Invention Grant
- Patent Title: Wireless network security mechanism including reverse network address translation
- Patent Title (中): 无线网络安全机制包括逆向网络地址转换
-
Application No.: US12397455Application Date: 2009-03-04
-
Publication No.: US07941548B2Publication Date: 2011-05-10
- Inventor: Robert W. Tashjian , Sumit Vakil , Jing Wang
- Applicant: Robert W. Tashjian , Sumit Vakil , Jing Wang
- Applicant Address: US CA San Jose
- Assignee: Cisco Systems, Inc.
- Current Assignee: Cisco Systems, Inc.
- Current Assignee Address: US CA San Jose
- Agency: Baker Botts L.L.P.
- Main IPC: G06F15/173
- IPC: G06F15/173

Abstract:
Methods, apparatuses and systems directed to preventing unauthorized access to internal network addresses transmitted across wireless networks. According to the invention, mobile stations are assigned virtual client network addresses that are used as the outer network addresses in a Virtual Private Network (VPN) infrastructure, as well as unique internal network addresses used as the inner network addresses. In one implementation, the virtual client network addresses have little to no relation to the internal network addressing scheme implemented on the network domain. In one implementation, all clients or mobile stations are assigned the same virtual client network address. A translation layer, in one implementation, intermediates the VPN session between the mobile stations and a VPN server to translate the virtual client network addresses to the internal network addresses based on the medium access control (MAC) address corresponding to the mobile stations. In this manner, the encryption inherent in the VPN infrastructure prevents access to the internal network addresses assigned to the mobile stations.
Public/Granted literature
- US20090172805A1 Wireless Network Security Mechanism Including Reverse Network Address Translation Public/Granted day:2009-07-02
Information query