SYSTEM AND METHOD OF INCREASING ENCRYPTION SYNCHRONIZATION AVAILABILITY
    1.
    发明申请
    SYSTEM AND METHOD OF INCREASING ENCRYPTION SYNCHRONIZATION AVAILABILITY 审中-公开
    增加加密同步可用性的系统和方法

    公开(公告)号:WO2011087617A1

    公开(公告)日:2011-07-21

    申请号:PCT/US2010/058858

    申请日:2010-12-03

    CPC classification number: H04L9/12 H04L9/065 H04L2209/34 H04L2209/80 H04W12/02

    Abstract: Methods for increasing encryption synchronization availability include collecting (302) encryption synchronization data from a first superframe received at a gateway. The encryption synchronization data is for decrypting media in a second superframe also received at the gateway. The encryption synchronization data from the first superframe is used to form (304) a composite encryption synchronization codeword for decrypting media in a third superframe formed by the gateway, wherein the third superframe includes (306) the composite encryption synchronization codeword and at least a portion of the media from the second superframe. The third superframe is sent to a receiving device so that media in the third superframe can be decrypted by the receiving device using the composite encryption synchronization codeword that is included in the same superframe as the media that is being decrypted.

    Abstract translation: 用于增加加密同步可用性的方法包括从在网关处接收的第一超帧收集(302)加密同步数据。 加密同步数据用于在也在网关处接收的第二超帧中解密媒体。 来自第一超帧的加密同步数据用于形成(304)用于解密由网关形成的第三超帧中的媒体的复合加密同步码字,其中第三超帧包括(306)复合加密同步码字和至少一部分 的媒体从第二超帧。 第三超帧被发送到接收设备,使得第三超帧中的媒体可以由接收设备使用包含在与被解密的媒体相同的超帧中的复合加密同步码字来解密。

    APPLICATION STEERING AND APPLICATION BLOCKING OVER A SECURE TUNNEL
    5.
    发明申请
    APPLICATION STEERING AND APPLICATION BLOCKING OVER A SECURE TUNNEL 审中-公开
    应用转向和应用堵塞在安全通道上

    公开(公告)号:WO2008105945A3

    公开(公告)日:2008-12-18

    申请号:PCT/US2007080028

    申请日:2007-09-30

    CPC classification number: H04L63/0485 H04L63/0227 H04L63/04 H04L63/164

    Abstract: Techniques are provided for enabling application steering/blocking in a secure network which includes a network entity, and a first tunnel endpoint coupled to the network entity over an encrypted tunnel. The first tunnel endpoint associates at least a first Security Parameter Index (SPI) to a first application identifier to generate first mapping information (MI), communicates the first MI to the network entity, and transmits an encrypted message to the network entity over the encrypted tunnel. The encrypted message includes an encrypted packet and an unencrypted header including the first SPI. The network entity determines the first SPI from the unencrypted header, determines the first application identifier based on the first SPI and the first MI, and identifies a first application associated with the first application identifier. The network entity can still perform application steering/blocking even though traffic passing through the tunnel is encrypted.

    Abstract translation: 提供了用于在包括网络实体以及通过加密隧道耦合到网络实体的第一隧道端点的安全网络中启用应用转向/阻止的技术。 第一隧道端点至少将第一安全参数索引(SPI)与第一应用标识符相关联以生成第一映射信息(MI),将第一MI传送给网络实体,并且通过加密将加密的消息传送到网络实体 隧道。 加密的消息包括加密的分组和包括第一SPI的未加密的报头。 网络实体从未加密的报头中确定第一SPI,基于第一SPI和第一MI确定第一应用标识符,并识别与第一应用标识符相关联的第一应用。 即使流经隧道的流量被加密,网络实体仍然可以执行应用程序转向/阻塞。

    APPLICATION STEERING AND APPLICATION BLOCKING OVER A SECURE TUNNEL

    公开(公告)号:WO2008105945A4

    公开(公告)日:2008-09-04

    申请号:PCT/US2007/080028

    申请日:2007-09-30

    Abstract: Techniques are provided for enabling application steering/blocking in a secure network which includes a network entity, and a first tunnel endpoint coupled to the network entity over an encrypted tunnel. The first tunnel endpoint associates at least a first Security Parameter Index (SPI) to a first application identifier to generate first mapping information (MI), communicates the first MI to the network entity, and transmits an encrypted message to the network entity over the encrypted tunnel. The encrypted message includes an encrypted packet and an unencrypted header including the first SPI. The network entity determines the first SPI from the unencrypted header, determines the first application identifier based on the first SPI and the first MI, and identifies a first application associated with the first application identifier. The network entity can still perform application steering/blocking even though traffic passing through the tunnel is encrypted.

