Universal key authority point with key distribution/generation capability to any form of encryption
System and methods for simplified management of secured data and communications networks with a universal key authority point for the generation and distribution of keys and management of same within the network.
1 . A system for providing secure networks comprising:
a communication network having a network infrastructure; and
software operating on a server in connection to the network for providing security for the network; wherein the software provides:
a management and policy (MAP) server coupled to the network for communication with a universal key authority point (KAP), wherein the MAP includes at least one policy for providing secure association (SA) within the network;
wherein the universal KAP is operable to generate and manage key(s) communicated to a multiplicity of policy enforcement points (PEPs) having nodes distributed throughout the network;
and wherein the network automatically provides a network topography of secure communication based upon the policy and keys distributed to the PEPs for any encryption form at the nodes,
thereby providing a secure, flexible network security solution.
2 . The system of claim 1 , wherein the KAP is operable to reconfigure secure PEP interactivity without requiring change to the network infrastructure.
4 . The system of claim 1 , wherein the KAP is operable to communicate key(s) and policy to peer KAP(s).
5 . The system of claim 4 , wherein the peer KAPs function as separate distributors for separate networks.
6 . A method for providing secure interactivity between points on a network comprising the steps of:
providing a communication network having a network infrastructure and a secure network topography between a multiplicity of policy enforcement points (PEPs) having nodes with any form of encryption associated therewith;
a user providing at least one policy definition to a management and policy (MAP) server in communication with a universal key authority point (KAP);
the universal KAP generating and distributing at least one key to the PEPs consistent with the MAP policy;
the PEPs enforcing the policy at the nodes to provide secure communication across the network topography.
7 . The method of claim 5 , further including the step of the universal KAP communicating at least one key and policy to peer KAPs.