Invention Grant
- Patent Title: Context-based adaptive encryption
-
Application No.: US16457942Application Date: 2019-06-29
-
Publication No.: US11146588B2Publication Date: 2021-10-12
- Inventor: Cheng-Ta Lee , Chun-Shuo Lin , Wei-Shiau Suen , Ming-Hsun Wu
- Applicant: International Business Machines Corporation
- Applicant Address: US NY Armonk
- Assignee: International Business Machines Corporation
- Current Assignee: International Business Machines Corporation
- Current Assignee Address: US NY Armonk
- Agent Jeffrey S. LaBaw; David H. Judson
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L29/12 ; H04L29/08

Abstract:
A network-based appliance includes a mechanism to set-up and selectively use an “out-of-band” encryption channel. The mechanism comprises a packet parser, and a packet dispatcher, and it is integrated with an existing network layer stack that typically is not visible to host applications. In lieu of simply encrypting all data it receives, the mechanism instead analyzes one or more attributes, e.g., protocol type, application type, current encryption strength, content payload, etc., associated with a packet transmission to determine whether further encryption is required. The evaluation may include a deep packet inspection (DPI) when the information at the network layer (e.g., IP address, port number, etc.) is not sufficient to determine if the payload in the packet needs to be further encrypted. Based on the result of the analysis, packets are dispatched to the encryption channel as and when necessary. When additional encryption is not necessary, however, packet(s) are instead dispatched through an ordinary non-encrypted channel.
Public/Granted literature
- US20190327269A1 Context-based adaptive encryption Public/Granted day:2019-10-24
Information query