WO2005082040A2 - Procede et systeme destines a fournir des solutions de securite de bout en bout et une acceleration de protocole sur des reseaux par cryptage de couche selective - Google Patents

Procede et systeme destines a fournir des solutions de securite de bout en bout et une acceleration de protocole sur des reseaux par cryptage de couche selective Download PDF

Info

Publication number
WO2005082040A2
WO2005082040A2 PCT/US2005/006064 US2005006064W WO2005082040A2 WO 2005082040 A2 WO2005082040 A2 WO 2005082040A2 US 2005006064 W US2005006064 W US 2005006064W WO 2005082040 A2 WO2005082040 A2 WO 2005082040A2
Authority
WO
WIPO (PCT)
Prior art keywords
plurahty
network communication
secure network
encryption
encrypted
Prior art date
Application number
PCT/US2005/006064
Other languages
English (en)
Other versions
WO2005082040A3 (fr
Inventor
Krishna Ragireddy
Colin Roper
William Uhlig
Original Assignee
Encore Networks, Inc.
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Encore Networks, Inc. filed Critical Encore Networks, Inc.
Publication of WO2005082040A2 publication Critical patent/WO2005082040A2/fr
Publication of WO2005082040A3 publication Critical patent/WO2005082040A3/fr

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L69/00Network arrangements, protocols or services independent of the application payload and not provided for in the other groups of this subclass
    • H04L69/16Implementation or adaptation of Internet protocol [IP], of transmission control protocol [TCP] or of user datagram protocol [UDP]
    • H04L69/161Implementation details of TCP/IP or UDP/IP stack architecture; Specification of modified or new header fields
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/04Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks
    • H04L63/0428Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload
    • H04L63/0485Networking architectures for enhanced packet encryption processing, e.g. offloading of IPsec packet processing or efficient security association look-up
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/16Implementing security features at a particular protocol layer
    • H04L63/164Implementing security features at a particular protocol layer at the network layer

Abstract

L'invention concerne un procédé, un système et un programme informatique fournissant une communication de réseau sécurisée via un réseau entre une première et une seconde entité dans laquelle des paquets de données sont cryptés et transmis selon des informations de commande de cryptage échangées préalablement et dans laquelle des accélérateurs TCP peuvent être utilisés afin d'accélérer de façon efficace la transmission des paquets de données. L'invention concerne également un procédé, un système et un programme informatique fournissant une communication de réseau sécurisée par cryptage de plusieurs charges utiles et par inclusion des informations de commande de cryptage pour chaque charge utile cryptée dans un champ d'options d'une entête de protocole correspondante tout en permettant aux accélérateurs TCP de lire les entêtes de protocole et d'accélérer de façon efficace la transmission des charges utiles.
PCT/US2005/006064 2004-02-26 2005-02-28 Procede et systeme destines a fournir des solutions de securite de bout en bout et une acceleration de protocole sur des reseaux par cryptage de couche selective WO2005082040A2 (fr)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
US54758704P 2004-02-26 2004-02-26
US60/547,587 2004-02-26

Publications (2)

Publication Number Publication Date
WO2005082040A2 true WO2005082040A2 (fr) 2005-09-09
WO2005082040A3 WO2005082040A3 (fr) 2007-06-07

Family

ID=34910918

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/US2005/006064 WO2005082040A2 (fr) 2004-02-26 2005-02-28 Procede et systeme destines a fournir des solutions de securite de bout en bout et une acceleration de protocole sur des reseaux par cryptage de couche selective

Country Status (1)

Country Link
WO (1) WO2005082040A2 (fr)

