Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

Tunnel-mode ESP (electronic stability program) hardware encapsulating device on basis of IPSEC (internet protocol security) protocols

A tunnel mode, hardware encapsulation technology, applied in encryption devices with shift registers/memory, electrical components, data exchange through path configuration, etc. and other problems, to achieve the effect of improving the packaging speed, safe and efficient data packaging

Inactive Publication Date: 2015-09-30
SOUTHEAST UNIV
View PDF5 Cites 18 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

In the process of implementing the IPSEC protocol, the factor that affects its implementation speed is the encapsulation speed of IPSEC data packets. At present, most of the market uses software to encapsulate IPSEC data packets, and the implementation speed is relatively slow, which seriously affects the transmission speed of IPSEC data packet encapsulation. Therefore, It is necessary to provide a hardware-based IPSEC protocol to encapsulate data packets and optimize the hardware transmission mode, which can greatly increase the speed on the basis of software, and at the same time make data transmission more secure
[0004] At present, the implementation scenarios of the IPSEC protocol can be roughly divided into three categories: 1. Site to Site (site to site or network management to network management) 2. End to End (end to end or PC to PC) 3. End to Site (end to site Or PC to gateway), and now there are a large number of PCs under each subnet, every time the IPSEC protocol in End to End mode is implemented, it will be implemented once on the corresponding PC, which consumes too much time, so it is implemented in Site to Site mode IPSEC protocol can increase the corresponding transmission speed

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Tunnel-mode ESP (electronic stability program) hardware encapsulating device on basis of IPSEC (internet protocol security) protocols
  • Tunnel-mode ESP (electronic stability program) hardware encapsulating device on basis of IPSEC (internet protocol security) protocols
  • Tunnel-mode ESP (electronic stability program) hardware encapsulating device on basis of IPSEC (internet protocol security) protocols

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0038] The technical scheme of the present invention is described in detail below in conjunction with accompanying drawing:

[0039] figure 1 It shows the overall structure and principle of the tunnel mode ESP hardware encapsulation device based on the IPSEC protocol of the present invention. Because encapsulation takes time, encapsulation speed is less than the speed of SA sending data, so the present invention adopts a plurality of tunnel mode ESP encapsulation units, queries tunnel mode ESP encapsulation unit working state through upper layer SA security alliance related module, selects idle tunnel mode ESP encapsulation unit Receive and process the strategy and data of SA matching, realize the recycling of multiple packaging units, achieve the effect of ping-pong operation, and improve the speed. Such as figure 1 As shown, the device includes a group of tunnel mode ESP encapsulation units connected by a bus, and each tunnel mode ESP encapsulation unit includes: a data an...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses a tunnel-mode ESP (electronic stability program) hardware encapsulating device on the basis of IPSEC (internet protocol security) protocols, and belongs to the field of network data security. The tunnel-mode ESP hardware encapsulating device comprises a plurality of tunnel-mode ESP encapsulating units. The tunnel-mode ESP encapsulating units are connected with one another by buses and work in ping-pong modes, and each tunnel-type ESP encapsulating unit comprises a data analysis module, a group of encryption modules, an IPV4 (internet protocol version 4) header regrouping module, an IPV6 (internet protocol version 6) regrouping module, a data temporary storage module, a data assembling module, an authentication module and an IP (internet protocol) header checksum module. Compared with the prior art, the tunnel-mode ESP hardware encapsulating device has the advantages that data packets to be encapsulated are segmented, formats of each segment of data are changed, accordingly, start bits or length verification fields are added to the data packets, and the data can be safely and efficiently encapsulated; a plurality of encapsulating modules are mounted, so that the ping-pong operation modes can be implemented, and the encapsulating speeds further can be increased.

Description

technical field [0001] The invention relates to the field of network data security, in particular to an IPSEC protocol-based tunnel mode ESP hardware encapsulation device. Background technique [0002] With the development of computer network technology, we use network technology to work and live more and more quickly and conveniently. Today's society is inseparable from the network, but the subsequent network security issues have to arouse the attention of the society. In recent years , network security issues are becoming more and more prominent and diversified. Hackers use the network to intercept data from companies and governments, causing huge losses to companies and governments and threatening the security of personal information. In order to improve the security of network information transmission, the Internet Engineering Task Force (IETF) proposed the IPSEC (IP Security) protocol for the network layer in 1988 to make up for the shortcomings of IP data packets that ...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
IPC IPC(8): H04L12/46H04L9/06H04L29/06
Inventor 李冰刘洋刘勇赵霞陈帅董乾王刚张龙飞周岑军
Owner SOUTHEAST UNIV
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products