Patent · US Expired

Secure DHCP server

US5884024A · kind A · utility

318Cited by
2References
21Claims
0Family size

Assignee

Inventors

Key dates

Filing dateDec 9, 1996
Grant dateMar 16, 1999
Priority date
Expiry dateDec 9, 2016

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L63/126
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

A preferred embodiment of the present invention includes a method and apparatus for allocating and using IP addresses in a network of client systems. More specifically, the present invention includes a DHCP server that leases IP addresses to the client systems. The DHCP server works in combination with a secure DHCP relay agent and a secure IP relay agent. Broadcast DHCPREQUEST messages are forwarded to the DHCP server by the secure DHCP relay agent. Before forwarding, the secure DHCP relay agent embeds in each DHCPREQUEST message. The trusted identifier is an unforgeable object specifically associated with the client system sending the DHCPREQUEST message. When the DHCP server receives a DHCPREQUEST message, the DHCP server extracts the trusted identifier. The trusted identifier is then used by the DHCP server to prevent client systems from accessing the IP address leases of other client systems. The DHCP server also counts the number of IP addresses leases assigned to each trusted identifier. In this way, each client system is prevented from leasing more than a predetermined number of IP addresses. Unicast DHCPREQUEST messages received by the DHCP server include a source address …

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.