Techniques to Classify Virtual Private Network Traffic Based on Identity

    公开(公告)号:US20130091352A1

    公开(公告)日:2013-04-11

    申请号:US13253324

    申请日:2011-10-05

    IPC分类号: H04L9/32 H04L9/00

    摘要: Techniques are provided for obtaining first and second digital certificates from a certificate authority database for establishing a secure exchange between network devices. The first digital certificate contains identity information of a first network device, and the second digital certificate contains classification information of the first network device. In one embodiment, a secure key exchange is initiated with the second network device, and the first and second digital certificates are transmitted as a part of the secure key exchange to the second network device. In another embodiment, the first and second digital certificates are received by an intermediate network device. The first digital certificate is encrypted and is not evaluated by the intermediate network device. The second digital certificate is evaluated for classification information of the first network device. Source information associated with the first network device is stored, and encrypted traffic is processed between the network devices.

    Modular units
    4.
    发明申请
    Modular units 审中-公开
    模块化单位

    公开(公告)号:US20070056937A1

    公开(公告)日:2007-03-15

    申请号:US10582507

    申请日:2004-12-10

    IPC分类号: B23K9/00 B23K9/02

    摘要: A modular unit (1) for transporting work pieces (40) and suitable for use in an array of such units, comprises a top (5); transportation means (10) which propel the work pieces onto and/or off said top (10) and against which the work pieces rest when located on the top (5) of the unit, the transportation means (10) being part of said top (5); in which the transportation means occupy one or more regions of the top (5) of the unit (1) whilst one or more remaining regions of the top are not occupied by transportation means (10) but are suitable for receiving a work piece treatment device.

    摘要翻译: 用于运输工件(40)并适合用于这种单元阵列的模块化单元(1)包括顶部(5); 运输装置(10),其将工件推进到所述顶部(10)上和/或离开所述顶部(10),并且当所述工件位于所述单元的顶部(5)上时,所述工件搁置在所述顶部上,所述运输装置(10)是所述顶部 (5); 其中所述运输装置占据所述单元(1)的顶部(5)的一个或多个区域,而所述顶部的一个或多个剩余区域不被运输装置(10)占据,但是适于接收工件处理装置 。

    Techniques to classify virtual private network traffic based on identity
    5.
    发明授权
    Techniques to classify virtual private network traffic based on identity 有权
    基于身份对虚拟专用网络流量进行分类的技术

    公开(公告)号:US08909918B2

    公开(公告)日:2014-12-09

    申请号:US13253324

    申请日:2011-10-05

    IPC分类号: H04L29/06 H04L9/32

    摘要: Techniques are provided for obtaining first and second digital certificates from a certificate authority database for establishing a secure exchange between network devices. The first digital certificate contains identity information of a first network device, and the second digital certificate contains classification information of the first network device. In one embodiment, a secure key exchange is initiated with the second network device, and the first and second digital certificates are transmitted as a part of the secure key exchange to the second network device. In another embodiment, the first and second digital certificates are received by an intermediate network device. The first digital certificate is encrypted and is not evaluated by the intermediate network device. The second digital certificate is evaluated for classification information of the first network device. Source information associated with the first network device is stored, and encrypted traffic is processed between the network devices.

    摘要翻译: 提供了用于从认证机构数据库获得第一和第二数字证书以建立网络设备之间的安全交换的技术。 第一数字证书包含第一网络设备的身份信息,第二数字证书包含第一网络设备的分类信息。 在一个实施例中,与第二网络设备一起发起安全密钥交换,并且将第一和第二数字证书作为安全密钥交换的一部分被发送到第二网络设备。 在另一个实施例中,第一和第二数字证书由中间网络设备接收。 第一个数字证书是加密的,不被中间网络设备评估。 对第一个网络设备的分类信息进行第二个数字证书的评估。 存储与第一网络设备相关联的源信息,并且在网络设备之间处理加密流量。