发明名称 Apparatus and method for providing virtual private network service based on mutual authentication
摘要 An apparatus and method for providing a virtual private network (VPN) service based on mutual authentication are provided, the apparatus including a storage unit configured to store a first public key and a second public key; an authentication unit configured to authenticate a VPN server with the first public key and to authenticate a user device with the second public key; and a tunnel management unit configured to generate a first VPN tunnel and a second VPN tunnel to relay data between the user device and the VPN server based on the authentication of the VPN server and the user device by the authentication unit.
申请公布号 US8959614(B2) 申请公布日期 2015.02.17
申请号 US201113306249 申请日期 2011.11.29
申请人 Samsung SDS Co., Ltd. 发明人 Lee Seok-Min;Jeon Nam-Soo;Nam Seung-Woo;Kim Jin-Yong
分类号 H04L29/06;H04L12/46 主分类号 H04L29/06
代理机构 Sughrue Mion, PLLC 代理人 Sughrue Mion, PLLC
主权项 1. A virtual private network (VPN) service apparatus configured to receive a first public key and a second public key, wherein the first public key is received from a VPN server and provides access by a user device to a private network, and the second public key is received from the user device, the apparatus comprising: A memory and processor operable to perform operations comprising: storing the first public key and the second public key, wherein the second public key is generated by the user device when the user device is authenticated by the VPN server; authenticating the VPN server using the stored first public key and to authenticate the user device using the stored second public key; generating a first VPN tunnel and a second VPN tunnel which respectively relay data between the user device and the VPN server, wherein the first VPN tunnel is configured to relay the data between the VPN server and the VPN service apparatus based on the authentication of the VPN server by the authentication unit, and wherein the second VPN tunnel is configured to relay the data between the VPN service apparatus and the user device based on the authentication of the user device by the authentication unit; determining whether to connect the VPN server to the user device based on whether a load resulting from access of the user device would be equally distributed among the plurality of VPN servers having the same ID, wherein if a request to access the VPN server is received from the user device, and the VPN server is included among a plurality of VPN servers having a same identification (ID), wherein each of the plurality of VPN servers has a different sub-ID.
地址 Seoul KR