Invention Grant
- Patent Title: Virtual private network (VPN)-as-a-service with load-balanced tunnel endpoints
-
Application No.: US15802526Application Date: 2017-11-03
-
Publication No.: US11070473B2Publication Date: 2021-07-20
- Inventor: Brandon O. Williams , Martin K. Lohner , Gowtham Boddapati
- Applicant: Akamai Technologies, Inc.
- Applicant Address: US MA Cambridge
- Assignee: Akamai Technologies, Inc.
- Current Assignee: Akamai Technologies, Inc.
- Current Assignee Address: US MA Cambridge
- Agent David H. Judson
- Main IPC: H04L12/803
- IPC: H04L12/803 ; H04L29/06 ; H04L29/08 ; H04L12/46

Abstract:
A mechanism to facilitate a private network (VPN)-as-a-service, preferably within the context of an overlay IP routing mechanism implemented within an overlay network. The overlay provides delivery of packets end-to-end between overlay network appliances positioned at the endpoints. During such delivery, the appliances are configured such that the data portion of each packet has a distinct encryption context from the encryption context of the TCP/IP portion of the packet. By establishing and maintaining these distinct encryption contexts, the overlay network can decrypt and access the TCP/IP flow. This enables the overlay network provider to apply one or more TCP optimizations. At the same time, the separate encryption contexts ensure the data portion of each packet is never available in the clear at any point during transport. According to another feature, data flows within the overlay directed to a particular edge region may be load-balanced while still preserving IPsec replay protection.
Public/Granted literature
- US20180069797A1 Virtual private network (VPN)-as-a-service with load-balanced tunnel endpoints Public/Granted day:2018-03-08
Information query