AGILE NETWORK PROTOCOL FOR SECURE COMMUNICATIONS USING SECURE DOMAIN NAMES
2 Assignments
0 Petitions
Accused Products
Abstract
A network device comprises a storage device storing an application program for a secure communications service, and at least one processor configured to execute the application program for the secure communications service so as to enable the network device to send a request to look up a network address of a second device based on an identifier associated with the second device, receive an indication that the second device is available for the secure communications service, the indication including the requested network address and provisioning information for a secure communication link, connect to the second device over the secure communication link, using the received network address of the second device and the provisioning information for the secure communication link, and communicate at least one of video data and audio data with the second device using the secure communications service via the secure communication link.
-
Citations
24 Claims
-
1-20. -20. (canceled)
-
21. A device, comprising:
-
a first communication interface connected to a first link having a first bandwidth; a second communication interface connected to a second link having a second bandwidth, wherein the first bandwidth is greater than the second bandwidth; one or more processors configured to execute a link guard function to; receive, a the first communication interface, a packet transmitted over the first link, the packet being destined for a node on the second link; cryptographically authenticating the packet to determine whether it belongs to a virtual private network; and if the packet is cryptographically authenticated and determined to belong to the virtual private network, transmitting the packet on the second link with a first quality of service; and if the packet is not cryptographically authenticated and determined to belong to the virtual private network, transmitting the packet on the second link with a second quality of service that is lower than the first quality of service. - View Dependent Claims (22, 24)
-
-
23. A method, comprising:
-
receiving, at a first communication interface connected to a first link, a packet destined for a node on a second link, the first link having a greater bandwidth than second link; cryptographically authenticating the packet to determine whether it belongs to a virtual private network; and if the packet is cryptographically authenticated and determined to belong to the virtual private network, transmitting the packet on the second link with a first quality of service; and if the packet is not cryptographically authenticated and determined to belong to the virtual private network, transmitting the packet on the second link via a second communication interface with a second quality of service that is lower than the first quality of service.
-
Specification