COLLISION PREVENTION IN SECURE CONNECTION ESTABLISHMENT

    公开(公告)号:US20180302448A1

    公开(公告)日:2018-10-18

    申请号:US15488822

    申请日:2017-04-17

    IPC分类号: H04L29/06

    摘要: To reduce network connectivity downtime while connections are established or re-established after maintenance, a connection request that would be rejected is instead accepted, even though a corresponding outgoing request is still pending. In some cases, the connection request is a secure connection request, such as an INIT phase request or an AUTH phase request during an Internet Key Exchange protocol exchange. Single-ended and double-ended configurations are both presented. When colliding INIT attempts succeed, two results are produced, after which one may be selected and the other discarded. Alternately, both INIT results may be used in producing two security associations during a subsequent AUTH phase. Incoming traffic and outgoing traffic may then use respective security associations.

    AUTOMATIC SCALING OF VPN CONNECTIONS
    3.
    发明申请

    公开(公告)号:US20190166040A1

    公开(公告)日:2019-05-30

    申请号:US15826135

    申请日:2017-11-29

    摘要: The disclosed technology may include determining that a change is to be made in virtual private network (VPN) connectivity between a first site and a second site while a first VPN connection is operational between a first device at the first site and a first gateway at the second site. VPN information is provided to a second gateway at the second site, the VPN information including information that is associated with a second VPN connection to be established between the first device and the second gateway. It is detected that network traffic is flowing over the second VPN connection between the first device and the second gateway. In response to detecting that the network traffic is flowing between the first device and the second gateway, a notification is sent to the first gateway for the first gateway to deprovision the first VPN connection.