Cited By (9)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US7305092B2 (en) * 2000-12-19 2007-12-04 Qualcomm Incorporated Method and system to accelerate cryptographic functions for secure e-commerce applications
WO2010121220A1 (fr) * 2009-04-17 2010-10-21 Viasat, Inc. Accélération de paquets dans un tunnel de réseau
US8279748B2 (en) 2009-04-17 2012-10-02 Viasat, Inc. Core-based satellite network architecture
US8345650B2 (en) 2009-04-17 2013-01-01 Viasat, Inc. Access node/gateway to access node/gateway layer-2 connectivity (end-to-end)
US8379613B2 (en) 2009-04-17 2013-02-19 Viasat, Inc. Layer-2 connectivity from switch to access node/gateway
US8427999B2 (en) 2009-04-17 2013-04-23 Viasat, Inc. Multi-satellite architecture
US8457035B2 (en) 2009-04-17 2013-06-04 Viasat, Inc. Mobility across satellite beams using L2 connectivity
US8804730B2 (en) 2009-04-17 2014-08-12 Viasat, Inc. Layer-2 extension services
US9276663B2 (en) 2009-04-17 2016-03-01 Viasat, Inc. Layer-2 connectivity from switch to access node/gateway

Citations (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6438612B1 (en) * 1998-09-11 2002-08-20 Ssh Communications Security, Ltd. Method and arrangement for secure tunneling of data between virtual routers

Patent Citations (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6438612B1 (en) * 1998-09-11 2002-08-20 Ssh Communications Security, Ltd. Method and arrangement for secure tunneling of data between virtual routers

Cited By (25)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US7305092B2 (en) * 2000-12-19 2007-12-04 Qualcomm Incorporated Method and system to accelerate cryptographic functions for secure e-commerce applications
US8010781B2 (en) 2001-04-05 2011-08-30 Qualcomm Incorporated Method and system to accelerate cryptographic functions for secure E-commerce applications
US9276663B2 (en) 2009-04-17 2016-03-01 Viasat, Inc. Layer-2 connectivity from switch to access node/gateway
US11962397B2 (en) 2009-04-17 2024-04-16 Viasat, Inc. Layer-2 connectivity from switch to access node/gateway
WO2010121220A1 (fr) * 2009-04-17 2010-10-21 Viasat, Inc. Accélération de paquets dans un tunnel de réseau
US8345650B2 (en) 2009-04-17 2013-01-01 Viasat, Inc. Access node/gateway to access node/gateway layer-2 connectivity (end-to-end)
US8379613B2 (en) 2009-04-17 2013-02-19 Viasat, Inc. Layer-2 connectivity from switch to access node/gateway
US8427999B2 (en) 2009-04-17 2013-04-23 Viasat, Inc. Multi-satellite architecture
US8457035B2 (en) 2009-04-17 2013-06-04 Viasat, Inc. Mobility across satellite beams using L2 connectivity
US8804730B2 (en) 2009-04-17 2014-08-12 Viasat, Inc. Layer-2 extension services
US8948149B2 (en) 2009-04-17 2015-02-03 Viasat, Inc. Access node/gateway to access node/gateway layer-2 connectivity (end-to-end)
US9432896B2 (en) 2009-04-17 2016-08-30 Viasat, Inc. Mobility across satellite beams using L2 connectivity
US8279748B2 (en) 2009-04-17 2012-10-02 Viasat, Inc. Core-based satellite network architecture
US8274981B2 (en) 2009-04-17 2012-09-25 Viasat, Inc. Acceleration through a network tunnel
US9264127B2 (en) 2009-04-17 2016-02-16 Viasat, Inc. Mobility across satellite beams using L2 connectivity
US9774385B2 (en) 2009-04-17 2017-09-26 Viasat, Inc. Layer-2 connectivity from switch to access node/gateway
US9800322B2 (en) 2009-04-17 2017-10-24 Viasat, Inc. Mobility across satellite beams using L2 connectivity
US9887766B2 (en) 2009-04-17 2018-02-06 Viasat, Inc. Layer-2 extension services
US10218432B2 (en) 2009-04-17 2019-02-26 Viasat, Inc. Layer-2 connectivity from switch to access node/gateway
US10404355B2 (en) 2009-04-17 2019-09-03 Viasat, Inc. Mobility across satellite beams using L2 connectivity
US10680704B2 (en) 2009-04-17 2020-06-09 Viasat, Inc. Layer-2 connectivity from switch to access node/gateway
US10965365B2 (en) 2009-04-17 2021-03-30 Viasat, Inc. Layer-2 connectivity from switch to access node/gateway
US11018758B2 (en) 2009-04-17 2021-05-25 Viasat, Inc. Mobility across satellite beams using L2 connectivity
US11424821B2 (en) 2009-04-17 2022-08-23 Viasat, Inc. Layer-2 connectivity from switch to access node/gateway
US9419702B2 (en) 2009-04-17 2016-08-16 Viasat, Inc. Layer-2 extension services

