IP Library Granted Patent US 12,192,181
Granted Patent B2
US 12,192,181 · App. 18/117,768 · Granted Jan 7, 2025

Systems and methods for encrypting and transmitting data packets using a unicast address

Inventors: Timothy Hartley (Eden Prairie, MN); Deborah Charan (Eden Prairie, MN); Ranga S. Ramanujan (Eden Prairie, MN)
Assignee: Architecture Technology Corporation
H04L63/0428G06F21/602H04L47/2441H04L49/201H04L63/0272H04L69/22H04W4/06H04W12/02H04L45/16H04L69/04
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,192,181
App. No.
18/117,768
Granted
Jan 7, 2025
Kind
B2
Abstract

Disclosed herein are embodiments of systems, methods, and products comprising a computing device, which provides Efficient Data-In-Transit Protection Techniques for Handheld Devices (EDITH) to protect data-in-transit. An end user device (EUD) may generate a multicast data packet. The EDITH module of the EUD encapsulates the data packet in a GRE packet and directs the GRE packet to a unicast destination address of an EDITH Multicast Router included in an infrastructure. The EDITH module on the EUD double compresses and double encrypts the GRE packet. The EDITH module on the infrastructure decrypts and decompresses the double compressed and double encrypted GRE packet to recreate the GRE packet. The EDITH module on the infrastructure decapsulates the GRE packet to derive the original multicast data packet, and distributes the original multicast data packet to the multiple group member based on the multicast destination address included in the original multicast data packet.

Claims (32)

1. A computer implemented method comprising:

generating, by a first computer, a data packet containing a group destination address;

encrypting, by the first computer executing inner encryption software, the data packet with an inner layer key, the inner encryption software corresponding to first encryption software of a router device having a unicast address;

encrypting, by the first computer executing outer encryption software, the data packet with an outer layer key, the outer encryption software corresponding to second encryption software of the router device having the unicast address; and

transmitting, by the first computer using the unicast destination address associated with the router device, the data packet to one or more target computers associated with the group destination address.

2. The method according to claim 1 , further comprising appending, by the first computer, the unicast destination address associated with the router device to the data packet.

3. The method according to claim 1 , further comprising executing, by the first computer, a software application configured to produce data for one or more data packets,

wherein the first computer generates the data packet based upon the data produced by executing the software application.

4. The method according to claim 1 , further comprising transmitting, by the first computer, at least one data packet of a plurality of data packets of a packet flow having uncompressed header data to the one or more target computers.

5. The method according to claim 1 , further comprising removing, by the first computer and from the data packet, one or more header fields consistent over a packet flow of a plurality of data packets.

6. The method according to claim 1 , further comprising re-encoding, by the first computer, one or more header fields of the data packet to reduce one or more field sizes, the one or more header fields inconsistent over a packet flow of a plurality of data packets.

7. The method according to claim 1 , wherein the inner layer key used by the first computer for the inner encryption software corresponds to a second inner layer key of the router device.

8. The method according to claim 1 , wherein the outer layer key used by the first computer for the outer encryption software corresponds to a second outer layer cryptographic key of the router device.

9. The method according to claim 1 , wherein the router device is a multicast router.

10. The method according to claim 1 , wherein the first computer is a mobile device configured for network communication via an ad hoc network.

11. A system comprising:

a first computer comprising a corresponding processor configured to execute computer instructions stored in non-transitory machine-readable memory;

the first computer configured to:

generate a data packet containing a group destination address;

encrypt, executing inner encryption software, the data packet with an inner layer key, the inner encryption software corresponding to first encryption software of a router device having a unicast address;

encrypt, executing outer encryption software, the data packet with an outer layer key, the outer encryption software corresponding to second encryption software of the router device having the unicast address; and

transmit, using the unicast destination address associated with the router device, the data packet to one or more target computers associated with the group destination address.

12. The system according to claim 11 , wherein the first computer is further configured to append the unicast destination address associated with the router device to the data packet.

13. The system according to claim 11 , wherein the first computer is further configured to execute a software application configured to produce data for one or more data packets,

wherein the first computer generates the data packet based upon the data produced by executing the software application.

14. The system according to claim 11 , wherein the first computer is further configured to transmit at least one data packet of a plurality of data packets of a packet flow having uncompressed header data to the one or more target computers.

15. The system according to claim 11 , wherein the first computer is configured to remove, from the data packet, one or more header fields consistent over a packet flow of a plurality of data packets.

16. The system according to claim 11 , wherein the first computer is configured to re-encode one or more header fields of the data packet to reduce one or more field sizes, the one or more header fields inconsistent over a packet flow of a plurality of data packets.

17. The system according to claim 11 , wherein the inner layer key used by the first computer for the inner encryption software corresponds to a second inner layer cryptographic key of the router device.

18. The system according to claim 11 , wherein the outer layer key used by the first computer for the outer encryption software corresponds to a second outer layer cryptographic key of the router device.

19. The system according to claim 11 , wherein the router device is a multicast router.

20. The system according to claim 11 , wherein the first computer is a mobile device configured for network communication via an ad hoc network.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 6, 2023
From: HARTLEY, TIMOTHY; CHARAN, DEBORAH; RAMANUJAN, RANGA S.
To: ARCHITECTURE TECHNOLOGY CORPORATION
Reel/Frame 062893/0890 →
Continuity (3)
Continuation 17171436 · Feb 9, 2021
Continuation 15975580 · May 9, 2018
Related Publication 20240114010A1 · Apr 4, 2024
References Cited (23)
US 6618397B1 · Huang · 2003 [cited by applicant]
US 7215667B1 · Davis · 2007 [cited by applicant]
US 7768913B1 · Shepherd et al. · 2010 [cited by applicant]
US 8745185B1 · Salo · 2014 [cited by applicant]
US 9100457B2 · Hsu · 2015 [cited by applicant]
US 10979402B1 · Hartley · 2021 [cited by applicant]
US 11637815B1 · Hartley · 2023 [cited by examiner]
US 20050198367A1 · Ettikan · 2005 [cited by applicant]
US 20100189103A1 · Bachmann et al. · 2010 [cited by applicant]
US 20100260098A1 · Ulupinar · 2010 [cited by applicant]
US 20110016313A1 · Jin et al. · 2011 [cited by applicant]
US 20110122893A1 · Kang et al. · 2011 [cited by applicant]
US 20120144191A1 · Lebovitz · 2012 [cited by applicant]
US 20150110131A1 · Roskind · 2015 [cited by applicant]
US 20160081079A1 · Kneckt · 2016 [cited by applicant]
US 20160292446A1 · Lawrence · 2016 [cited by applicant]
US 20170055178A1 · Seshadri et al. · 2017 [cited by applicant]
US 20170264716A1 · Bertz et al. · 2017 [cited by applicant]
US 20170359718A1 · Denny · 2017 [cited by applicant]
US 20190207747A1 · Durvasula et al. · 2019 [cited by applicant]
US 20190320014A1 · Allen · 2019 [cited by examiner]
Architecture Technology Corporation, Proposal No. F172-009-0185, Topic No. AF172-009, 1, Identification and Significance of the Problem or Opportunity, Jun. 21, 2017, 11 pages. [cited by applicant]
Architecture Technology Corporation, Final Report, Topic No. N162-073, M67854-17-P-6513, Jun. 18, 2017, 35 pages. [cited by applicant]