Invention Grant
US08903084B2 Efficient key derivation for end-to-end network security with traffic visibility
有权
针对具有流量可见性的端到端网络安全性的高效密钥导出
- Patent Title: Efficient key derivation for end-to-end network security with traffic visibility
- Patent Title (中): 针对具有流量可见性的端到端网络安全性的高效密钥导出
-
Application No.: US13916027Application Date: 2013-06-12
-
Publication No.: US08903084B2Publication Date: 2014-12-02
- Inventor: Men Long , Jesse Walker , Karanvir S. Grewal
- Applicant: Intel Corporation
- Applicant Address: US CA Santa Clara
- Assignee: Intel Corporation
- Current Assignee: Intel Corporation
- Current Assignee Address: US CA Santa Clara
- Agency: Garrett IP, LLC
- Main IPC: H04L9/00
- IPC: H04L9/00 ; H04L9/08 ; G06F7/04 ; G06F21/00 ; H04L29/06 ; H04L9/06

Abstract:
Both end-to-end security and traffic visibility may be achieved by a system using a controller that derives a cryptographic key that is different for each client based on a derivation key and a client identifier that is conveyed in each data packet. The controller distributes the derivation key to information technology monitoring devices and a server to provide traffic visibility. For large key sizes, the key may be derived using a derivation formula as follows: client_key_MSB=AES128(base_key_1,client_ID), (1) client_key_LSB=AES128(base_key_2,client_ID+pad),and (2) client_key=client_key_MSB∥client_key_LSB, where (1) and (2) are executed in parallel. The client key and a client identifier may be used so that end-to-end security may be achieved.
Public/Granted literature
- US20140032905A1 EFFICIENT KEY DERIVATION FOR END-TO-END NETWORK SECURITY WITH TRAFFIC VISIBILITY Public/Granted day:2014-01-30
Information query