IP Library › Granted Patent US 7,437,553
Granted Patent B2
US 7,437,553 · App. 10/687,216 · Granted Oct 14, 2008

Systems and methods for providing autonomous security

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 7,437,553
App. No.
10/687,216
Granted
Oct 14, 2008
Kind
B2
Abstract

Systems and methods for providing autonomous security are configured to modify an original header associated with an original data packet wherein key information is added; encrypt original data associated with the original data packet in response to the key information; and form an encrypted data packet including the modified header and the encrypted data, wherein the encrypted data packet is a same size as the original data packet.

Claims (28)

1. A method comprising:

modifying an original header associated with an original data packet wherein key information is added, wherein the modifying an original header further includes identifying at least one field in the original header for transporting packet assembly information and replacing the packet assembly information in the field with at least a portion of the key information;

encrypting original data associated with the original data packet in response to the key information; and

forming an encrypted data packet including a modified header and encrypted data, wherein the modified header is a same size as the original header.

2. The method according to claim 1 further comprising receiving a unique key identifier associated with the encrypted data packet.

3. The method according to claim 2 wherein the modifying further comprises modifying the original header in response to the unique key identifier.

4. The method according to claim 1 wherein the modifying further comprises replacing a fragmentation identification and a fragment offset of the original header with a mixing key and an offset.

5. The method according to claim 1 wherein the original data packet and the encrypted data packet utilize Internet Protocol version 4.

6. A system comprising:

means for modifying an original header associated with an original data packet wherein key information is added, wherein the means for modifying an original header further includes the means for identifying at least one field in the original header for transporting packet assembly information and replacing the packet assembly information in the field with at least a portion of the key information;

means for encrypting original data associated with the original data packet in response to the key information; and

means for forming an encrypted data packet including a modified header and encrypted data, wherein the modified header is a same size as the original header.

7. A network encryption method, comprising:

receiving a packet having a packet header and a packet payload;

identifying a first field of the packet header for carrying packet assembly information;

replacing the packet assembly information in the first field with a first encryption value and a second encryption value;

encrypting original data associated with the packet payload in response to the first encryption value and the second encryption value; and

forming an encrypted data packet including a modified header and encrypted data, wherein the modified header has a same size as the packet header.

8. The method according to claim 7 , further comprising:

identifying a second field of the packet header for carrying packet assembly information; and

replacing the packet assembly information in the second field with a third encryption value.

9. The method according to claim 8 , wherein the identifying a first field of the packet header for carrying packet assembly information includes identifying a fragment identification in the packet header.

10. The method according to claim 9 , wherein the identifying a second field of the packet header for carrying packet assembly information includes identifying a fragment offset in the packet header.

11. The method according to claim 10 , wherein the replacing packet assembly information in the first field with a first encryption value and a second encryption value further includes writing a mixing key refreshing ratio value and a working key refresh ratio in the first field.

12. The method according to claim 11 , wherein the replacing packet assembly information in the second field with a third encryption value further includes waiting an offset of selecting key value in the second field.

13. The method according to claim 8 , further includes activating checksum in accordance with a checksum field in the packet header after the packet assembly information in the first and the second fields is replaced with the first, second, and third encryption values.

14. The method according to claim 7 , further comprising receiving a unique key identifier associated with the encrypted data packet.

15. The method according to claim 7 , wherein the packet and the encrypted data packet utilize Internet Protocol version 4.

Continuity (2)
Provisional Application 6041880200 · Oct 15, 2002
Related Publication 20040103279A1 · May 27, 2004