ARRANGEMENT IN AN IP NODE FOR PRESERVING SECURITY-BASED SEQUENCES BY ORDERING IP PACKETS ACCORDING TO QUALITY OF SERVICE REQUIREMENTS PRIOR TO ENCRYPTION
摘要
A router has at least one outbound interface configured for establishing multiple IP-based secure connections (i.e., tunnels) with respective destinations based on transmission of encrypted data packets via the IP-based secure connections. The encrypted data packets are generated by a cryptographic module, where each encrypted packet successively output from the cryptographic module includes a corresponding successively-unique sequence number. The supply of data packets to the cryptographic module is controlled by a queue controller: the queue controller assigns, for each secure connection, a corresponding queuing module configured for outputting a group of data packets associated with the corresponding secure connection according to a corresponding assigned maximum output bandwidth. Each queuing module also is configured for reordering the corresponding group of data packets according to a determined quality of service policy and the corresponding assigned maximum output bandwidth.
申请公布号
WO2005072143(A3)
申请公布日期
2006.06.08
申请号
WO2005US01253
申请日期
2005.01.14
申请人
CISCO TECHNOLOGY, INC.;DUFFIE, JOHN, BRAWNER, III;HANNOCK, THEODORE, MICHAEL;OCHMANSKI, STEVEN, ROBERT
发明人
DUFFIE, JOHN, BRAWNER, III;HANNOCK, THEODORE, MICHAEL;OCHMANSKI, STEVEN, ROBERT