×

System and method for integrating mobile networking with security-based VPNs

  • US 7,616,597 B2
  • Filed: 12/19/2002
  • Issued: 11/10/2009
  • Est. Priority Date: 12/19/2002
  • Status: Expired due to Fees
First Claim
Patent Images

1. A method for providing a secure network path between network nodes, the method comprising:

  • providing a home agent module on a network device on a foreign network side of an external firewall and providing a foreign agent module within a network zone created by the external firewall and an internal firewall, the home agent module and the foreign agent module creating a mobile IP proxy;

    establishing a secure data tunnel between the home agent module and the foreign agent module of the mobile IP (MIP) proxy;

    receiving a first registration request from a mobile node, said registration request including a permanent network address for the mobile node;

    sending a second registration request to a home agent specifying the permanent network address and a proxy care-of address;

    creating a network data tunnel between the mobile node and the mobile IP proxy;

    creating a first security association between the mobile node and a VPN gateway using the permanent network address for the mobile node;

    creating a second security association between the home agent and the VPN gateway;

    utilizing, by the home agent, a mobile IP proxy IP address as the care-of address for the VPN gateway;

    processing, by the mobile IP proxy, network data received from the mobile node as a surrogate home agent;

    receiving by the home agent a packet of data from a corresponding node;

    routing the packet of data to the mobile IP proxy;

    processing, by the mobile IP proxy, the packet of data received from the home agent as a surrogate mobile node, the processing including routing the packet of data by the mobile IP proxy to the VPN gateway;

    encapsulating the packet of data in a security layer by the VPN gateway;

    receiving the encapsulated data by the mobile IP proxy from the VPN gateway; and

    routing the encapsulated data from the mobile IP proxy to the mobile node.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×