×

System and method for separating addresses from the delivery scheme in a virtual private network

  • US 7,685,309 B2
  • Filed: 08/11/2005
  • Issued: 03/23/2010
  • Est. Priority Date: 12/10/1999
  • Status: Expired due to Term
First Claim
Patent Images

1. A network communication system including a plurality of computers each including a memory which communicate over a private network which operates over a public network infrastructure, the network communication system including:

  • a plurality of software nodes operating in the memory of each of the plurality of computers;

    at least one administrative software node which operates in the memory of at least one of the plurality of computers;

    a channel communication unit in each administrative software node which is configured to create at least one communication channel between at least two of the plurality of software nodes; and

    a security unit in each administrative software node configured to receive messages from one of the plurality of software nodes,wherein,the plurality of software nodes communicate with one another using a plurality of delivery schemes,the messages include an internal address of a software node suitable for use in communicating within the private network and information for translating the internal address of the software node into an external address the software node suitable for communicating over the public network infrastructure,the channel communication unit in one of the administrative software nodes assigns each of the communication channels a unique key information for decrypting private network identification of source software nodes and destination software nodes, and channel identification for communication between the software nodes,one of the administrative software nodes changes the key information for each channel when a new software node is added to the channel,one of the plurality of delivery schemes utilizes the external address of the software node for delivery of the communication and for encryption of the communication over the public network infrastructure,the internal address of the software node is not incorporated in the encryption of the communication or in the delivery scheme used to deliver the communication over the public network infrastructure, andthe received messages are routed based on corresponding packets, which include the key information.

View all claims
  • 0 Assignments
Timeline View
Assignment View
    ×
    ×