    KEY MANAGEMENT FACILITY TO NEGOTIATE SECURITY ASSOCIATION ON BEHALF OF ANOTHER DEVICE
    7.
    发明申请
    KEY MANAGEMENT FACILITY TO NEGOTIATE SECURITY ASSOCIATION ON BEHALF OF ANOTHER DEVICE 审中-公开
    关键管理机构对其他设备的安全协议进行协商

    公开(公告)号:WO2008070283A3

    公开(公告)日:2008-07-31

    申请号:PCT/US2007081179

    申请日:2007-10-12

    Inventor: THOMAS PETER E

    Abstract: A key management facility for a communication network masquerades as a first device within the communication system during an Internet Key Exchange (IKE) negotiation with a second device within the communication system. The key management facility establishes, on behalf of the first device, a security association with the second device using IKE. After the negotiation is complete, the key management device provides information regarding the security association to the first device such that the first device can engage in an Internet Protocol Security-protected communication with the second device.

    Abstract translation: 在与通信系统内的第二设备的互联网密钥交换(IKE)协商期间,通信网络的密钥管理设施在通信系统内伪装成第一设备。 密钥管理机构代表第一个设备建立与使用IKE的第二个设备的安全关联。 在协商完成之后,密钥管理设备向第一设备提供关于安全关联的信息,使得第一设备可以与第二设备进行因特网协议安全保护的通信。

    DISTRIBUTING A BROADBAND RESOURCE LOCATOR OVER A NARROWBAND AUDIO STREAM
    9.
    发明申请
    DISTRIBUTING A BROADBAND RESOURCE LOCATOR OVER A NARROWBAND AUDIO STREAM 审中-公开
    在窄带音频流上分发宽带资源定位器

    公开(公告)号:WO2010075181A3

    公开(公告)日:2010-09-16

    申请号:PCT/US2009068548

    申请日:2009-12-17

    CPC classification number: H04W4/10 H04W76/005

    Abstract: A method to transmit a broadband multimedia resource locator using a narrowband communication system embeds the broadband multimedia resource locator into a narrowband audio stream and transmits the narrowband audio stream to one or more receiving communication devices over the narrowband communication system. The receiving communication device(s) subsequently extract the broadband multimedia resource locator from the narrowband audio stream and use the broadband multimedia resource locator to access a broadband communication system to retrieve multimedia content.

    Abstract translation: 一种使用窄带通信系统传输宽带多媒体资源定位符的方法将宽带多媒体资源定位符嵌入到窄带音频流中,并通过窄带通信系统将窄带音频流传输到一个或多个接收通信设备。 接收通信设备随后从窄带音频流中提取宽带多媒体资源定位符,并使用宽带多媒体资源定位符来接入宽带通信系统以检索多媒体内容。

    METHOD AND APPARATUS FOR ENABLING GROUP COMMUNICATION
    10.
    发明申请
    METHOD AND APPARATUS FOR ENABLING GROUP COMMUNICATION 审中-公开
    用于启动群组通信的方法和装置

    公开(公告)号:WO2010071793A3

    公开(公告)日:2010-09-16

    申请号:PCT/US2009068344

    申请日:2009-12-17

    CPC classification number: H04W4/08 H04W4/10 H04W8/186 H04W76/005

    Abstract: A method for enabling group communications includes: establishing a group identity for a communication group comprising a first set of communication devices, and storing an identity for each of the communication devices in the first set; establishing a session to associate a second set of communication devices with the group identity, wherein the communication devices in the second set are different from the communication devices in the first set, wherein the session with the second set of communication devices is set up irrespective of a call being initiated for the communication group; detecting a first event associated with the initiation of a call for the communication group; and in response to detecting the first event, using the stored identities to join at least one of the communication devices in the first set to the session.

    Abstract translation: 一种用于启用组通信的方法包括:为包括第一组通信设备的通信组建立组标识,并将每个通信设备的身份存储在第一组中; 建立会话以将第二组通信设备与组标识相关联,其中第二组中的通信设备与第一组中的通信设备不同,其中与第二组通信设备的会话被设置为与 为通信组发起呼叫; 检测与所述通信组的呼叫的发起相关联的第一事件; 并且响应于检测到所述第一事件,使用所存储的身份将所述第一集合中的至少一个所述通信设备加入所述会话。

Patent Agency Ranking