会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 1. 发明申请
    • METHODS AND SYSTEMS FOR INCREMENTAL CRYPTO PROCESSING OF FRAGMENTED PACKETS
    • 用于缓冲包装加工的方法和系统
    • WO2006086554A2
    • 2006-08-17
    • PCT/US2006/004583
    • 2006-02-08
    • SINETT CORPORATIONCHOUDHURY, Abhijit, K.SHUKLA, HimanshuLEWIS, AdrianAMBE, ShekharJAIN, SudhanshuKAYALACKAKOM, MathewMOHANAKUMARI, B.t.
    • CHOUDHURY, Abhijit, K.SHUKLA, HimanshuLEWIS, AdrianAMBE, ShekharJAIN, SudhanshuKAYALACKAKOM, MathewMOHANAKUMARI, B.t.
    • H04L9/32
    • H04L9/0643H04L9/0637H04L9/3242H04L63/12
    • Methods and systems for providing confidentiality and/or integrity to fragmented packet transmissions, without reassembly of the fragments, across wired and wireless communications networks are disclosed. Encryption of a first fragmented packet can be performed by using an initial encryption state variable and keying material resulting in a first ciphertext fragment and a first encryption state variable. Then encryption of a second fragments packet can be performed by using the first encryption state variable and the keying material resulting in a second ciphertext fragment. Decryption of fragments can be performed in a similar manner as encryption. Computation of a message authentication code can be performed by computing a first hash state value for a first block size of bytes of a first packet fragment using an initial hash state value, and storing the first hash value and a first set of remainder bytes of the first packet fragment. The computation of the MAC continues by combining the first set of remainder bytes to a second packet fragment of the plurality of packet fragments resulting in a combined packet fragment. The MAC can then be identified using the second hash state value.
    • 公开了用于为分段分组传输提供机密性和/或完整性的方法和系统,而不需要在有线和无线通信网络上重新组合分段。 可以通过使用初始加密状态变量和密钥材料来执行加密第一分段分组,从而产生第一密文片段和第一加密状态变量。 然后可以通过使用第一加密状态变量和产生第二密文片段的密钥材料来执行第二分段分组的加密。 碎片的解密可以以与加密类似的方式执行。 可以通过使用初始散列状态值计算第一分组片段的第一块大小的字节的第一散列状态值并存储第一散列值和第一散列值的第一组剩余字节来执行消息认证码的计算 第一个包片段。 通过将第一组剩余字节组合到多个分组片段中的第二分组片段,导致MAC的计算,导致组合的分组片段。 然后可以使用第二散列状态值来识别MAC。
    • 3. 发明申请
    • METHODS AND SYSTEMS FOR INCREMENTAL CRYPTO PROCESSING OF FRAGMENTED PACKETS
    • 用于缓冲包装加工的方法和系统
    • WO2006086554A3
    • 2007-03-01
    • PCT/US2006004583
    • 2006-02-08
    • SINETT CORPCHOUDHURY ABHIJIT KSHUKLA HIMANSHULEWIS ADRIANAMBE SHEKHARJAIN SUDHANSHUKAYALACKAKOM MATHEWMOHANAKUMARI B T
    • CHOUDHURY ABHIJIT KSHUKLA HIMANSHULEWIS ADRIANAMBE SHEKHARJAIN SUDHANSHUKAYALACKAKOM MATHEWMOHANAKUMARI B T
    • H04L9/32
    • H04L9/0643H04L9/0637H04L9/3242H04L63/12
    • Methods and systems for providing confidentiality and/or integrity to fragmented packet transmissions, without reassembly of the fragments, across wired and wireless communications networks are disclosed. Encryption of a first fragmented packet can be performed by using an initial encryption state variable and keying material resulting in a first ciphertext fragment and a first encryption state variable. Then encryption of a second fragments packet can be performed by using the first encryption state variable and the keying material resulting in a second ciphertext fragment. Decryption of fragments can be performed in a similar manner as encryption. Computation of a message authentication code can be performed by computing a first hash state value for a first block size of bytes of a first packet fragment using an initial hash state value, and storing the first hash value and a first set of remainder bytes of the first packet fragment. The computation of the MAC continues by combining the first set of remainder bytes to a second packet fragment of the plurality of packet fragments resulting in a combined packet fragment. The MAC can then be identified using the second hash state value.
    • 公开了用于为分段分组传输提供机密性和/或完整性的方法和系统,而不需要在有线和无线通信网络上重新组合分段。 可以通过使用初始加密状态变量和密钥材料来执行加密第一分段分组,从而产生第一密文片段和第一加密状态变量。 然后可以通过使用第一加密状态变量和产生第二密文片段的密钥材料来执行第二分段分组的加密。 碎片的解密可以以与加密类似的方式执行。 可以通过使用初始散列状态值计算第一分组片段的第一块大小的字节的第一散列状态值并存储第一散列值和第一散列值的第一组剩余字节来执行消息认证码的计算 第一个包片段。 通过将第一组剩余字节组合到多个分组片段中的第二分组片段,导致MAC的计算,导致组合的分组片段。 然后可以使用第二散列状态值来识别MAC。
    • 4. 发明申请
    • QUEUING AND SCHEDULING ARCHITECTURE USING BOTH INTERNAL AND EXTERNAL PACKET MEMORY FOR NETWORK APPLIANCES
    • 使用网络设备的两个内部和外部分组存储器进行排队和调度架构
    • WO2007018852A1
    • 2007-02-15
    • PCT/US2006/026306
    • 2006-07-06
    • SINETT CORPORATIONCHOUDHURY, Abhijit, K.AMBE, ShekharSHUKLA, HimanshuMANSHARAMANI, DeepakLIN, Victor
    • CHOUDHURY, Abhijit, K.AMBE, ShekharSHUKLA, HimanshuMANSHARAMANI, DeepakLIN, Victor
    • H04L12/56
    • H04L49/90
    • Enhanced memory management schemes are presented to extend the flexibility of using either internal or external packet memory within the same network device. In the proposed schemes, the user can choose either static or dynamic schemes, both or which are capable of using both internal and external memory, depending on the deployment scenario and applications. This gives the user flexible choices when building unified wired and wireless networks that are either low-cost or feature-rich, or a combination of both. A method for buffering packets in a network device, and a network device including processing logic capable of performing the method are presented. The method includes initializing a plurality of output queues, determining to which of the plurality of output queues a packet arriving at the network device is destined, storing the packet in one or more buffers, where the one or more buffers is selected from a packet memory group including an internal packet memory and an external packet memory, and enqueuing the one or more buffers to the destined output queue.
    • 提出了增强的内存管理方案,以扩展在同一网络设备内使用内部或外部分组存储器的灵活性。 在所提出的方案中,用户可以选择静态方案或动态方案,或者根据部署方案和应用程序,可以同时使用内部和外部内存。 这样可以在构建低成本或功能丰富的统一有线和无线网络或两者的组合时灵活选择。 提出了一种用于在网络设备中缓存分组的方法,以及包括能够执行该方法的处理逻辑的网络设备。 该方法包括初始化多个输出队列,确定到达网络设备的分组到达的多个输出队列中的哪一个是目的地,将分组存储在一个或多个缓冲器中,其中从分组存储器中选择一个或多个缓冲器 组包括内部分组存储器和外部分组存储器,并且将一个或多个缓冲器排队到目的地输出队列。