-
公开(公告)号:US09479356B2
公开(公告)日:2016-10-25
申请号:US14372735
申请日:2012-12-13
发明人: Yinzhu Yang , Zhanqun Wang
IPC分类号: H04L12/715 , H04L12/46
CPC分类号: H04L12/4633 , H04L45/04
摘要: According to an example a Dynamic Virtual Private Network (D-VPN) large-scale networking method includes establishing, by a Spoke, a DVPN channel with a Hub; issuing, by the Spoke, subnet information about the Spoke to the Hub; and obtaining, by the Spoke, subnet information about the Hub and another Spoke as well as corresponding private network address of a next hop sent by the Hub.
摘要翻译: 根据示例,动态虚拟专用网(D-VPN)大规模网络方法包括通过Spoke建立具有Hub的DVPN信道; 通过Spoke发布关于Spoke的子网信息到Hub; 并通过Spoke获取有关Hub和另一个Spoke的子网信息以及Hub发送的下一跳的相应专用网络地址。
-
公开(公告)号:US09344434B2
公开(公告)日:2016-05-17
申请号:US14372732
申请日:2013-07-09
发明人: Zhanqun Wang
CPC分类号: H04L63/105 , H04L63/0272 , H04L63/065 , H04L63/08 , H04L63/102 , H04L63/20 , H04L63/205
摘要: An example of the present disclosure includes a Group Member (GM) registering on a Key Server (KS) in a Group Encrypted Transport Virtual Private Network (GET VPN). The KS is to manage at least one group, and GMs belonging to the same group have the same group ID. The KS receives a group ID and a Security Association, SA, policy list supported by a GM sent by the GM. The KS, according to the group ID, determines a KS SA policy list corresponding to the group, and matches the SA policy list supported by the GM with the KS SA policy list according to a priority. A group SA policy with the highest priority is sent the GM.
摘要翻译: 本公开的示例包括在组加密传输虚拟专用网(GET VPN)中的密钥服务器(KS)上注册的组成员(GM)。 KS至少管理一个组,属于同一组的GM具有相同的组ID。 KS收到由总经理发送的GM的支持的组ID和安全关联SA,策略列表。 根据组ID,KS确定与组对应的KS SA策略列表,并根据优先级将GM支持的SA策略列表与KS SA策略列表进行匹配。 发送GM的优先级最高的SA组策略。
-
公开(公告)号:US20150033321A1
公开(公告)日:2015-01-29
申请号:US14372724
申请日:2013-01-22
发明人: Yinzhu Yang , Zhanqun Wang
CPC分类号: H04L63/0272 , H04L12/4633 , H04L12/4641 , H04L12/6418 , H04L61/20
摘要: A Dynamic Virtual Private Network (DVPN) includes Virtual Private Network (VPN) Address Management (VAM) clients and a VAM server, and each VAM client includes a private gateway address, public address and subnet of the VAM client that are provided to the VAM server when registering in the VAM server. When a source VAM client receives a packet that is sent by a subnet of the source VAM client to a subnet of a destination VAM client, the source VAM client requests the VAM server to provide a next-hop address of subnet, a private gateway address, a public address and subnet of the destination VAM client to establish a DVPN tunnel between the source VAM client and the destination VAM client.
摘要翻译: 动态虚拟专用网(DVPN)包括虚拟专用网(VPN)地址管理(VAM)客户端和VAM服务器,每个VAM客户端包括提供给VAM的VAM客户端的专用网关地址,公网地址和子网 服务器在VAM服务器上注册时。 源VAM客户端接收到源VAM客户端子网发送到目的VAM客户端子网的报文时,源VAM客户端请求VAM服务器提供子网的下一跳地址,私网地址 ,目的VAM客户端的公网地址和子网,建立源VAM客户端和目的VAM客户端之间的DVPN隧道。
-
公开(公告)号:US20150295936A1
公开(公告)日:2015-10-15
申请号:US14372732
申请日:2013-07-09
发明人: Zhanqun Wang
IPC分类号: H04L29/06
CPC分类号: H04L63/105 , H04L63/0272 , H04L63/065 , H04L63/08 , H04L63/102 , H04L63/20 , H04L63/205
摘要: An example of the present disclosure includes a Group Member (GM) registering on a Key Server (KS) in a Group Encrypted Transport Virtual Private Network (GET VPN). The KS is to manage at least one group, and GMs belonging to the same group have the same group ID. The KS receives a group ID and a Security Association, SA, policy list supported by a GM sent by the GM. The KS, according to the group ID, determines a KS SA policy list corresponding to the group, and matches the SA policy list supported by the GM with the KS SA policy list according to a priority. A group SA policy with the highest priority is sent the GM.
摘要翻译: 本公开的示例包括在组加密传输虚拟专用网(GET VPN)中的密钥服务器(KS)上注册的组成员(GM)。 KS至少管理一个组,属于同一组的GM具有相同的组ID。 KS收到由总经理发送的GM的支持的组ID和安全关联SA,策略列表。 根据组ID,KS确定与组对应的KS SA策略列表,并根据优先级将GM支持的SA策略列表与KS SA策略列表进行匹配。 发送GM的优先级最高的SA组策略。
-
公开(公告)号:US20140369349A1
公开(公告)日:2014-12-18
申请号:US14372735
申请日:2012-12-13
发明人: Yinzhu Yang , Zhanqun Wang
IPC分类号: H04L12/46 , H04L12/715
CPC分类号: H04L12/4633 , H04L45/04
摘要: According to an example a Dynamic Virtual Private Network (D-VPN) large-scale networking method includes establishing, by a Spoke, a DVPN channel with a Hub; issuing, by the Spoke, subnet information about the Spoke to the Hub; and obtaining, by the Spoke, subnet information about the Hub and another Spoke as well as corresponding private network address of a next hop sent by the Hub.
摘要翻译: 根据一个示例,动态虚拟专用网(D-VPN)大规模网络方法包括通过Spoke建立具有Hub的DVPN信道; 通过Spoke发布关于Spoke的子网信息到Hub; 并通过Spoke获取有关Hub和另一个Spoke的子网信息以及Hub发送的下一跳的相应专用网络地址。
-
-
-
-