发明名称 System and method for encrypting traffic on a network
摘要 According to embodiments of the present invention a system and method for encrypting traffic on a network is disclosed. Encrypted data is transmitted between a first network element and a second network element by: acquiring an encryption seed at the first network element, the encryption seed being substantially similar to a decryption seed at the second network element; generating at least one encryption key from the encryption seed; receiving data; encrypting the data using the encryption key to generate encrypted data; transmitting the encrypted data from the first network element to the second network element via a network; and updating the encryption seed at the first network element in response to an event trigger.
申请公布号 US9350713(B2) 申请公布日期 2016.05.24
申请号 US201314063655 申请日期 2013.10.25
申请人 BCE INC. 发明人 Turk Doughan
分类号 H04L9/16;H04L29/06;H04L9/08;H04L9/12;H04L12/24 主分类号 H04L9/16
代理机构 Gowling Lafleur Henderson, LLP 代理人 Gowling Lafleur Henderson, LLP
主权项 1. A method for transmitting encrypted data between a first network element and a second network element, the method comprising: acquiring an encryption seed at said first network element, said encryption seed being substantially similar to a decryption seed at the second network element; generating at least one encryption key from said encryption seed; receiving data; encrypting said data using said encryption key to generate encrypted data; transmitting said encrypted data from said first network element to said second network element via a network; receiving at said first network element a synchronization signal transmitted from a synchronization management entity to both said first network element and said second network element; acquiring a synchronized encryption seed in response to the received synchronization signal; updating said encryption seed at said first network element with the acquired synchronized encryption seed; and generating a new encryption key for use in encrypting data based on the synchronized encryption seed wherein a period between receiving said synchronization signal and receiving a second synchronization signal is less than the period required to derive one of said encryption seed and said at least one encryption key from said encrypted data, and wherein the synchronization management entity is a separate entity from the first network element and the second network element.
地址 Montreal CA