Invention Grant
- Patent Title: IPsec load balancing in a session-aware load balanced cluster (SLBC) network device
-
Application No.: US17710686Application Date: 2022-03-31
-
Publication No.: US11968237B2Publication Date: 2024-04-23
- Inventor: Yita Lee , Sen Yang , Ting Liu
- Applicant: Fortinet, Inc.
- Applicant Address: US CA Sunnyvale
- Assignee: Fortinet, Inc.
- Current Assignee: Fortinet, Inc.
- Current Assignee Address: US CA Sunnyvale
- Agency: Law Office of Dorian Cartwright
- Agent Dorian Cartwright
- Main IPC: H04L9/40
- IPC: H04L9/40 ; H04L45/02 ; H04L45/42 ; H04L47/125

Abstract:
A processing blade is assigned from the plurality of processing blades to a session of data packets. The load balancing engine manages a session table and an IPsec routing table by updating the session table with a particular security engine card assigned to the session and by updating the IPsec routing table for storing a remote IP address for a particular session. Outbound raw data packets of a particular session are parsed for matching cleartext tuple information prior to IPsec encryption, and inbound encrypted data packets of the particular session are parsed for matching cipher tuple information prior to IPsec decryption. Inbound data packets assigned to the processing blade from the session table are parsed and forwarded to the station.
Public/Granted literature
- US20230319111A1 IPSEC LOAD BALANCING IN A SESSION-AWARE LOAD BALANCED CLUSTER (SLBC) NETWORK DEVICE Public/Granted day:2023-10-05
Information query