Also Published As

Publication number Publication date
WO2005082040A3 (fr) 2007-06-07

Similar Documents

Publication Publication Date Title
US7360083B1 (en) Method and system for providing end-to-end security solutions to aid protocol acceleration over networks using selective layer encryption
Rescorla et al. Datagram transport layer security
Eggert et al. Unicast UDP usage guidelines for application designers
EP1397900B1 (fr) Transmission de donnees par paquets entre des reseaux mobiles et des reseaux de fixes
WO2005082040A2 (fr) Procede et systeme destines a fournir des solutions de securite de bout en bout et une acceleration de protocole sur des reseaux par cryptage de couche selective
EP1351440B1 (fr) Dispositif pour la multidiffusion sécurisée
JP4271451B2 (ja) インターネット鍵交換データパケットをフラグメント化および再組み立てするための方法および装置
US9641492B2 (en) Protocol link layer
US20010047474A1 (en) Communication control scheme using proxy device and security protocol in combination
CA2473863A1 (fr) Amelioration de serveurs mandataires ameliorant les performances tcp
Rajagopal et al. Fibre channel over tcp/ip (fcip)
CA2527550A1 (fr) Methode d'association sure de donnees a des sessions https
Mazurczyk et al. Evaluation of steganographic methods for oversized IP packets
Thornburgh Adobe's Secure Real-Time Media Flow Protocol
Fraczek et al. Stream control transmission protocol steganography
CN104184646A (zh) Vpn网络数据交互方法和系统及其网络数据交互设备
Bernardo et al. A conceptual approach against next generation security threats: Securing a high speed network protocol-UDT
CN115883478B (zh) 一种多标识网络体系中安全高效的传输控制方法及系统
Rescorla et al. RFC 4347: Datagram transport layer security
Kim et al. TCP-GEN framework to achieve high performance for HAIPE-encrypted TCP traffic in a satellite communication environment
Trabelsi et al. Covert file transfer protocol based on the IP record route option
Mazurczyk et al. Steganography in handling oversized IP packets
Murugesan et al. Review on ipv6 security vulnerability issues and mitigation methods
Tyagi Tcp/ip protocol suite
Bernardo et al. Network security considerations for a new generation protocol UDT

Legal Events

Date Code Title Description
AK Designated states

Kind code of ref document: A2

Designated state(s): AE AG AL AM AT AU AZ BA BB BG BR BW BY BZ CA CH CN CO CR CU CZ DE DK DM DZ EC EE EG ES FI GB GD GE GH GM HR HU ID IL IN IS JP KE KG KP KR KZ LC LK LR LS LT LU LV MA MD MG MK MN MW MX MZ NA NI NO NZ OM PG PH PL PT RO RU SC SD SE SG SK SL SM SY TJ TM TN TR TT TZ UA UG US UZ VC VN YU ZA ZM ZW

AL Designated countries for regional patents

Kind code of ref document: A2

Designated state(s): GM KE LS MW MZ NA SD SL SZ TZ UG ZM ZW AM AZ BY KG KZ MD RU TJ TM AT BE BG CH CY CZ DE DK EE ES FI FR GB GR HU IE IS IT LT LU MC NL PL PT RO SE SI SK TR BF BJ CF CG CI CM GA GN GQ GW ML MR NE SN TD TG

121 Ep: the epo has been informed by wipo that ep was designated in this application
122 Ep: pct application non-entry in european phase