×

Reducing network configuration complexity with transparent virtual private networks

  • US 20040268121A1
  • Filed: 06/30/2003
  • Published: 12/30/2004
  • Est. Priority Date: 06/30/2003
  • Status: Active Grant
First Claim
Patent Images

1. In a private network comprising a resource and a firewall, which acts as a gateway by controlling client desired access to the private network resource, a method of establishing a connection to the private network resource while balancing authentication processing requirements between a client and the firewall to mutually guard against denial of service attacks, the method comprising the acts of:

  • receiving, by the firewall, a request from the client to access the private network resource, wherein the request from the client is made to the private network resource without any knowledge of the firewall;

    requesting, by the firewall, the client to provide one or more client credentials to authenticate the client;

    sending, by the firewall, one or more firewall credentials to authenticate the firewall, wherein generating the one or more firewall credentials consumes some level of limited firewall processing resources;

    receiving one or more client credentials at the firewall, wherein generating the one or more client credentials consumes some level of limited client processing resources similar in magnitude with the consumption of the limited firewall processing resources;

    verifying, by the firewall, the one or more client credentials;

    establishing a secure channel for accessing the private network resource in response to the verification of the one or more client credentials; and

    forwarding data from the client destined to the private network resource through the firewall using the secure channel.

View all claims
  • 2 Assignments
Timeline View
Assignment View
    ×
    ×