IP Library Granted Patent US 11,310,076
Granted Patent B2
US 11,310,076 · App. 16/958,215 · Granted Apr 19, 2022

High-availability secure communication system

Inventor: Denis Olier (Achères, FR)
Assignee: BULL SAS
H04L12/4633H04L63/0272H04W12/06H04W40/248H04W48/18H04W88/06H04W88/16
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,310,076
App. No.
16/958,215
Granted
Apr 19, 2022
Kind
B2
Abstract

A system for high-availability secure communication between a mobile terminal and an application server. The terminal is connected to a communication box having at least three physical communication interfaces, a first interface used for communicating with the terminal. The communication box connected to an access server by first and second links through corresponding first and second physical remote communication interfaces. The application server connected to the access server. The terminal and the application server communicating through the communication box and the access server using one of two previously established links. The communication box is the network gateway of the terminal. The communication box: maintains a local routing table based on the routing performance of at least one physical remote communication interface; maintains a remote routing table on the access server so that the communication box and the access server use the same link at the same time.

Claims (32)

1. A very high-availability secure communication system for a mobile terminal for establishing local and remote communications, comprising:

a mobile terminal connected to a communication box, said communication box comprising at least four physical communication interfaces comprising a first physical communication interface, a second physical communication interface, a third physical communication interface, a fourth physical communication interface, wherein

the first physical communication interface serves to establish communications via Narrowband Asynchronous Transfer Mode (NATM) with the mobile terminal,

the second physical communication interface is a first physical remote communication interface and the third physical communication interface is a second physical remote communication interface, wherein the first physical remote communication interface and the second physical remote communication interface serve to establish remote communications via mobile networks,

the fourth physical communication interface serves to establish local communications with another box by direct communication and according to an IP protocol according to a predetermined addressing plan;

wherein the communication box uses the fourth physical communication interface when the first physical remote communication interface and the second physical remote communication interface are defective;

wherein the mobile terminal communicates with an application server as follows:

the communication box is connected to an access server by a first link of a Virtual Private Network (VPN 0 ) established through the first physical remote communication interface and by a second link of a Virtual Private Network (VPN 1 ) established through the second physical remote communication interface;

the application server is connected to the access server, the mobile terminal and the application server communicate through the communication box and the access server using one of the first link (VPN 0 ) and the second link (VPN 1 );

the communication box is a network gateway of the mobile terminal;

the communication box:

maintains a local routing table based on a routing performance of at least one physical remote communication interface;

maintains a remote routing table on the access server so that the communication box and the access server are using a same link at a same time.

2. The very high-availability secure communication system according to claim 1 , wherein the fourth physical communication interface operates in a frequency band centered on 900 MHz.

3. The very high-availability secure communication system according to claim 1 , wherein one or more of the at least four physical communication interfaces of the communication box is a wired serial interface.

4. The very high-availability secure communication system according to claim 3 , wherein one or more of the at least four physical communication interfaces of the communication box is a wireless communication interface.

5. The very high-availability secure communication system according to claim 1 , wherein the routing performance of the at least one physical remote communication interface is a measure of a power of a signal received on the at least one physical remote communication interface, the routing performance of which is to be evaluated.

6. The very high-availability secure communication system according to claim 1 , wherein the routing performance of the at least one physical remote communication interface is measured by a response time to a predetermined message transmitted via the at least one physical remote communication interface, the routing performance of which is to be evaluated.

7. The very high-availability secure communication system according to claim 6 , wherein the predetermined message is transmitted at a period within a range of 2 seconds to 5 seconds.

8. The very high-availability secure communication system according to claim 6 , wherein the routing performance of the at least one physical remote communication interface is considered to be defective if the response time to the predetermined message is greater than 1 second.

9. The very high-availability secure communication system according to claim 1 , wherein the first link and the second link are virtual private tunnels.

10. The very high-availability secure communication system according to claim 1 , wherein the communication box further comprises a provisional memory in which a unique identifier of a terminal is stored, wherein only the terminal comprising the unique identifier is authorized to communicate with the communication box by a wireless local communication interface, wherein the communication box filters communications made by the wireless local communication interface, and wherein the unique identifier is a MAC address of the wireless local communication interface of the terminal.

11. The very high-availability secure communication system according to claim 10 , wherein the provisional memory is written at a moment when a connection is detected on a wired physical communication interface between the mobile terminal and the communication box, the terminal serving as a peripheral device for the communication box.

12. A very high-availability secure communication system for a mobile terminal for establishing local and remote communications, comprising:

a mobile terminal connected to a communication box, said communication box comprising at least four physical communication interfaces comprising a first physical communication interface, a second physical communication interface, a third physical communication interface, a fourth physical communication interface, wherein

the first physical communication interface serves to establish communications via Narrowband Asynchronous Transfer Mode (NATM) with the mobile terminal,

the second physical communication interface is a first physical remote communication interface and the third physical communication interface is a second physical remote communication interface, wherein the first physical remote communication interface and the second physical remote communication interface serve to establish remote communications via mobile networks,

the fourth physical communication interface serves to establish local communications with another box by direct communication and according to an IP protocol according to a predetermined addressing plan;

wherein the communication box uses the fourth physical communication interface when the first physical remote communication interface and the second physical remote communication interface are defective;

wherein the communication box further comprises a provisional memory in which a unique identifier of a terminal is stored, wherein only the terminal comprising the unique identifier is authorized to communicate with the communication box by a wireless local communication interface, wherein the communication box filters communications made by the wireless local communication interface, and wherein the unique identifier is a MAC address of the wireless local communication interface of the terminal.

13. The very high-availability secure communication system according to claim 12 , wherein the fourth physical communication interface operates in a frequency band centered on 900 MHz.

14. The very high-availability secure communication system according to claim 12 , wherein the provisional memory is written at a moment when a connection is detected on a wired physical communication interface between the mobile terminal and the communication box, the terminal serving as a peripheral device for the communication box.

Assignments (5)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 4, 2022
From: ATOS FRANCE
To: BULL SAS
Reel/Frame 060044/0630 →
CHANGE OF NAME Recorded Apr 25, 2022
From: ATOS INTEGRATION
To: ATOS FRANCE
Reel/Frame 059790/0954 →
CORRECTIVE ASSIGNMENT TO CORRECT THE THE ASSIGNEE INFORMATION PREVIOUSLY RECORDED AT REEL: 054416 FRAME: 0687. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Mar 14, 2022
From: OLIER, DENIS
To: AVANTIX
Reel/Frame 059365/0256 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 19, 2020
From: AVANTIX
To: ATOS INTEGRATION
Reel/Frame 054416/0554 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 19, 2020
From: OLIER, DENIS
To: ATOS INTEGRATION
Reel/Frame 054416/0687 →
Priority Claims (1)
FR 1701384 · Dec 27, 2017 · national
Continuity (1)
Related Publication 20210075642A1 · Mar 11, 2021