IP Library Granted Patent US 8,730,871
Granted Patent B2
US 8,730,871 · App. 12/686,814 · Granted May 20, 2014

System and method for providing voice communications over a multi-level secure network

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,730,871
App. No.
12/686,814
Granted
May 20, 2014
Kind
B2
Abstract

According to one embodiment, a communication network includes an analog voice bridge coupled to two secure network domains that each have a differing security level. The analog voice bridge includes two codecs that are coupled together through an analog voice line that transfers analog voice signals. The analog voice bridge is coupled to each secure network domain through a network switch that transfers data packet streams from their respective networks to the codecs while restricting data packets that are not associated with the data packet stream.

Claims (36)

1. A communication method comprising:

transferring, using a first network switch, data packets associated with a first voice packet stream between a first secure network domain and a first codec while restricting other data packets not associated with the first voice packet stream, the first voice packet stream encapsulating an analog voice signal;

transferring, using an analog voice line, the analog voice signal between the first codec and a second codec; and

transferring, using a second network switch, data packets associated with a second voice packet stream between a second secure network domain and the second codec while restricting other data packets not associated with the second voice packet stream, the second voice packet stream encapsulating the analog voice signal, the first secure network domain classified according to a first security level that differs from a second security level of the second secure network domain.

2. The communication method of claim 1 , further comprising:

restricting, using the first network switch, transfer of data packets not associated with the first voice packet stream between the first secure network domain and the first codec; and

restricting, using the second network switch, transfer of data packets not associated with the second voice packet stream between the second secure network domain and the second codec.

3. The communication method of claim 1 , further comprising restricting, using the first or second network switch, access of one or more terminals coupled to the first or second network switch according to an access control list stored in the first or second network switch, respectively.

4. The communication method of claim 1 , further comprising:

restricting, using a packet filter coupled between one or more terminals and the first or second secure network domain, access to the one or more terminals according to an access control list stored in the packet filter, the access control list storing information associated with the one or more terminals.

5. The communication method of claim 4 , further comprising restricting access, using the packet filter, to the one or more terminals according to their type.

6. The communication method of claim 4 , further comprising:

establishing a voice connection through an analog voice bridge using a browser executed on one of the one or more terminals, wherein the analog voice bridge comprises the first and second codecs coupled together through an analog voice line.

7. The communication method of claim 4 , wherein the one or more terminals are coupled to the first or second secure network through a wireless network.

8. The communication method of claim 1 , further comprising restricting voice communication of one or more terminals coupled to the first secure network domain or the second secure network domain according to information associated with the one or more terminals stored in a routing table coupled to the first codec or the second codec.

9. The communication method of claim 1 , wherein the first codec is embodied in a computing system that is independent of a second computing system embodying the second codec.

10. The communication method of claim 1 , further comprising selectively monitoring voice communications through an analog voice bridge, wherein the analog voice bridge comprises the first and second codecs coupled together through an analog voice line.

11. The communication method of claim 1 , further comprising auditing voice communications through an analog voice bridge, wherein the analog voice bridge comprises the first and second codecs coupled together through an analog voice line.

12. The communication method of claim 1 , wherein the analog voice signal comprises an intercom connection.

13. A communication system comprising:

a first network switch to transfer data packets associated with a first voice packet stream between a first secure network domain and a first codec while restricting other data packets not associated with the first voice packet stream, the first voice packet stream encapsulating an analog voice signal;

an analog voice line to transfer the analog voice signal between the first codec and a second codec; and

a second network switch to transfer data packets associated with a second voice packet stream between a second secure network domain and the second codec while restricting other data packets not associated with the second voice packet stream, the second voice packet stream encapsulating the analog voice signal, the first secure network domain classified according to a first security level that differs from a second security level of the second secure network domain.

14. The communication system of claim 13 , wherein the first network switch restricts transfer of data packets not associated with the first voice packet stream between the first secure network domain and the first codec; and

the second network switch restricts transfer of data packets not associated with the second voice packet stream between the second secure network domain and the second codec.

15. The communication system of claim 13 , wherein the first or second network switch restricts access of one or more terminals coupled to the first or second network switch according to an access control list stored in the first or second network switch, respectively.

16. The communication system of claim 13 , further comprising:

a packet filter coupled between one or more terminals and the first or second secure network domain to restrict access to the one or more terminals according to an access control list stored in the packet filter, the access control list storing information associated with the one or more terminals.

17. The communication system of claim 16 , wherein the packet filter restricts access to the one or more terminals according to their type.

