×

Method and apparatus for supporting multiple customer provisioned IPSec VPNs

  • US 7,643,488 B2
  • Filed: 09/29/2006
  • Issued: 01/05/2010
  • Est. Priority Date: 09/29/2006
  • Status: Active Grant
First Claim
Patent Images

1. A method of supporting multiple customer provisioned Virtual Private Networks (VPNs) in a scalable manner, the method comprising the steps of:

  • instantiating, by a Customer Edge (CE) network element, a Virtual Routing and Forwarding (VRF) process for each of the customer provisioned VPNs to be supported by the CE network element;

    establishing, by the CE network element, a separate Internet Protocol Security (IPSec) secure data channel for each VPN to be supported, by obtaining a shared group security association for each VPN from a Group Controller Key Server (GCKS); and

    instantiating, by the CE network element, a Network Routing Engine (NRE) process configured to interact with the VRF processes, the NRE process maintaining an interface table containing a mapping between VRF name and interface ID for each of the secure control channels, secure data channels, and local interfaces.

View all claims
  • 22 Assignments
Timeline View
Assignment View
    ×
    ×