System and method for encrypting traffic on a network
Abstract
According to embodiments of the present invention a system and method for encrypting traffic on a network is disclosed. Encrypted data is transmitted between a first network element and a second network element by: acquiring an encryption seed at the first network element, the encryption seed being substantially similar to a decryption seed at the second network element; generating at least one encryption key from the encryption seed; receiving data; encrypting the data using the encryption key to generate encrypted data; transmitting the encrypted data from the first network element to the second network element via a network; and updating the encryption seed at the first network element in response to an event trigger
Claims
exact text as granted — not AI-modified1 - 12 . (canceled)
13 . A method for encrypting data, comprising:
encrypting data using an original encryption key generated at least partly from an original encryption seed; providing additional data for encryption; acquiring a new encryption seed; determining whether a new encryption key is to be generated; determining whether the original encryption seed has expired; responsive to determining that a new encryption key is to be generated and that the original encryption key has expired: generating a new encryption key at least partly from the new encryption seed and encrypting additional data using the new encryption key; responsive to determining that a new encryption key is to be generated and that the original encryption key has not expired: generating a new encryption key at least partly from the original encryption seed and encrypting additional data using the new encryption key; and responsive to determining that a new encryption key is not to be generated: encrypting the additional data using the original encryption key.
14 . The method defined in claim 13 , wherein said determining whether the first encryption seed has expired is carried out in response to determining that a new encryption key is to be generated.
15 . The method defined in claim 13 , wherein said acquiring a second encryption seed is carried out after said determining whether a new encryption key is to be generated.
16 . The method defined in claim 13 , wherein said acquiring a second encryption seed is carried out after said determining whether a new encryption key is to be generated.
17 . The method defined in claim 13 , wherein a new encryption key is to be generated after a predetermined amount of time has elapsed since generation of the original encryption key.
18 . The method defined in claim 13 , wherein a new encryption key is to be generated upon having encrypted a predetermined amount of data.
19 . The method defined in claim 13 , wherein a new encryption key is to be generated upon receipt of a trigger from a synchronization management entity.
20 . The method defined in claim 13 , wherein a new encryption key is to be generated upon said providing the additional data.
21 . The method defined in claim 13 , wherein the original encryption seed is determined to have expired upon said acquiring the new encryption seed.
22 . The method defined in claim 13 , wherein the original encryption seed is determined to have expired after a predetermined amount of time has elapsed.
23 . The method defined in claim 13 , wherein the original encryption seed is determined to have expired upon having encrypted a predetermined amount of data.
24 . The method defined in claim 13 , wherein the original encryption seed is determined to have expired upon said providing the additional data.
25 . The method defined in claim 13 , wherein acquiring the new encryption seed comprises receiving the new encryption seed from a seed generator.
26 . A system for encrypting data, comprising:
a seed generator for generating an original encryption seed and a new encryption seed; a computing apparatus configured for:
encrypting data using an original encryption key generated at least partly from the original encryption seed;
providing additional data for encryption;
acquiring the new encryption seed from the seed generator;
determining whether a new encryption key is to be generated;
determining whether the original encryption seed has expired;
responsive to determining that a new encryption key is to be generated and that the original encryption key has expired: generating a new encryption key at least partly from the new encryption seed and encrypting additional data using the new encryption key;
responsive to determining that a new encryption key is to be generated and that the original encryption key has not expired: generating a new encryption key at least partly from the original encryption seed and encrypting additional data using the new encryption key; and
responsive to determining that a new encryption key is not to be generated: encrypting the additional data using the original encryption key.
27 . A method for decrypting data, comprising:
decrypting data using an original decryption key generated at least partly from an original decryption seed; providing additional data for decryption; acquiring a new decryption seed; determining whether a new decryption key is to be generated; determining whether the original decryption seed has expired; responsive to determining that a new decryption key is to be generated and that the original decryption key has expired: generating a new decryption key at least partly from the new decryption seed and decrypting additional data using the new decryption key; responsive to determining that a new decryption key is to be generated and that the original decryption key has not expired: generating a new decryption key at least partly from the original decryption seed and decrypting additional data using the new decryption key; and responsive to determining that a new decryption key is not to be generated: decrypting the additional data using the original decryption key.Join the waitlist — get patent alerts
Track US2012069996A1 — get alerts on status changes and closely related new filings.
We store only your email — no account needed. See our privacy policy.