Session-Based IP Packet Tunneling for Differentiated Traffic Control

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing methods for sending TCP/IP packets through tunnels fail to discriminate between sessions, leading to non-discriminatory application of network optimizations, shaping, or prioritization, affecting all packets uniformly, which can impact network performance and security.

Innovation Solution

A method for establishing tunnels based on the identification of source and destination addresses, port numbers, and session sequencing, allowing differentiated treatment of IP packets, ensuring session consistency and security through encapsulation with unique port numbers and encryption.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Device complexity

If all TCP/IP packets are sent through the same tunnel with identical source and destination addresses and port numbers, then the tunnel establishment and maintenance is simplified, but network optimization, shaping, and prioritization cannot be applied discriminatorily to different sessions

Engineering Contradiction:
Improvetunnel management complexityVSAvoidsession-based network optimization capability
Core Design Contradiction:
Device complexityVSAdaptability or versatility

Solution Approach 1:

The patent segments the single tunnel into multiple tunnels, with each tunnel dedicated to a specific session identified by unique quadruplets (source address, destination address, source port, destination port). This segmentation enables discriminatory network optimization while maintaining manageable tunnel structures through automated session-based routing.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces an additional dimension for tunnel identification by incorporating port numbers into the tunnel routing decision criteria. Instead of relying solely on IP addresses, the system uses quadruplets including port numbers to differentiate sessions, enabling finer-grained control over network resource allocation.

Inventive Principle:
Principle #17Another dimension (Dimensionality change)

2Adaptability or versatility

If session-based differentiation is implemented with unique source and destination port numbers for each session, then discriminatory network optimization and prioritization can be applied, but the complexity of tunnel management and packet routing increases

Engineering Contradiction:
Improvesession-based network optimization capabilityVSAvoidtunnel management complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent implements self-service mechanisms where the network device automatically creates, manages, and removes tunnels based on session detection. The system autonomously identifies new sessions, establishes appropriate tunnels, routes packets accordingly, and cleans up abandoned tunnels without manual intervention, reducing the perceived complexity for operators.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent employs feedback mechanisms where the network device continuously monitors incoming packets, identifies session patterns, and dynamically adjusts tunnel allocation. This closed-loop approach allows the system to adapt to changing traffic patterns while maintaining optimal tunnel utilization.

Inventive Principle:
Principle #23Feedback

Data Source

PatentUS12463846B2Methods and systems for transmitting session-based packets
Publication Date: 2025.11.04 PISMO LABS TECH
  • US12463846B2 patent drawing
  • US12463846B2 patent drawing
  • US12463846B2 patent drawing

AI summary

The present invention discloses methods and systems for sending and receiving IP packets between network nodes through a tunnel. The tunnel is created according to a session. When the IP packet is a first of the IP packets in sequence of a session, establish a tunnel and send the IP packet through the tunnel of the session. When the IP packet is not the first of the IP packets in sequence of a session, sending the IP packet through the tunnel of the session.