Providing-replay protection in systems using group security associations
a security association and group technology, applied in the field of secure communications, can solve the problems of gsa architecture that cannot easily support the use of sequence numbers for anti-replay handling, network architectures that generally cannot benefit from its application, and multiple users that cannot easily synchroniz
- Summary
- Abstract
- Description
- Claims
- Application Information
AI Technical Summary
Benefits of technology
Problems solved by technology
Method used
Image
Examples
Embodiment Construction
[0021]Exemplary methods and apparatus by which the present invention uses unidirectional Security Associations to enable anti-replay mechanisms to be used in networks that use Group Security Associations to secure data between endpoints will now be described with reference to the attached figures.
[0022]Referring now to FIG. 1, an IP VPN network 20 is shown to include a number of Customer Edge (CE) devices 22, 24, 26 and 28, coupled to one or more Provider Edge (PE) routers 25 and 27. In the IP VPN network, routing information for each CE is maintained in Virtual Routing and Forwarding Tables 22 and 23. Each PE includes routing information for only the CEs which are members of VPNs that traverse the PE. By limiting the routing information to those VPNs that traverse the PE, it can be assured that the CE devices that are not members of the respective VPN cannot gain access to the network.
[0023]Group key management protocols help to ensure that only members of a secure group can gain a...
PUM
Login to View More Abstract
Description
Claims
Application Information
Login to View More 


