IP Library Granted Patent US 9,185,130
Granted Patent B2
US 9,185,130 · App. 14/131,959 · Granted Nov 10, 2015

Transmission apparatus, reception apparatus, communication system, transmission method, and reception method

Inventor: Tetsuro Sato (Kanagawa, JP)
Assignee: PANASONIC INTELLECTUAL PROPERTY MANAGEMENT CO., LTD.
H04L63/1458H04L9/36H04L63/0428H04L63/162H04L63/164H04N21/23476
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,185,130
App. No.
14/131,959
Granted
Nov 10, 2015
Kind
B2
Abstract

Provided is a transmission apparatus capable of avoiding unnecessary decryption and preventing a denial-of-service attack. The transmission apparatus that establishes a secure communications channel (SA) between the transmission apparatus and a reception apparatus includes a creation section that creates a packet, an encryption section that, based on a ratio of a redundant packet to the packets created by the packet creation section and on an instruction from the reception apparatus, determines an encryption coverage in the created packet and encrypts data in the encryption coverage, and a transmission section that transmits the encrypted packet through SA.

Claims (48)

1. A transmission apparatus configured to establish a secure communications channel between the transmission apparatus and a reception apparatus, comprising;

a packet creation section configured to create a packet;

an encryption section configured to, based on a ratio of redundant packets to the packets created by the packet creation section or on an instruction from the reception apparatus, determine an encryption coverage in the packet created by the packet creation section and encrypt data in the encryption coverage; and

a transmission section configured to transmit the packet encrypted by the encryption section through the secure communications channel.

2. The transmission apparatus according to claim 1 ,

wherein the encryption section switches between first encryption in which substantially an entirety of the packet created by the packet creation section is encrypted and second encryption in which a data portion included in the packet created by the packet creation section is encrypted.

3. The transmission apparatus according to claim 1 ,

wherein the encryption section adds a header not included in the encryption coverage to the beginning of an encryption header including information on the encryption.

4. The transmission apparatus according to claim 2 ,

wherein in performing the second encryption, the encryption section adds a header not included in the encryption coverage to the end of an encryption header including information on the encryption and

wherein a header for the encryption includes information on a length from a header for the corresponding encryption to the encryption coverage.

5. The transmission apparatus according to claim 2 ,

wherein in performing the second encryption, the encryption section encrypts the data portion using an encryption method that is prescribed for every application and does not add an encryption header including information on the encryption.

6. The transmission apparatus according to claim 1 ,

wherein the packet created by the packet creation section includes a real-time transport protocol (RTP) packet, a forward error correction (FEC) packet, a transmission control protocol (TCP) packet, or an application packet.

7. A reception apparatus configured to establish a secure communications channel between the reception apparatus and a transmission apparatus, comprising:

a reception section configured to receive a packet through the secure communications channel; and

an encryption instruction section configured to, depending on whether or not the packet received by the reception section satisfies a predetermined reference, determine an encryption coverage in which the packet created by the transmission apparatus is encrypted and instruct the transmission apparatus to encrypt data in the encryption coverage,

wherein the predetermined reference is based on a number of redundant packets received by the reception section.

8. The reception apparatus according to claim 7 ,

wherein the encryption instruction section instructs the transmission apparatus to switch between first encryption in which substantially an entirety of the packet created by the transmission apparatus is encrypted and second encryption in which a data portion included in the packet created by the transmission apparatus is encrypted.

9. The reception apparatus according to claim 8 ,

wherein, if the number of the packets that are received by the reception section and are not encrypted is a predetermined number or greater, the encryption instruction section determines that the first encryption has to be performed.

10. The reception apparatus according to claim 8 further comprising:

an authentication section configured to authenticate the packet received by the reception section,

wherein, if the number of the packets in which an authentication error occurs is a predetermined number or greater as a result of the authentication by the authentication section, the encryption instruction section determines that the first encryption has to be performed.

11. The reception apparatus according to claim 8 ,

wherein, if the number of redundant packets received by the reception section is a predetermined value or greater, the encryption instruction section determines that the second encryption has to be performed.

12. The reception apparatus according to claim 8 ,

wherein, if the number of redundant packets received by the reception section is below a predetermined value, the encryption instruction section determines that the first encryption has to be performed.

13. The reception apparatus according to claim 7 , further comprising:

a decryption section configured to decrypt the packet received by the reception section,

wherein, if the packet received by the reception section is not encrypted, as a result of authenticating the packet received by the reception section, when an authentication error occurs or when the packet received by the reception section is a redundant packet, the decryption section does not perform decryption.

14. A communication system configured to establish a secure communications channel between a transmission apparatus and a reception apparatus, the transmission apparatus comprising:

a packet creation section configured to create a packet;

an encryption section configured to, based on a ratio of a redundant packet to the packets created by the packet creation section or on an instruction from the reception apparatus, determine an encryption coverage in the packet created by the packet creation section and encrypt data in the encryption coverage; and

a transmission section configured to transmit the packet encrypted by the encryption section through the secure communications channel,

the reception apparatus including

a reception section configured to receive the packet through the secure communications channel, and

an encryption instruction section configured to, depending on whether or not the packet received by the reception section satisfies a predetermined reference, determine an encryption coverage in which the packet created by the transmission apparatus is encrypted and instruct the transmission apparatus to encrypt data in the encryption coverage.

15. A transmission method for use in a transmission apparatus configured to establish a secure communications channel between the transmission apparatus and a reception apparatus, the method comprising:

a step of creating a packet;

a step of determining an encryption coverage in the packet created by the packet creation section and encrypting data in the encryption coverage, based on a ratio of a redundant packet to the packets created by the packet creation section and on an instruction from the reception apparatus; and

a step of transmitting the encrypted packet through the secure communications channel.

16. A reception method for use in a reception apparatus configured to establish a secure communications channel between the reception apparatus and a transmission apparatus, the method comprising:

a step of receiving a packet through the secure communications channel; and

a step of determining an encryption coverage in which the packet created by the transmission apparatus is encrypted and instructing the transmission apparatus to encrypt data in the encryption coverage, depending on whether or not the packet received by the reception section satisfies a predetermined reference,

wherein the predetermined reference is based on a number of redundant packets received by the reception apparatus.

Assignments (4)
CORRECTIVE ASSIGNMENT TO CORRECT THE ERRONEOUSLY FILED APPLICATION NUMBERS 13/384239, 13/498734, 14/116681 AND 14/301144 PREVIOUSLY RECORDED ON REEL 034194 FRAME 0143. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Dec 24, 2020
From: PANASONIC CORPORATION
To: PANASONIC INTELLECTUAL PROPERTY MANAGEMENT CO., LTD.
Reel/Frame 056788/0362 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 31, 2018
From: PANASONIC INTELLECTUAL PROPERTY MANAGEMENT CO., LTD.
To: SOVEREIGN PEAK VENTURES, LLC
Reel/Frame 048268/0916 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 10, 2014
From: PANASONIC CORPORATION
To: PANASONIC INTELLECTUAL PROPERTY MANAGEMENT CO., LTD.
Reel/Frame 034194/0143 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 2, 2014
From: SATO, TETSURO
To: PANASONIC CORPORATION
Reel/Frame 032331/0360 →
Priority Claims (1)
JP 2012-122363 · May 29, 2012 · national
Continuity (1)
Related Publication 20140201523A1 · Jul 17, 2014