18. The communication system of claim 16 , wherein the system is configured to establish a voice connection through an analog voice bridge using a browser executed on one of the one or more terminals, wherein the analog voice bridge comprises the first and second codecs coupled together through an analog voice line.

19. The communication system of claim 16 , wherein the one or more terminals are coupled to the first or second secure network through a wireless network.

20. The communication system of claim 13 , wherein the system is configured to restrict voice communication of one or more terminals coupled to the first secure network domain or the second secure network domain according to information associated with the one or more terminals stored in a routing table coupled to the first codec or the second codec.

21. The communication system of claim 13 , wherein the first codec is embodied in a computing system that is independent of a second computing system embodying the second codec.

22. The communication system of claim 13 , wherein the system is configured to selectively monitor voice communications through an analog voice bridge, wherein the analog voice bridge comprises the first and second codecs coupled together through an analog voice line.

23. The communication system of claim 13 , wherein the system is configured to audit voice communications through an analog voice bridge, wherein the analog voice bridge comprises the first and second codecs coupled together through an analog voice line.

24. The communication system of claim 13 , wherein the analog voice signal comprises an intercom connection.

Assignments (12)
CHANGE OF NAME Recorded Mar 21, 2025
From: FORCEPOINT FEDERAL HOLDINGS LLC
To: EVERFOX HOLDINGS LLC
Reel/Frame 070585/0625 →
PARTIAL PATENT RELEASE AND REASSIGNMENT AT REEL/FRAME 055052/0302 Recorded Oct 3, 2023
From: CREDIT SUISSE, AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
To: FORCEPOINT FEDERAL HOLDINGS LLC (F/K/A FORCEPOINT LLC)
Reel/Frame 065103/0147 →
SECURITY INTEREST Recorded Sep 29, 2023
From: FORCEPOINT FEDERAL HOLDINGS LLC
To: APOLLO ADMINISTRATIVE AGENCY LLC, AS COLLATERAL AGENT
Reel/Frame 065086/0822 →
CHANGE OF NAME Recorded May 12, 2021
From: FORCEPOINT LLC
To: FORCEPOINT FEDERAL HOLDINGS LLC
Reel/Frame 056216/0309 →
PATENT SECURITY AGREEMENT Recorded Jan 20, 2021
From: REDOWL ANALYTICS, INC.; FORCEPOINT LLC
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
Reel/Frame 055052/0302 →
RELEASE OF SECURITY INTEREST IN PATENTS Recorded Jan 8, 2021
From: RAYTHEON COMPANY
To: WEBSENSE, INC.; PORTAUTHORITY TECHNOLOGIES, LLC (FKA PORTAUTHORITY TECHNOLOGIES, INC.); RAYTHEON OAKLEY SYSTEMS, LLC; FORCEPOINT FEDERAL LLC (FKA RAYTHEON CYBER PRODUCTS, LLC, FKA RAYTHEON CYBER PRODUCTS, INC.)
Reel/Frame 055492/0146 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 1, 2017
From: FORCEPOINT FEDERAL LLC
To: FORCEPOINT LLC
Reel/Frame 043397/0460 →
CHANGE OF NAME Recorded Feb 16, 2016
From: RAYTHEON CYBER PRODUCTS, LLC
To: FORCEPOINT FEDERAL LLC
Reel/Frame 037821/0818 →
PATENT SECURITY AGREEMENT Recorded Jun 9, 2015
From: WEBSENSE, INC.; RAYTHEON OAKLEY SYSTEMS, LLC; RAYTHEON CYBER PRODUCTS, LLC (FORMERLY KNOWN AS RAYTHEON CYBER PRODUCTS, INC.); PORT AUTHORITY TECHNOLOGIES, INC.
To: RAYTHEON COMPANY
Reel/Frame 035859/0282 →
CHANGE OF NAME Recorded Jun 2, 2015
From: RAYTHEON CYBER PRODUCTS, INC.
To: RAYTHEON CYBER PRODUCTS, LLC
Reel/Frame 035806/0367 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 28, 2015
From: RAYTHEON COMPANY
To: RAYTHEON CYBER PRODUCTS, INC.
Reel/Frame 035774/0322 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 13, 2010
From: MASIYOWSKI, JOHN F.; MAGON, RAYMOND A.; TIERNEY, MICHAEL O.; MARCHANT, ROBERT L.
To: RAYTHEON COMPANY
Reel/Frame 023776/0813 →