IP Library Granted Patent US 7,886,146
Granted Patent B2
US 7,886,146 · App. 11/724,153 · Granted Feb 8, 2011

Network cryptography system and method

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 7,886,146
App. No.
11/724,153
Granted
Feb 8, 2011
Kind
B2
Abstract

A system for and method of providing encrypted network communications is presented. The system and method involve creating encrypted frames used for secure communications between cooperating peers that are the same size as the original unencrypted frames. The system and method thus provide secure communications with essentially the same transmission characteristics as non-encrypted communications.

Claims (18)

1. A method of sending secure packets from a sender comprising programmed electronic processor to a receiver comprising programmed electronic processor over a computer network, the method comprising:

obtaining, by the sender, a first packet comprising a first header and a first data payload;

encrypting, by the sender, the first data payload to form a first encrypted data payload;

creating a first encryption header, the first encryption header comprising information derived from the first packet header, the first encryption header further comprising data regarding the first encrypted data payload;

creating, by the sender, a service record comprising data relating to the first encryption header;

associating the service record with a service record identification;

creating a first encrypted packet comprising the first encrypted data payload, the first encryption header, and the service record identification;

sending, from the sender to the receiver, the service record, the service record identification, and the first encrypted packet;

retaining, by the receiver, information from service record in association with the service record identification;

obtaining, by the sender, a second packet comprising second header and second data payload, the second packet consisting of a first number of bytes;

encrypting, by the sender, the second data payload to form second encrypted data payload;

creating a second encryption header, the second encryption header comprising information derived from the second packet header, the second encryption header further comprising data regarding the second encrypted data payload;

creating a second encrypted packet comprising the second encrypted data payload, the second encryption header, and the service record identification, the second encrypted packet consisting of a number of bytes equal to the first number of bytes;

sending, from the sender to the receiver, the second encrypted packet;

matching, by the receiver, the service record identification contained in the second encrypted packet with the information from the service record retained by the receiver;

recreating, by the receiver, the second packet header using at least one of the service record and information from the second encryption header; and

decrypting the second encrypted payload using information from at least one of the service record and information from the second encryption header.

2. The method of claim 1 wherein the first number of bytes is 1,514.

Assignments (1)
SECURITY AGREEMENT Recorded Sep 24, 2013
From: KOOLSPAN, INC.
To: SILICON VALLEY BANK
Reel/Frame 031282/0689 →