发明名称 |
Arrangement in an IP node for preserving security-based sequences by ordering IP packets according to quality of service requirements prior to encryption |
摘要 |
A router has at least one outbound interface configured for establishing multiple IP-based secure connections (i.e., tunnels) with respective destinations based on transmission of encrypted data packets via the IP-based secure connections. The encrypted data packets are generated by a cryptographic module, where each encrypted packet successively output from the cryptographic module includes a corresponding successively-unique sequence number. The supply of data packets to the cryptographic module is controlled by a queue controller: the queue controller assigns, for each secure connection, a corresponding queuing module configured for outputting a group of data packets associated with the corresponding secure connection according to a corresponding assigned maximum output bandwidth. Each queuing module also is configured for reordering the corresponding group of data packets according to a determined quality of service policy and the corresponding assigned maximum output bandwidth.
|
申请公布号 |
US7389357(B2) |
申请公布日期 |
2008.06.17 |
申请号 |
US20040759182 |
申请日期 |
2004.01.20 |
申请人 |
CISCO TECHNOLOGY, INC. |
发明人 |
DUFFIE, III JOHN BRAWNER;HANNOCK THEODORE MICHAEL;OCHMANSKI STEVEN ROBERT |
分类号 |
G06F15/16;G06F15/173;H04L9/00 |
主分类号 |
G06F15/16 |
代理机构 |
|
代理人 |
|
主权项 |
|
地址 |
|