Patent · US Expired

Computer network having a security layer interface independent of the application transport mechanism

US7502922B1 · kind B1 · utility

10Cited by
9References
20Claims
0Family size

Assignee

Inventors

Key dates

Filing dateJul 20, 2000
Grant dateMar 10, 2009
Priority date
Expiry dateAug 9, 2024

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L63/0428
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

An architecture for secure network communications includes a security layer sandwiched between an upper connection layer and a lower connection layer. An application program need not deal directly with the details of security handshakes, encryption, and decryption. Instead, the application sends plain text data to the upper connection layer, which passes it to the security layer. The security layer manages the necessary security handshakes, and encrypts the data. The security layer then passes the encrypted application data to the lower connection layer, which transports it using TCP or another transport protocol. The security layer need not manage the transport protocol, as this is done by the connection layers. Encrypted data received over the network at the lower connection layer is passed to the security layer for decryption, and then to the upper connection layer for transport to the application.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.