Outer Rim Archives
Archives · 2022 · 11362994

Granted patent

Media flow transport security management

Number
11362994
Published
2022-06-14
Filed
2020-05-07
Assignee
Disney Enterprises, Inc.
Inventors
Strein; Michael J., Mason; Douglas R., Beardsley; Craig L., Kepler; Benjamin H.
CPC
G06F9/455; G06F9/45533; G06F9/5011; H04L12/1868; H04L12/1886; H04L41/04; H04L41/069; H04L41/342; H04L41/40; H04L43/04; H04L43/062; H04L47/82; H04L63/0236; H04L65/1016; H04L65/60; H04L65/611; H04L65/65; H04L65/70; H04L65/762; H04L67/10; H04L67/1097; H04L69/04; H04N21/26616; H04N21/6405; H04N21/6408
Verdict
Set aside media-flow network security, plumbing
Source
Google Patents · FreePatentsOnline

Abstract

A media flow transport security manager of a hybrid cloud-based media production system having a network orchestrator and an extensible resource manager (ERM) includes a firewall communicatively coupled to a computing platform having a hardware processor and a memory storing a security software code. The hardware processor executes the security software code to communicate with the network orchestrator to identify multicast production media flow(s) for processing in a cloud-based virtual production environment, and to communicate with the ERM to obtain an identifier of each cloud-based resource used for processing cloud production media flow(s) corresponding to the identified multicast production media flow(s). The hardware processor also executes the security software code to receive an alert that the cloud production media flow(s) have been processed to generate corresponding post-production cloud media flow(s), and to route, using the obtained identifier of the cloud-based resource(s), the post-production cloud media flow(s) through the firewall.

Background

BACKGROUND (1) Security in media networks has traditionally been managed using so called “air gaps,” in which the media networks are prevented from having external connectivity. As it has become increasingly important for media network nodes to connect to resources outside of a local environment, such as to a post-production facility or an Internet connected feed for example, security has typically been provided through the manual management of destination Internet Protocol (IP) addresses, the manual opening of switch ports, and the manual configuration of firewalls. However, as media production migrates from traditional on-premises production facilities to cloud-based production resources requiring the transport of media flows into and out of a public cloud, there is a need in the art for a nimble security solution capable of ensuring media flow integrity in a dynamic network environment. SUMMARY (2) There are provided systems and methods for providing media flow transport security management, substantially as shown in and/or described in connection with at least one of the figures, and as set forth more completely in the claims.

Claims

1. A media flow transport security manager of a hybrid cloud-based media production system including a network orchestrator and an extensible resource manager (ERM), the media flow transport security manager comprising: a firewall; and a computing platform communicatively coupled to the firewall, the computing platform having a hardware processor and a memory storing a security software code; the hardware processor configured to execute the security software code to: communicate with the network orchestrator to identify at least one multicast production media flow for processing in a cloud-based virtual production environment; communicate with the ERM to obtain an identifier of at least one cloud-based resource for processing, in the cloud-based virtual production environment, one or more cloud production media flows corresponding to the identified at least one multicast production media flow; receive an alert that the one or more cloud production media flows have been processed using the at least one cloud-based resource to generate a corresponding one or more post-production cloud media flows; and route, in response to receiving the alert and using the obtained identifier of the at least one cloud-based resource, the one or more post-production cloud media flows through the firewall. || 11. A method for use by a media flow transport security manager of a hybrid cloud-based media production system including a network orchestrator and an extensible resource manager (ERM), the media flow transport security manager including a firewall and a computing platform communicatively coupled to the firewall, the computing platform having a hardware processor and a memory storing a security software code, the method comprising: communicating, by the security software code executed by the hardware processor, with the network orchestrator to identify at least one multicast production media flow for processing in a cloud-based virtual production environment; communicating, by the security software code executed by the hardware processor, with the ERM to obtain an identifier of at least one cloud-based resource for processing, in the cloud-based virtual production environment, one or more cloud production media flows corresponding to the identified at least one multicast production media flow; receiving, by the security software code executed by the hardware processor, an alert that the one or more cloud production media flows have been processed using the at least one cloud-based resource to generate a corresponding one or more post-production cloud media flows; and routing, in response to receiving the alert, by the security software code executed by the hardware processor and using the obtained identifier of the at least one cloud-based resource, the one or more post-production cloud media flows through the firewall.