Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

The gateway vxlan can choose the method of encrypting data transmission

A technology of selective encryption and data transmission, applied in the direction of digital transmission system, transmission system, data exchange network, etc., can solve the hidden dangers of VXLAN transmission data security, and achieve the effect of high security and increased security

Active Publication Date: 2022-03-11
网经科技(苏州)有限公司
View PDF6 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0004] At present, VXLAN adopts the way of transmitting data in clear text, which creates certain security risks for using VXLAN to transmit data across regions. Therefore, as a gateway device provider, it has become a practical demand to provide a VXLAN mode that supports encrypted data transmission.

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • The gateway vxlan can choose the method of encrypting data transmission
  • The gateway vxlan can choose the method of encrypting data transmission
  • The gateway vxlan can choose the method of encrypting data transmission

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0051] In order to have a clearer understanding of the technical features, purposes and effects of the present invention, specific implementations are now described in detail.

[0052] VXLAN uses plain text to transmit data. There are certain security risks for using VXLAN to transmit data across regions. Therefore, it is necessary to provide a method that supports encrypted data transmission in VXLAN mode.

[0053] like figure 1 As shown, the gateway VXLAN can choose the encrypted data transmission method, and the VXLAN local end negotiation can choose encrypted data transmission. Before the local end that supports VXLAN encrypted data transmission sends data to the opposite end, it first tries to negotiate the encryption option, and starts data encryption after the negotiation is successful. transmission, including the following steps:

[0054] 1) The VXLAN local end sends an optional encryption request message to the peer end;

[0055] 2) The VXLAN local end waits for the...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention relates to a method for a gateway VXLAN to select encrypted data transmission. VXLAN local end negotiation can select encrypted data transmission. Before sending data to the opposite end, the local end that supports VXLAN encrypted data transmission first tries to negotiate the encryption option, and starts data encryption after the negotiation is successful. Transmission, the steps are: the VXLAN local end sends an optional encryption request message to the peer end; the VXLAN local end waits for an optional encrypted response message; the VXLAN local end sends an encrypted message in plain text to the peer end; the VXLAN local end waits for the key Negotiation result message; after negotiation, the VXLAN local end sends data packets. Realize that VXLAN supports encrypted negotiation and data transmission. The gateway enables the VXLAN function and negotiates with the peer VTEP whether to choose encryption; the gateway and the peer negotiate encryption detailed configuration and confirm the consistency of the key; the gateway and the peer start encrypted data transmission; Choose to use symmetric encryption, which has high security.

Description

technical field [0001] The invention relates to a method for a gateway VXLAN to selectively encrypt data transmission. Background technique [0002] At present, VXLAN (Virtual eXtensible Local Area Network) is a tunneling technology that can establish a layer-2 Ethernet network tunnel on the basis of a layer-3 network, thereby realizing cross-regional layer-2 interconnection. [0003] VXLAN adopts the encapsulation format of encapsulating original Ethernet packets in UDP packets. Encapsulate the original Layer 2 data frame plus the VXLAN header into a UDP packet. The VXLAN header contains a VXLAN identifier (VNI, VXLAN Network Identifier), and only virtual machines on the same VXLAN can communicate with each other. [0004] At present, VXLAN adopts the way of transmitting data in plain text, which creates certain security risks for the use of VXLAN to transmit data across regions. Therefore, as a gateway equipment provider, it has become a practical demand to provide a VXL...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & Authority Patents(China)
IPC IPC(8): H04L12/46H04L9/40
CPCH04L12/4641H04L12/4675H04L63/0435
Inventor 吴东明金宁刘继明陈浮王力成
Owner 网经科技(苏州)有限公司
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products