发明名称 Cryptographic information and flow control
摘要 A method of providing cryptographic information and flow control includes first determining a target domain from an IP address. An organization policy is looked up from a credential store, and an algorithm and credentials specified for the target domain are looked up in a domain-credential map. Any further credentials that are provided and that are permitted by the organizational policy are added. A working key is then generated, and information is received in the form of a receive packet. Any packet header is stripped from the receive packet and the remaining data is encrypted. Key splits are retrieved from the credential store, and are combined to form a key-encrypting key. The working key is the encrypted with the key-encrypting key, and a CKM header is encrypted. The encrypted CKM header is concatenated to the beginning of the encrypted data to form transmit data, and the packet header and the transmit data are concatenated to form a transmit packet. The transmit packet is then provided to a network interface card for transmission on a network.
申请公布号 US2004101139(A1) 申请公布日期 2004.05.27
申请号 US20030715938 申请日期 2003.11.18
申请人 WACK C. JAY;SCHEIDT EDWARD M.;MORRIS JEFFREY K. 发明人 WACK C. JAY;SCHEIDT EDWARD M.;MORRIS JEFFREY K.
分类号 H04L9/08;H04L29/06;(IPC1-7):H04L9/00 主分类号 H04L9/08
代理机构 代理人
主权项
地址