IP Library Granted Patent US 12,047,481
Granted Patent B1
US 12,047,481 · App. 18/064,967 · Granted Jul 23, 2024

Systems and methods for altering the character of network traffic

Inventors: Christopher Edward Delaney (Front Royal, VA); Chava Louis Jurado (Chantilly, VA); Jeremiah MacDonald (Greenville, SC); Carl Bailey Jacobs (Fredericksburg, VA)
Assignee: Cyber IP Holdings, LLC
H04L69/326H04L12/4641H04L47/36
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,047,481
App. No.
18/064,967
Granted
Jul 23, 2024
Kind
B1
Abstract

Systems and methods for altering the character of data originating from a Virtual Private Network (VPN) are provided. First data is received from the VPN by a first network interface. The first data comprises a first plurality of packets. A message is generated by combining the first plurality of packets. Second data is generated by segmenting the message into a second plurality of packets. A third plurality of packets in the second plurality of packets is equal to the network maximum transfer unit allowed by the Internet and the last packet in the second plurality of packets is less than the network maximum transfer unit allowed by the Internet. The second data is forwarded to the second network interface. The second network interface sends the data to a webserver.

Claims (49)

1. A system for altering the character of data originating from a Virtual Private Network (VPN), the system comprising:

a first network interface device configured to receive first data from the VPN,

a second network interface device, configured to send second data to a webserver;

a data processor, acting as an intermediary between the first network interface device and the second network interface device, and having memory storing instructions, which when executed result in operations comprising:

receiving the first data from the first network interface, the first data comprising a first plurality of packets;

generating a message by combining the first plurality of packets;

generating the second data by segmenting the message into a second plurality of packets, wherein a third plurality of packets in the second plurality of packets is equal to the network maximum transfer unit allowed by the Internet and the last packet in the second plurality of packets is less than the network maximum transfer unit allowed by the Internet;

forwarding the second data to the second network interface.

2. The system of claim 1 , the operations further comprising:

determining an external Internet Protocol (IP) address not restricted by the webserver;

sending the second data over the second network interface using the external IP address as a source address.

3. The system of claim 1 , wherein each packet in the first plurality of packets is smaller than a network maximum transfer unit allowed by the Internet.

4. The system of claim 1 , wherein the first data indicates a user's desire to perform at least one of the following activities: web browsing, file transfers, media streaming, and Domain Name Server (DNS) lookups.

5. The system of claim 1 , wherein a type of the first network interface is selected from the group comprising: an Ethernet port, an integrated Wireless Fidelity (WiFi) adapter, a Universal Serial Bus (USB) WiFi adaptor, a USB third generation of cellular technology (3G)/fourth generation of cellular technology (4G) adapter, or a USB-tethered cellular device.

6. The system of claim 1 , wherein the data processor resides on one of the following: a Raspberry Pi computing device, a laptop, a desktop, or a server-grade machine.

7. The system of claim 1 , the operations further comprising:

registering an internal Internet Protocol (IP) address with a VPN service in the VPN, the internal IP address corresponding to a point of presence for accessing the Internet; and

establishing a connection between the first network interface and the VPN using the internal IP address.

8. The system of claim 1 , wherein all but the last packet in the second plurality of packets is equal to the network maximum transfer unit allowed by the Internet.

9. The system of claim 1 , the operations further comprising:

performing network address translation (NAT) on the second data prior to forwarding the second data to the second network interface.

10. A method for altering the character of data originating from a Virtual Private Network (VPN), the method comprising:

receiving first data from the VPN;

receiving the first data from the first network interface, the first data comprising a first plurality of packets;

generating a message by combining the first plurality of packets;

generating second data by segmenting the message into a second plurality of packets, wherein a third plurality of packets in the second plurality of packets is equal to the network maximum transfer unit allowed by the Internet and the last packet in the second plurality of packets is less than the network maximum transfer unit allowed by the Internet;

forwarding the second data to a second network interface, which is coupled to the first network interface via a data processor; and

sending second data to a webserver.

11. The method of claim 8 , the operations further comprising:

determining an external Internet Protocol (IP) address not restricted by the webserver;

sending the second data over the second network interface using the external IP address as a source address.

12. The method of claim 8 , wherein each packet in the first plurality of packets is smaller than a network maximum transfer unit allowed by the Internet.

13. The method of claim 8 , wherein the first data indicates a user's desire to perform at least one of the following activities: web browsing, file transfers, media streaming, and Domain Name Server (DNS) lookups.

14. The method of claim 8 , wherein a type of the first network interface is selected from the group comprising: an Ethernet port, an integrated Wireless Fidelity (WiFi) adapter, a Universal Serial Bus (USB) WiFi adaptor, a USB third generation of cellular technology (3G)/fourth generation of cellular technology (4G) adapter, or a USB-tethered cellular device.

15. The method of claim 8 , wherein the data processor resides on one of the following: a Raspberry Pi computing device, a laptop, a desktop, or a server-grade machine.

16. The method of claim 8 , the operations further comprising:

registering an internal Internet Protocol (IP) address with a VPN service in the VPN, the internal IP address corresponding to a point of presence for accessing the Internet; and

establishing a connection between the first network interface and the VPN using the internal IP address.

17. The method of claim 8 , wherein all but the last packet in the second plurality of packets is equal to the network maximum transfer unit allowed by the Internet.

18. The method of claim 8 , the operations further comprising:

performing network address translation (NAT) on the second data prior to forwarding the second data to the second network interface.

19. A non-transitory computer readable storage medium storing one or more programs configured to be executed by one or more data processors, the one or more programs comprising instructions for altering the character of data originating from a Virtual Private Network (VPN), the instructions comprising:

receiving first data from the VPN;

receiving the first data from the first network interface, the first data comprising a first plurality of packets;

generating a message by combining the first plurality of packets;

generating second data by segmenting the message into a second plurality of packets, wherein a third plurality of packets in the second plurality of packets is equal to the network maximum transfer unit allowed by the Internet and the last packet in the second plurality of packets is less than the network maximum transfer unit allowed by the Internet;

forwarding the second data to a second network interface, which is coupled to the first network interface via a data processor; and

sending second data to a webserver.

20. The non-transitory computer readable storage medium of claim 19 , wherein all but the last packet in the second plurality of packets is equal to the network maximum transfer unit allowed by the Internet.

Assignments (2)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 3, 2023
From: BERRYVILLE HOLDINGS, LLC
To: CYBER IP HOLDINGS, LLC
Reel/Frame 062257/0539 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 13, 2022
From: DELANEY, CHRISTOPHER EDWARD; JURADO, CHAVA LOUIS; MACDONALD, JEREMIAH; JACOBS, CARL BAILEY
To: BERRYVILLE HOLDINGS, LLC
Reel/Frame 062203/0831 →
Continuity (3)
Continuation 17210622 · Mar 24, 2021
Continuation 16560105 · Sep 4, 2019
Provisional Application 62732691 · Sep 18, 2018
Cited By (1)
US 12,407,725