Invention Grant
- Patent Title: System and method for programmable network based encryption in software defined networks
-
Application No.: US15152538Application Date: 2016-05-11
-
Publication No.: US10205706B2Publication Date: 2019-02-12
- Inventor: Erhan Lokman , Sinan Tatlicioglu , Seyhan Civanlar , Burak Gorkemli , Metin Balci , Bulent Kaytaz
- Applicant: ARGELA YAZILIM VE BILISIM TEKNOLOJILERI SAN. VE TIC. A.S.
- Applicant Address: TR
- Assignee: ARGELA YAZILIM VE BILISIM TEKNOLOJILERI SAN. VE TIC. A.S.
- Current Assignee: ARGELA YAZILIM VE BILISIM TEKNOLOJILERI SAN. VE TIC. A.S.
- Current Assignee Address: TR
- Agency: IP Authority, LLC
- Agent Ramraj Soundararajan
- Main IPC: H04L29/00
- IPC: H04L29/00 ; H04L29/06 ; H04L12/707

Abstract:
Sensitive data is sent through insecure network regions across different software defined networks (SDNs) over an encrypted path without requiring encryption applications at the source or destination hosts. One or more special-purpose encryptors are strategically placed within each SDN, which can act as an encryptor or decryptor, of both the data packet content and the header. Using the controller and a special encryption service application, the encrypted IP packets are forwarded from an encryptor, closest to the source, towards a decryptor, closest to the destination, utilizing a tagging method. Each encryptor has a static and globally unique tag. Each controller advertises to other controllers its encryptor information: IP of the encryptor, the IP block of the users the encryptor is responsible for and the unique encryptor tag(s). Each forwarder along the flow path is instructed by its respective controller how to forward packets towards the destination according to the tag.
Public/Granted literature
- US20170331794A1 SYSTEM AND METHOD FOR PROGRAMMABLE NETWORK BASED ENCRYPTION IN SOFTWARE DEFINED NETWORKS Public/Granted day:2017-11-16
Information query