IP Library Granted Patent US 9,781,076
Granted Patent B2
US 9,781,076 · App. 12/735,483 · Granted Oct 3, 2017

Secure communication system

Inventor: Mark Bentall (Newport, GB)
Assignee: CASSIDIAN LIMITED
H04L63/0227H04L63/0428H04L63/105
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,781,076
App. No.
12/735,483
Granted
Oct 3, 2017
Kind
B2
Abstract

A communications system ( 40 ) comprises a first entity ( 42 ), a first encryption device ( 48 ) and a network ( 46 ). The first encryption device ( 48 ) is adapted to decrypt, using a first decryption algorithm, data sent from a first destination to said first entity via said network ( 46 ). The first encryption device ( 48 ) is adapted to pass network metric data concerning at least one route between said first entity and said first destination to said first entity without subjecting said network metric data to said first decryption algorithm.

Claims (14)

1. A communications system comprising a first entity, a first encryption device and a network, wherein said first encryption device is adapted to decrypt, using a first decryption algorithm, data sent from a first destination to said first entity via said network, to block network metric data that is not one of a predetermined set of data words and to pass network metric data concerning at least one route between said first entity and said first destination to said first entity without subjecting said network metric data to said first decryption algorithm.

2. A communications system as claimed in claim 1 , wherein said first encryption device is adapted to encrypt data sent by said first entity via said network using a first encryption algorithm.

3. A communications system as claimed in claim 1 , further comprising a second entity and a second encryption device, wherein said second encryption device is adapted to decrypt, using a second decryption algorithm, data sent from a second destination to said second entity via said network.

4. A communications system as claimed in claim 3 , wherein said second encryption device is arranged to encrypt data sent by said second entity via said network using a second encryption algorithm.

5. A communications system as claimed in claim 3 , wherein the second encryption device is adapted to pass network metric data concerning at least one route between said second entity and said second destination to said second entity without subjecting said network metric data to said second decryption algorithm.

6. A communications system as claimed in claim 3 , wherein said second encryption device is adapted to block network metric data that is not one of a predetermined set of data words.

7. A communications system as claimed in claim 3 , further comprising a third entity and a third encryption device, wherein the third encryption device is adapted to decrypt, using a third decryption algorithm, data sent from a third destination to said third entity via said network.

8. A communications system as claimed in claim 7 , wherein said third encryption device is arranged to encrypt data sent by said third entity via said network using a third encryption algorithm.

9. A communications system as claimed in claim 7 , wherein the third encryption device is adapted to pass network metric data concerning at least one route between said third entity and said third destination to said third entity without subjecting said network metric data to said third decryption algorithm.

10. A communications system as claimed in claim 1 , wherein said network metric data includes data transfer cost data.

11. A communications system as claimed in claim 1 , wherein said network metric data includes quality-of-service data.

12. A communications system as claimed in claim 1 , wherein said network metric data can only be used to update a predefined entry in a table.

13. A method of operating a secure communications system in which one or more entities send data to one or more other entities of the system via a network, wherein at least some of said data is encrypted and decrypted using encryption and decryption algorithms, the method comprising the steps of sending network metric data concerning at least one route between one entity and another entity from said network to one or more of said entities without subjecting the network metric data to said decryption algorithm, and preventing network metric data from being passed to an entity if said network metric data is not one of a predetermined set of data words.

14. A method as claimed in claim 13 , further comprising the step of using said network metric data to update a predefined entry in a table.

Assignments (4)
CHANGE OF NAME Recorded May 25, 2018
From: CASSIDIAN LIMITED
To: AIRBUS DS LIMITED
Reel/Frame 045902/0468 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 25, 2018
From: AIRBUS DS LIMITED
To: AIRBUS DEFENCE AND SPACE LIMITED
Reel/Frame 045902/0517 →
CHANGE OF NAME Recorded Sep 19, 2011
From: EADS DEFENCE AND SECURITY SYSTEMS LIMITED
To: CASSIDIAN LIMITED
Reel/Frame 026930/0550 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 7, 2010
From: BENTALL, MARK
To: EADS DEFENCE AND SECURITY SYSTEMS
Reel/Frame 025109/0983 →
Priority Claims (1)
GB 0800838.5 · Jan 17, 2008 · national
Continuity (1)
Related Publication 20110035578A1 · Feb 10, 2011