-
公开(公告)号:US20180302448A1
公开(公告)日:2018-10-18
申请号:US15488822
申请日:2017-04-17
发明人: Ashok NANDOORI , Abhishek TIWARI
IPC分类号: H04L29/06
CPC分类号: H04L65/1069 , H04L63/0272 , H04L63/061 , H04L63/08 , H04L63/164 , H04L63/205
摘要: To reduce network connectivity downtime while connections are established or re-established after maintenance, a connection request that would be rejected is instead accepted, even though a corresponding outgoing request is still pending. In some cases, the connection request is a secure connection request, such as an INIT phase request or an AUTH phase request during an Internet Key Exchange protocol exchange. Single-ended and double-ended configurations are both presented. When colliding INIT attempts succeed, two results are produced, after which one may be selected and the other discarded. Alternately, both INIT results may be used in producing two security associations during a subsequent AUTH phase. Incoming traffic and outgoing traffic may then use respective security associations.
-
公开(公告)号:US20240333649A1
公开(公告)日:2024-10-03
申请号:US18193038
申请日:2023-03-30
发明人: Vijay NAG , Ashok NANDOORI , Rohit TRIPATHI , Sankalp SONI , Paresh VERMA
IPC分类号: H04L47/11 , H04L47/125 , H04L47/193
CPC分类号: H04L47/115 , H04L47/125 , H04L47/193
摘要: A method for distributed flow steering in a cloud-based architecture includes assigning, by a first server, connection IDs to each of multiple data flows owned by the first server. The connection IDs each include a server ID that uniquely identifies the first server and that is included in a data packet header of each of the multiple data flows owned by the first server. The method further includes identifying, by the first server, a data flow characterized by a data packet header including a connection ID uniquely identifying a second server as the owner of the data flow, and redirecting the data flow to the second server.
-
公开(公告)号:US20190166040A1
公开(公告)日:2019-05-30
申请号:US15826135
申请日:2017-11-29
IPC分类号: H04L12/707 , H04L29/06 , H04L12/46 , H04L12/26
摘要: The disclosed technology may include determining that a change is to be made in virtual private network (VPN) connectivity between a first site and a second site while a first VPN connection is operational between a first device at the first site and a first gateway at the second site. VPN information is provided to a second gateway at the second site, the VPN information including information that is associated with a second VPN connection to be established between the first device and the second gateway. It is detected that network traffic is flowing over the second VPN connection between the first device and the second gateway. In response to detecting that the network traffic is flowing between the first device and the second gateway, a notification is sent to the first gateway for the first gateway to deprovision the first VPN connection.
-
-