Invention Grant
- Patent Title: Anti-replay mechanism for group virtual private networks
- Patent Title (中): 组虚拟专用网的反重播机制
-
Application No.: US14984503Application Date: 2015-12-30
-
Publication No.: US09571458B1Publication Date: 2017-02-14
- Inventor: Nagavenkata Suresh Melam , Mukesh Gupta
- Applicant: Juniper Networks, Inc.
- Applicant Address: US CA Sunnyvale
- Assignee: Juniper Networks, Inc.
- Current Assignee: Juniper Networks, Inc.
- Current Assignee Address: US CA Sunnyvale
- Agency: Shumaker & Sieffert, P.A.
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L12/46 ; H04L29/08

Abstract:
A virtual private network (VPN) device is described that provides a strict anti-replay mechanism for packets in a group VPN. An example first VPN device includes one or more processors, one or more network interfaces configured to receive a packet having an encryption header that includes a group VPN member identifier association with a second VPN device and a sequence number, wherein the first and second VPN devices are members of a group VPN, a data repository configured to store a window of sequence numbers maintained by the first VPN device for the second VPN device, and a VPN session management module operable by the one or more processors to identify the window of sequence numbers based on the group VPN member identifier, determine whether the sequence number of the header is included in the window of sequence numbers, and process the packet based on the determination.
Information query