Methods and apparatuses for providing communication between a server and a client device via a proxy node
Embodiments described herein relate to methods and apparatuses for providing communication between a server and a client device via a proxy node. A method, in a proxy node, wherein the proxy node includes an intermediate node between a server and a client device includes receiving encrypted traffic transmitted between the client device and the server; receiving a key from the client device; performing a service in relation to the encrypted traffic to generate information; encrypting the information using the key to generate encrypted information; and transmitting the encrypted information to the server.
1 . A method, in a proxy node, wherein the proxy node comprises an intermediate node between a server and a client device; the method comprising:
receiving encrypted traffic transmitted between the client device and the server;
receiving a key from the client device;
performing a service with respect to the encrypted traffic to generate information;
encrypting the information using the key to generate encrypted information; and
transmitting the encrypted information to the server; and
forwarding the encrypted traffic to the server or the client device.
2 . The method of claim 1 further comprising:
receiving a connection request from the client device to act as a proxy between the client device and the server.
3 . The method of claim 2 wherein the connection request further comprises a request for access to the service.
4 . The method of claim 1 further comprising receiving a request for access to the service.
5 . The method of claim 1 wherein the key is received as part of a request to perform the service.
6 . The method of claim 1 wherein the key comprises a header protection key used to encrypt headers in the encrypted traffic.
7 . The method of claim 1 wherein the key comprises a key generated by the server for use by the proxy node.
8 . The method of claim 1 , wherein the encrypted traffic is transmitted from the server to the client device, and wherein the information comprises an indication of one or more packet headers received in the encrypted traffic.
9 . The method of claim 8 further comprising:
decrypting the one or more packet headers in the encrypted traffic using a header protection key; and
determining packet sequence numbers of the packet headers, wherein the information comprises an indication of which packet sequence numbers are in the packet headers of the encrypted traffic.
10 . The method of claim 8 wherein a header protection key is received from the client device, and the method further comprising:
decrypting the one or more packet headers in the encrypted traffic using the header protection key; and
determining packet sequence numbers of the packet headers, wherein the information comprises an indication of which packet sequence numbers are in the packet headers of the encrypted traffic.
11 . The method of claim 8 further comprising:
extracting the packet headers from the encrypted traffic, wherein the information comprises the extracted packet headers.
12 . A method, in a client device, wherein the client device is in communication with a server via a proxy node; the method comprising:
communicating encrypted traffic between the client device and the server via the proxy node; and
transmitting a key to the proxy node for use in encrypting and then transmitting, to the server, information produced by a service performed by the proxy node with respect to the encrypted traffic.
13 . The method of claim 12 further comprising:
transmitting a connection request to the proxy node to request that the proxy node act as a proxy between the client device and the server.
14 . The method of claim 13 wherein the connection request further comprises a request for access to the service.
15 . The method of claim 13 wherein the key is transmitted as part of a request to perform the service.
16 . The method of claim 13 wherein the key comprises a header protection key used to encrypt headers in the encrypted traffic.
17 . The method of claim 13 wherein the key comprises a key generated by the server for use by the proxy node.
18 . The method of claim 12 further comprising transmitting a request for access to the service.
19 . A method, in a server, wherein the server is in communication with a client device via a proxy node; the method comprising:
communicating encrypted traffic between the client device and the server via the proxy node; and
receiving, information produced by a service performed by the proxy node wherein the information is encrypted using a key, wherein the key comprises one of: a header protection key used to encrypt headers in the encrypted traffic and a key generated by the server for use by the proxy node.
20 . The method of claim 19 further comprising:
generating the key for use by the proxy node; and
transmitting the key to the client device.