×

Wireless network security mechanism including reverse network address translation

  • US 7,516,174 B1
  • Filed: 11/02/2004
  • Issued: 04/07/2009
  • Est. Priority Date: 11/02/2004
  • Status: Active Grant
First Claim
Patent Images

1. In a wireless network system comprising an access point providing wireless service to a mobile station and a Virtual Private Network (VPN) server operative to establish a VPN session with the mobile station, a method comprisingintercepting an address assignment message from a network address configuration server to the mobile station, wherein the mobile station has a unique link layer address, wherein the network address configuration server is operative to provide internal network addresses to requesting mobile stations, and wherein the address assignment message contains an internal network address for the mobile station;

  • associating, in a data structure, the unique link layer address of the mobile station with the internal network address provided by the network address configuration server in the address assignment message;

    replacing the internal network address in the address assignment message with a virtual network address; and

    forwarding the modified address assignment message to the mobile station;

    intermediating a VPN session between the VPN server and the mobile station;

    wherein the VPN session involves the exchange of encapsulated packets comprising an encapsulating VPN header including an outer network address corresponding to the mobile station, and wherein as to packets sourced from the mobile station, replacing the virtual network address used by the mobile station as the outer network address in the encapsulating VPN headers with the internal network address corresponding to the mobile station.

View all claims
  • 3 Assignments
Timeline View
Assignment View
    ×
    ×