IP Library › Granted Patent US 10,313,156
Granted Patent B2
US 10,313,156 · App. 15/745,257 · Granted Jun 4, 2019

Communication system, communication apparatus, communication method, terminal, non-transitory medium

Inventors: Satoru Ishii (Tokyo, JP); Hideo Hasegawa (Tokyo, JP); Shintaro Nakano (Tokyo, JP)
Assignee: NEC CORPORATION
H04L12/4641H04L12/4633H04L12/66H04L12/2854H04W84/12
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,313,156
App. No.
15/745,257
Granted
Jun 4, 2019
Kind
B2
Abstract

The present invention provides secure communication between a data center, in which a wide area network (WAN) is interposed between the data center and a wireless LAN to which a terminal connects to, comprises a VPN apparatus (GW) that connects with the terminal using a VPN through the wide area network and the wireless LAN; and a virtual core network virtualizing at least a part of constituent elements of a core network, wherein the VPN apparatus is connected to the virtual core network, and the terminal communicates with a connection destination, from the VPN via the VPN apparatus, via the virtual core network, and further via a packet data network to which the virtual core network connects.

Claims (42)

1. A communication system comprising:

a data center with a wide area network being interposed between the data center and a wireless LAN (Local Area Network) to which a terminal connects to, wherein the data center comprises:

a VPN apparatus that connects with the terminal using a VPN (Virtual Private Network) through the wide area network and the wireless LAN; and

a virtual core network virtualizing at least a part of constituent elements of a core network, wherein the VPN apparatus is connected to the virtual core network,

wherein the terminal communicates with a connection destination, from the VPN via the VPN apparatus, via the virtual core network, and further via a packet data network to which the virtual core network connects.

2. The communication system according to claim 1 , wherein the terminal receives an incoming call or data destined to the terminal from the packet data network side, via the virtual core network of the data center and through the VPN from the VPN apparatus of the data center.

3. The communication system according to claim 1 , wherein the VPN apparatus of the data center manages the VPN between the terminal and the VPN apparatus, on a per terminal basis or on a per terminal user basis.

4. The communication system according to claim 3 , wherein a plurality of terminals connecting to one wireless LAN access point, connect with the VPN apparatus of the data center, respectively by a plurality of the VPNs.

5. The communication system according to claim 1 , wherein when switching from one wireless LAN access point to which the terminal connects, to another wireless LAN access point, the terminal releases a VPN tunnel via the one wireless LAN access point between the terminal and the VPN apparatus of the data center, and establishes a new VPN tunnel between said terminal and the VPN apparatus of the data center via the other wireless LAN access point.

6. The communication system according to claim 1 , wherein the terminal comprises:

a unit that selects a wireless LAN access point to which the terminal connects.

7. The communication system according to claim 1 , wherein the VPN apparatus is arranged in a gateway in the data center or in a predetermined node in the virtual core network.

8. A communication apparatus arranged in a data center, wherein a wide area network is interposed between the data center and a wireless LAN (Local Area Network) to which a terminal connects, the communication apparatus comprising:

a VPN apparatus that performs connection between the terminal and the communication apparatus using a VPN (Virtual Private Network) extending through the wireless LAN and the wide area network,

wherein the VPN apparatus is connected to a virtual core network in the data center, the virtual core network virtualizing at least a part of constituent elements of a core network, and

wherein the terminal communicates with a connection destination, from the VPN via the VPN apparatus, via the virtual core network, and further via a packet data network to which the virtual core network connects.

9. The communication apparatus according to claim 8 , wherein the VPN apparatus manages the VPN between the terminal and the VPN apparatus, on a per terminal basis or on a per terminal user basis.

10. The communication apparatus according to claim 8 , wherein the terminal receives an incoming call or data destined to the terminal from the packet data network side, via the virtual core network of the data center and through the VPN from the VPN apparatus of the data center.

11. A communication method comprising:

performing connection between a terminal and a data center, using a VPN (Virtual Private Network) through a wireless LAN (Local Area Network) and a wide area network, the wide area network being interposed between the data center and the wireless LAN to which the terminal connects;

terminating the VPN by a VPN apparatus in the data center, the VPN apparatus connecting to a virtual core network in the data center, the virtual core network virtualizing at least a part of constituent elements of a core network; and

the terminal communicating, from the VPN via the VPN apparatus, via the virtual core network, and further via a packet data network to which the virtual core network connects, with a connection destination.

12. The communication method according to claim 11 , comprising:

the terminal receiving an incoming call or data destined to the terminal from the packet data network side, via the virtual core network of the data center and through the VPN.

13. The communication method according to claim 11 , comprising:

when switching from one wireless LAN access point to which the terminal connects, to another wireless LAN access point,

the terminal releasing a VPN tunnel via the one wireless LAN access point between the terminal and the VPN apparatus of the data center, and establishing a new VPN tunnel between the terminal and the VPN apparatus of the data center via the other wireless LAN access point.

14. The communication method according to claim 11 , comprising:

the terminal selecting a wireless LAN access point to which the terminal connects.

15. The communication method according to claim 11 , comprising:

managing the VPN between the terminal and the VPN apparatus, on a per terminal basis or on a per terminal user basis.

16. The communication method according to claim 15 , comprising:

a plurality of terminals that connect to one wireless LAN access point, connecting with the VPN apparatus of the data center, respectively by a plurality of the VPNs.

17. A terminal adapted to connect with a data center via a wireless LAN (Local Area Network) and a wide area network, comprising:

an VPN (Virtual Private Network) apparatus that performs connection between the terminal and the data center using a VPN (Virtual Private Network) through the wireless LAN and the wide area network,

wherein the terminal communicates with a connection destination, from the VPN, via a virtual core network provided in the data center, the virtual core network virtualizing at least a part of the constituent elements of a core network, and further, via a packet data network to which the virtual core network connects.

18. The terminal according to claim 17 , wherein, when switching from one wireless LAN access point to which the terminal connects, to another wireless LAN access point,

releases a VPN tunnel via the one wireless LAN access point between the terminal and the VPN apparatus of the data center, and

establishes a new VPN tunnel between the terminal and the VPN apparatus of the data center via the other wireless LAN access point.

19. The terminal according to claim 17 , comprising:

a unit that selects a wireless LAN access point to which the terminal connects.

20. The terminal according to claim 17 , wherein the terminal receives an incoming call or data destined to the terminal from the packet data network side, via the virtual core network of the data center and through the VPN.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 16, 2018
From: ISHII, SATORU; HASEGAWA, HIDEO; NAKANO, SHINTARO
To: NEC CORPORATION
Reel/Frame 044629/0697 →
Priority Claims (1)
JP 2015-143404 · Jul 17, 2015 · national
Continuity (1)
Related Publication 20190007236A1 · Jan 3, 2019
Cited By (1)
US 12,641,419