Invention Grant
- Patent Title: Architecture for routing and IPSec integration
- Patent Title (中): 路由和IPSec集成架构
-
Application No.: US10941772Application Date: 2004-09-15
-
Publication No.: US07647492B2Publication Date: 2010-01-12
- Inventor: James D. Asnis , Teemu S. Lehtonen , Olev Kartau
- Applicant: James D. Asnis , Teemu S. Lehtonen , Olev Kartau
- Applicant Address: US CA Redwood City
- Assignee: Check Point Software Technologies Inc.
- Current Assignee: Check Point Software Technologies Inc.
- Current Assignee Address: US CA Redwood City
- Agency: Squire, Sanders & Dempsey L.L.P.
- Main IPC: H04L29/06
- IPC: H04L29/06

Abstract:
The invention is directed towards routing a packet using both IPSec and common routing protocols within dynamic network topologies in a VPN. The routing of IPSec packets employs Open System Interconnection (OSI) layer three information. In one embodiment, a tree mechanism is used for looking up layer three information that may be associated with a protected subnetwork. When a packet is identified as being associated with a protected subnetwork, the packet may be encrypted and encapsulated, including the original destination and source IP address header information within another packet employing the IP Encapsulating Security Payload (ESP) protocol. New source and destination IP addresses are provided for the new packet using IP addresses associated with an entry gateway and an exit gateway to the VPN. The new packet may then be routed through the VPN using traditional routing protocols.
Public/Granted literature
- US20060059370A1 Architecture for routing and IPSec integration Public/Granted day:2006-03-16
Information query