IP Library Granted Patent US 8,037,302
Granted Patent B2
US 8,037,302 · App. 10/490,933 · Granted Oct 11, 2011

Method and system for ensuring secure forwarding of messages

Assignee: Mobility Patent Holding MPH Oy
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,037,302
App. No.
10/490,933
Granted
Oct 11, 2011
Kind
B2
Abstract

The method is for ensuring secure forwarding of a message is performed in a telecommunication network that has at least one terminal from which the message is sent and at least one other terminal to which the message is sent. One or more secure connections are established between different addresses of the first terminal and address of the other terminal. The connections define at least said addresses of the two terminals. When the first terminal moves from one address to another address, a secure connection, which endpoints are the new address of the first terminal and the address of the other terminal, is registered to be at least one of the active connections.

Claims (21)

1. A method for ensuring secure forwarding of a message in a telecommunication network, comprising:

providing a first terminal from which the message is sent and a second terminal to which the message is sent,

a) establishing a first secure connection as being an active connection and extending between a first network address of the first terminal and an original network address of the second terminal, establishing a second secure connection extending between a second network address of the first terminal and the original network address of the second terminal,

b) the first terminal changing from the first network address to the second network address,

the first terminal checking whether the second secure connection already exists, and

c) when the second secure connection already exists, the second terminal registering the already established second secure connection as being the active connection without having to reestablish the second secure connection.

2. The method of claim 1 , wherein the method further comprises establishing the second secure connection when the second secure connection does not already exist.

3. The method of claim 1 , wherein the method further comprises establishing the first secure connection by using IPSec protocols.

4. The method of claim 1 , wherein the method further comprises providing the message with IP packets.

5. The method of claim 1 , wherein the method further comprises checking whether a secure connection between the new network address and the second terminal already exists.

6. The method of claim 5 , wherein the method further comprises checking by using a connection table.

7. The method of claim 1 , wherein the method further comprises using a signaling message or signaling message exchange between the first terminal and the second terminal.

8. The method of claim 1 , wherein the method further comprises automatically updating the new network address of the first terminal by the second terminal when the first terminal sends a message from the new network address.

9. The method of claim 1 , wherein the method further comprises using a key exchange when establishing the first secure connection.

10. The method of claim 2 , wherein the method further comprises using a key exchange performed with Internet Key Exchange (IKE).

11. The method of claim 1 , wherein the second secure connection is registered for immediate and/or later use.

12. The method of claim 11 , wherein the registration for later use is made by the second terminal in a connection table.

13. The method of claim 3 , wherein the method further comprises sending the message to secure traffic between a mobile computer and a destination computer.

14. The method of claim 13 , wherein the method further comprises using a tunneling protocol together with IPSec to provide a tunneling capability.

15. The method of claim 14 , wherein the method further comprises using a Layer 2 Tunneling Protocol (L2TP) tunneling protocol together with IPSec to provide a tunneling capability.

16. The method of claim 3 , wherein the method further comprises using an IPSec tunnel mode to secure traffic between a mobile computer and a destination computer.

Assignments (4)
CHANGE OF NAME Recorded Dec 15, 2009
From: MOBILITY PATENT HOLDING MPH OY
To: MPH TECHNOLOGIES OY
Reel/Frame 023657/0739 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 31, 2008
From: NETSEAL MOBILITY TECHNOLOGIES NMT OY
To: MOBILITY PATENT HOLDING MPH OY
Reel/Frame 021768/0916 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 2, 2005
From: INTRASECURE NETWORKS OY
To: NETSEAL MOBILITY TECHNOLOGIES NMT OY
Reel/Frame 016086/0014 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 24, 2004
From: VAARALA, SAMI; NUOPPONEN, ANTTI; PIETIKAINEN, PANU
To: INTRASECURE NETWORKS OY
Reel/Frame 015354/0300 →
Priority Claims (1)
FI 20011911 · Sep 28, 2001 · national
Continuity (1)
Related Publication 20050177722A1 · Aug 11, 2005