发明申请
US20100135498A1 Efficient Key Derivation for End-To-End Network Security with Traffic Visibility
有权
针对具有流量可见性的端到端网络安全性的高效关键推导
- 专利标题: Efficient Key Derivation for End-To-End Network Security with Traffic Visibility
- 专利标题(中): 针对具有流量可见性的端到端网络安全性的高效关键推导
-
申请号: US12327137申请日: 2008-12-03
-
公开(公告)号: US20100135498A1公开(公告)日: 2010-06-03
- 发明人: Men Long , Jesse Walker , Karanvir Grewal
- 申请人: Men Long , Jesse Walker , Karanvir Grewal
- 主分类号: H04L9/08
- IPC分类号: H04L9/08 ; H04L9/00
摘要:
Both end-to-end security and traffic visibility may be achieved by a system using a controller that derives a cryptographic key that is different for each client based on a derivation key and a client identifier that is conveyed in each data packet. The controller distributes the derivation key to information technology monitoring devices and a server to provide traffic visibility. For large key sizes, the key may be derived using a derivation formula as follows: client_key—MSB=AES128(base_key_1, client_ID), (1) client_key—LSB=AES128(base_key_2, client_ID+pad), and (2) client_key=client_key_MSB∥client_key_LSB, where (1) and (2) are executed in parallel. The client key and a client identifier may be used so that end-to-end security may be achieved.
公开/授权文献
信息查询