Invention Grant
- Patent Title: Error handling for media access control security
-
Application No.: US17038222Application Date: 2020-09-30
-
Publication No.: US11336647B2Publication Date: 2022-05-17
- Inventor: Manish Talwar , Ajay Kachrani , Gert Grammel , Hao Wang , Tanweer Biswas
- Applicant: Juniper Networks, Inc.
- Applicant Address: US CA Sunnyvale
- Assignee: Juniper Networks, Inc.
- Current Assignee: Juniper Networks, Inc.
- Current Assignee Address: US CA Sunnyvale
- Agency: Schwegman Lundberg & Woessner, P.A.
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L65/1069 ; H04L101/622 ; H04L41/0604 ; H04L45/00 ; H04L43/16

Abstract:
Embodiments improve error detection and recovery in media access control security sessions. A MACsec session is torn down after three liveness time intervals elapse without receiving a MACsec key exchange protocol data unit (MKPDU) from a remote peer. This delay between a cessation of effective network communication over the MACsec session and the expiration of the three “liveness” intervals results in increased packet loss and an increased network convergence time as a network continues to route/forward data over the MACsec session for a period of time after the MACsec session has entered secure block mode. To solve this problem, embodiments define a new alarm, called a MACsec link alert, which is raised earlier than a MACsec session timeout generated by traditional embodiments. The MACsec link alert is raised, by at least some embodiments, after a failure to successfully receive an MKPDU from the remote peer after a single MACsec “liveness” timeout interval elapses.
Public/Granted literature
- US20220103551A1 ERROR HANDLING FOR MEDIA ACCESS CONTROL SECURITY Public/Granted day:2022-03-31
Information query