发明名称 IP SECURITY CERTIFICATE EXCHANGE BASED ON CERTIFICATE ATTRIBUTES
摘要 Architecture that provides Internet Protocol security (IPsec) certificate exchange based on certificate attributes. An IPsec endpoint can validate the security context of another IPsec endpoint certificate by referencing certificate attributes. By facilitating IPsec certificate exchange using certificate attributes rather than solely certificate roots, it is now possible to build multiple isolated network zones using a single certificate authority rather than requiring one certificate authority per zone. Moreover, the ability to use certificate attributes during the IPsec certificate exchange can be leveraged for more focused communications such as QoS (quality of service). Certificate attributes can be utilized to identify the security context of the endpoint. The IPsec certificate use can be locked down to a single IP or group of IPs.
申请公布号 US2011113481(A1) 申请公布日期 2011.05.12
申请号 US20090616789 申请日期 2009.11.12
申请人 MICROSOFT CORPORATION 发明人 PANASYUK ANATOLIY;RANGEGOWDA DHARSHAN;SHUKLA ABHISHEK
分类号 G06F21/20 主分类号 G06F21/20
代理机构 代理人
主权项
地址