerts
Weekly digest. AI-summarized, no noise.
Free. Unsubscribe anytime.
Get alerts for this source
We'll email you when ChangeBridge: Patent Grants - Networking (H04L) publishes new changes.