Method for establishing IPSEC tunnels

Multiplex communications – Pathfinding or routing – Switching a message which includes an address header

Reexamination Certificate

Rate now

  [ 0.00 ] – not rated yet Voters 0   Comments 0

Details

C370S410000, C370S466000, C713S153000, C713S166000, C713S189000

Reexamination Certificate

active

06636520

ABSTRACT:

BACKGROUND OF THE INVENTION
1. Field of the Invention
The present invention relates generally to the field of network communication and, more specifically, the present invention relates to a method for establishing network tunnels.
2. Description of the Related Art
Computer technology is continuously advancing, providing newer computer systems with continuously improved performance. One result of this improved performance is an increased use of computer systems by individuals in a wide variety of business, academic and personal applications. In some instances, these computers are linked together by a network, such as, for example, the Internet, so that the systems can communicate with each other using network communications.
In a typical network communication, a data packet, which, for example, may contain audio and video (“AV”) data, is used to transmit data between the systems. A packet is typically organized into a format according to a conventional network protocol, such as, for example, IP (“Internet Protocol”). IP allows a packet to pass across the Internet with the best-effort packet delivery service.
A problem with a conventional packet transmission across a network, such as the Internet, is the security of the packet. In other words, the content of the packet could be captured by an unintended party during the course of transmitting across the network. To enhance the packet security, various schemes have been developed, such as, for example, encrypted tunnels.
A tunnel is a virtual path that can be established between network nodes. A typical tunneling process encapsulates a packet with the source network into an intermediate network and the encapsulation is later removed before the packet reaches its destination node. Transport rules provide services that allow two or more machines to set up sessions so that machines can communicate with each other. Accordingly, a set of IPSEC (Internet Protocol Security) transport mode rules and tunnel mode rules are typically used to enhance the packet security.
However, a problem associated with the currently employed scheme is that the scheme performs only the first rule that it encounters. In other words, the currently employed scheme performs the first rule, which could be either an IPSEC transport mode rule or an IPSEC tunnel mode rule, that it encounters and ignores the remaining rules.
Therefore, there is a need to have a mechanism for establishing tunnels in response to multiple IPSEC rules.
SUMMARY OF THE INVENTION
A transport action is, in one embodiment, identified in response to packet parameters. Next, the transport action is pushed onto a pending stack. When a tunnel action is identified in response to the packet parameters, the tunnel action is pushed onto the pending stack. At least one tunnel is set up in response to the pending stack. The tunnel action stored at the top of the pending stack is performed first and the tunnel action stored at the bottom of the pending stack is performed last.


REFERENCES:
patent: 5898784 (1999-04-01), Kirby et al.
patent: 6157649 (2000-12-01), Peirce et al.
patent: 6434156 (2002-08-01), Yeh

LandOfFree

Say what you really think

Search LandOfFree.com for the USA inventors and patents. Rate them and share your experience with other people.

Rating

Method for establishing IPSEC tunnels does not yet have a rating. At this time, there are no reviews or comments for this patent.

If you have personal experience with Method for establishing IPSEC tunnels, we encourage you to share that experience with our LandOfFree.com community. Your opinion is very important and Method for establishing IPSEC tunnels will most certainly appreciate the feedback.

Rate now

     

Profile ID: LFUS-PAI-O-3153201

  Search
All data on this website is collected from public sources. Our data reflects the most accurate information available at the time of publication.