-
公开(公告)号:US09800417B2
公开(公告)日:2017-10-24
申请号:US15397573
申请日:2017-01-03
Applicant: DELL SOFTWARE INC.
Inventor: Yun Feng Liu , Zhong Chen , Eric Xiang , Yanjun Yang
CPC classification number: H04L9/3247 , H04L9/0643 , H04L9/14 , H04L9/3239 , H04L9/3242 , H04L41/12 , H04L45/02 , H04L63/061 , H04L63/123
Abstract: An extension is provided to the SEND protocol without requiring a CGA or third party trust anchor. A shared key is provided to both a sender and receiver of a neighbor discovery (ND) message. A digital signature option is contained in the ND message. A digital signature field is determined by the algorithm field in the option. When the ND message is received, the receiver may verify the digital signature field using the pre-shared key according to the algorithm field. If the ND message passes verification, the receiver may process the message.
-
2.
公开(公告)号:US09537872B2
公开(公告)日:2017-01-03
申请号:US14587947
申请日:2014-12-31
Applicant: DELL SOFTWARE INC.
Inventor: Yun Feng Liu , Zhong Chen , Eric Xiang , Yanjun Yang
CPC classification number: H04L9/3247 , H04L9/0643 , H04L9/14 , H04L9/3239 , H04L9/3242 , H04L41/12 , H04L45/02 , H04L63/061 , H04L63/123
Abstract: An extension is provided to the SEND protocol without requiring a CGA or third party trust anchor. A shared key is provided to both a sender and receiver of a neighbor discovery (ND) message. A digital signature option is contained in the ND message. A digital signature field is determined by the algorithm field in the option. When the ND message is received, the receiver may verify the digital signature field using the pre-shared key according to the algorithm field. If the ND message passes verification, the receiver may process the message.
Abstract translation: 在不需要CGA或第三方信任锚点的情况下,向SEND协议提供扩展。 共享密钥被提供给邻居发现(ND)消息的发送者和接收者。 数字签名选项包含在ND消息中。 数字签名字段由选项中的算法字段决定。 当接收到ND消息时,接收机可以根据算法字段使用预共享密钥来验证数字签名字段。 如果ND消息通过验证,则接收者可以处理消息。
-
公开(公告)号:US20160254975A1
公开(公告)日:2016-09-01
申请号:US15077891
申请日:2016-03-22
Applicant: Dell Software Inc.
Inventor: Zhong Chen , Aravind Thangavelu , Dong Xiang , Yanjun Yang
IPC: H04L12/26
CPC classification number: H04L43/0847 , H04L43/065 , H04L43/0876 , H04L63/0272 , H04L63/08 , H04L63/164 , H04L67/142 , H04L67/2809 , H04L69/40
Abstract: Methods and systems are provided for detecting dead tunnels associated with a VPN. An indicator of a tunnel capability, for example, a DPD vendor ID, is received from a peer through a VPN connection. The tunnel capability is associated with one or more phase II tunnels associated with the VPN. Traffic generated by the peer is detected, and if traffic is detected at a tunnel, the tunnel is presumed to be alive. When no traffic is detected in a tunnel, a DPD packet exchange with the tunnel is initiated. A determination is made, based on the packet exchange, whether the tunnel is alive.
-
4.
公开(公告)号:US20160191543A1
公开(公告)日:2016-06-30
申请号:US14587947
申请日:2014-12-31
Applicant: DELL SOFTWARE INC.
Inventor: Yun Feng Liu , Zhong Chen , Eric Xiang , Yanjun Yang
CPC classification number: H04L9/3247 , H04L9/0643 , H04L9/14 , H04L9/3239 , H04L9/3242 , H04L41/12 , H04L45/02 , H04L63/061 , H04L63/123
Abstract: An extension is provided to the SEND protocol without requiring a CGA or third party trust anchor. A shared key is provided to both a sender and receiver of a neighbor discovery (ND) message. A digital signature option is contained in the ND message. A digital signature field is determined by the algorithm field in the option. When the ND message is received, the receiver may verify the digital signature field using the pre-shared key according to the algorithm field. If the ND message passes verification, the receiver may process the message.
Abstract translation: 在不需要CGA或第三方信任锚点的情况下,向SEND协议提供扩展。 共享密钥被提供给邻居发现(ND)消息的发送者和接收者。 数字签名选项包含在ND消息中。 数字签名字段由选项中的算法字段决定。 当接收到ND消息时,接收机可以根据算法字段使用预共享密钥来验证数字签名字段。 如果ND消息通过验证,则接收者可以处理消息。
-
公开(公告)号:US20170295079A1
公开(公告)日:2017-10-12
申请号:US15633458
申请日:2017-06-26
Applicant: DELL SOFTWARE INC.
Inventor: Zhong Chen , Aravind Thangavelu , Dong Xiang , Yanjun Yang
CPC classification number: H04L43/0847 , H04L43/065 , H04L43/0876 , H04L63/0272 , H04L63/08 , H04L63/164 , H04L67/142 , H04L67/2809 , H04L69/40
Abstract: Methods and systems are provided for detecting dead tunnels associated with a VPN. An indicator of a tunnel capability, for example, a DPD vendor ID, is received from a peer through a VPN connection. The tunnel capability is associated with one or more phase II tunnels associated with the VPN. Traffic generated by the peer is detected, and if traffic is detected at a tunnel, the tunnel is presumed to be alive. When no traffic is detected in a tunnel, a DPD packet exchange with the tunnel is initiated. A determination is made, based on the packet exchange, whether the tunnel is alive.
