![DYNAMIC REKEYING OF IPSEC SECURITY ASSOCIATIONS](/abs-image/US/2022/01/20/US20220021687A1/abs.jpg.150x150.jpg)
基本信息:
- 专利标题: DYNAMIC REKEYING OF IPSEC SECURITY ASSOCIATIONS
- 申请号:US17012235 申请日:2020-09-04
- 公开(公告)号:US20220021687A1 公开(公告)日:2022-01-20
- 发明人: SOURABH BHATTACHARYA , YONG WANG , AWAN KUMAR SHARMA , BHARGAV PUVVADA , MAYUR KATKE
- 申请人: VMWARE, INC.
- 申请人地址: US CA Palo Alto
- 专利权人: VMWARE, INC.
- 当前专利权人: VMWARE, INC.
- 当前专利权人地址: US CA Palo Alto
- 优先权: IN202041030417 20200716
- 主分类号: H04L29/06
- IPC分类号: H04L29/06 ; H04L9/08 ; H04L12/803
摘要:
Certain embodiments described herein are relate to a method for dynamically rekeying a security association. The method includes establishing, by a destination tunnel endpoint (TEP), an in-bound security association with a source TEP, with a first security parameter index (SPI) value, for encrypting data packets communicated between the source TEP and the destination TEP. The method further includes rekeying, by the destination TEP, the in-bound security association, the rekeying including generating a second SPI value for replacing the first SPI value based on a trigger event relating to at least one of a real-time security score of the in-bound security association, a number of security associations assigned to a compute resource that the in-bound security resource is assigned to, an amount of load managed by the compute resource that the in-bound security resource is assigned to, and an indication received from an administrator.
公开/授权文献:
- US11770389B2 Dynamic rekeying of IPSec security associations 公开/授权日:2023-09-26