Cloud Browser Isolation With Native Browser Functions
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
The traditional enterprise network perimeter is disappearing with applications moving to the cloud, increasing security risks for enterprise data on unsecured and unmanaged devices, and there is a need to leverage browser isolation for secure access.
Innovation Solution
A cloud-based system provides secure web gateways and Zero Trust Network Access (ZTNA) for private application access, ensuring secure connections through a secure tunnel without exposing applications to the internet, and isolating web content processing to prevent malicious threats and data exfiltration.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If traditional enterprise network security models are used, then network perimeter security is maintained, but security becomes inadequate for modern cloud-based environments where applications are accessed from unsecured devices
Solution Approach 1:
The patent extracts the browser and its associated processing functions from the user device and relocates them to a secure cloud environment. The browser is instantiated in an isolated cloud instance that receives display output and user input through protocol translation, completely separating the browsing function from potentially compromised local devices while maintaining security effectiveness for cloud-based access scenarios.
Solution Approach 2:
The patent introduces a protocol translator as an intermediary component that bridges the cloud-based isolated browser and the user device. This translator handles the communication between the cloud instance and local device, enabling protocol conversion and data exchange without compromising the isolation boundary, thus maintaining both security and adaptability.
2Object-affected harmful factors
If browser isolation is implemented to remove risks of malicious code, then security against cyber threats is improved, but the complexity of the system increases
Solution Approach 1:
The patent implements a universal protocol translator that handles multiple functions including protocol conversion, data translation, and communication bridging between the isolated cloud browser and various user devices. This multi-functional component consolidates what would otherwise require multiple separate systems, reducing overall architectural complexity while maintaining effective browser isolation and malware protection.
3Object-affected harmful factors
If cloud-based secure web gateways are deployed to secure enterprise networks, then protection from infection is improved, but the loss of time for data processing increases
Solution Approach 1:
The patent pre-allocates and pre-configures isolated cloud instances for browser execution before users need to access web content. These instances are ready to receive and process web traffic immediately upon demand, eliminating the need for dynamic instance creation and reducing processing latency. The cloud gateway maintains infection protection through pre-established secure connections and isolation mechanisms.
Data Source
AI summary
Systems and methods provide native browser features in Cloud Browser Isolation (CBI) environments. In various embodiments, steps include initiating a Cloud Browser Isolation (CBI) session between a user device and a remote browser; receiving one or more inputs from the user device for performing one of a plurality of native browser functions; and performing the native browser function based on the one or more inputs received from the user device. Supported native browser features include find in page functionality, right click, print, and zoom.