-
公开(公告)号:US10111192B2
公开(公告)日:2018-10-23
申请号:US15171330
申请日:2016-06-02
Applicant: Dell Software Inc.
Inventor: Dong Xiang , Yicheng He , Yanjun Yang , Li Zhao
IPC: H04L12/50 , H04W56/00 , H04L12/46 , H04L12/805 , H04L12/801
Abstract: Methods are directed towards initializing a path maximum transmission unit value for two gateways in communication via a network tunnel (e.g., VPN environment). The initialized path maximum transmission unit value is used in establishing the network tunnel of the two gateways. Methods are also directed towards synchronizing path maximum transmission unit values for the two gateways after the network tunnel has been established. These methods minimize the occurrence of dropped data packets arising from mismatched path maximum transmission unit value between the gateways.
-
公开(公告)号:US20170118027A1
公开(公告)日:2017-04-27
申请号:US15397573
申请日:2017-01-03
Applicant: DELL SOFTWARE INC.
Inventor: Yun Feng Liu , Zhong Chen , Eric Xiang , Yanjun Yang
CPC classification number: H04L9/3247 , H04L9/0643 , H04L9/14 , H04L9/3239 , H04L9/3242 , H04L41/12 , H04L45/02 , H04L63/061 , H04L63/123
Abstract: An extension is provided to the SEND protocol without requiring a CGA or third party trust anchor. A shared key is provided to both a sender and receiver of a neighbor discovery (ND) message. A digital signature option is contained in the ND message. A digital signature field is determined by the algorithm field in the option. When the ND message is received, the receiver may verify the digital signature field using the pre-shared key according to the algorithm field. If the ND message passes verification, the receiver may process the message.
-
公开(公告)号:US20170353935A1
公开(公告)日:2017-12-07
申请号:US15171330
申请日:2016-06-02
Applicant: Dell Software Inc.
Inventor: Dong Xiang , Yicheng He , Yanjun Yang , Li Zhao
IPC: H04W56/00 , H04L12/46 , H04L12/823
CPC classification number: H04W56/0015 , H04L12/4633 , H04L12/4641 , H04L47/10 , H04L47/36 , H04L47/365
Abstract: Methods are directed towards initializing a path maximum transmission unit value for two gateways in communication via a network tunnel (e.g., VPN environment). The initialized path maximum transmission unit value is used in establishing the network tunnel of the two gateways. Methods are also directed towards synchronizing path maximum transmission unit values for the two gateways after the network tunnel has been established. These methods minimize the occurrence of dropped data packets arising from mismatched path maximum transmission unit value between the gateways.
-
公开(公告)号:US09736048B2
公开(公告)日:2017-08-15
申请号:US15077891
申请日:2016-03-22
Applicant: Dell Software Inc.
Inventor: Zhong Chen , Aravind Thangavelu , Dong Xiang , Yanjun Yang
CPC classification number: H04L43/0847 , H04L43/065 , H04L43/0876 , H04L63/0272 , H04L63/08 , H04L63/164 , H04L67/142 , H04L67/2809 , H04L69/40
Abstract: Methods and systems are provided for detecting dead tunnels associated with a VPN. An indicator of a tunnel capability, for example, a DPD vendor ID, is received from a peer through a VPN connection. The tunnel capability is associated with one or more phase II tunnels associated with the VPN. Traffic generated by the peer is detected, and if traffic is detected at a tunnel, the tunnel is presumed to be alive. When no traffic is detected in a tunnel, a DPD packet exchange with the tunnel is initiated. A determination is made, based on the packet exchange, whether the tunnel is alive.
-
公开(公告)号:US20160198020A1
公开(公告)日:2016-07-07
申请号:US14591781
申请日:2015-01-07
Applicant: DELL SOFTWARE INC.
Inventor: Li Zhao , Dong Xiang , Zhong Chen , Yicheng He , Yanjun Yang
IPC: H04L29/06
CPC classification number: H04L69/04 , H04L69/166
Abstract: The present invention increases the efficiency of transmitting data from a plurality of fragmented internet protocol (IP) packets over a computer network. After receiving a plurality of fragmented packets over a computer network interface a computing device may reassemble data from the plurality of packets into an IP packet that includes data from each of the fragmented IP packets. The reassembled IP packet may then be compressed and encrypted before being transmitted to a computer identified in a destination address in each of the plurality of fragmented packets.
Abstract translation: 本发明通过计算机网络提高从多个分段的因特网协议(IP)分组传输数据的效率。 在计算机网络接口上接收到多个分段分组之后,计算设备可以将来自多个分组的数据重新组合成包括来自每个分段IP分组的数据的IP分组。 然后可以在重新组装的IP分组被发送到在多个分段分组中的每一个中的目的地地址中标识的计算机之后进行压缩和加密。
-
-
-
-
-
-
-
-
-