Invention Grant
- Patent Title: Encrypted traffic analytics over a multi-path TCP connection
-
Application No.: US15891708Application Date: 2018-02-08
-
Publication No.: US11316871B2Publication Date: 2022-04-26
- Inventor: Santosh Ramrao Patil , Gangadharan Byju Pularikkal , David McGrew , Blake Harrell Anderson , Madhusudan Nanjanagud
- Applicant: Cisco Technology, Inc.
- Applicant Address: US CA San Jose
- Assignee: Cisco Technology, Inc.
- Current Assignee: Cisco Technology, Inc.
- Current Assignee Address: US CA San Jose
- Agency: Edell, Shapiro & Finnan, LLC
- Main IPC: H04W28/00
- IPC: H04W28/00 ; H04L29/06 ; H04L43/04 ; H04L69/16 ; H04W24/00 ; H04W24/08

Abstract:
Methods and systems to estimate encrypted multi-path TCP (MPTCP) network traffic include restricting traffic in a first direction (e.g., uplink) to a single path, and estimating traffic of multiple subflows of a second direction (e.g., downlink) based on traffic over the single path of the first direction. The estimating may be based on, without limitation, acknowledgment information of the single path, a sequence of acknowledgment numbers of the single path, an unencrypted initial packet sent over the single path as part of a secure tunnel setup procedure, TCP header information of the unencrypted initial packet (e.g., sequence number, acknowledgment packet, and/or acknowledgment packet length), and/or metadata of packets of the single path (e.g., regarding cryptographic algorithms, Diffie-Helman groups, and/or certificate related data).
Public/Granted literature
- US20190245868A1 ENCRYPTED TRAFFIC ANALYTICS OVER A MULTI-PATH TCP CONNECTION Public/Granted day:2019-08-08
Information query