US2012069996A1PendingUtilityA1

System and method for encrypting traffic on a network

Assignee: TURK DOUGHANPriority: Dec 23, 2005Filed: Nov 24, 2011Published: Mar 22, 2012
Est. expiryDec 23, 2025(expired)· nominal 20-yr term from priority
Inventors:Doughan Turk
H04L 9/12H04L 63/0428H04L 9/0891H04L 41/0816
40
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

According to embodiments of the present invention a system and method for encrypting traffic on a network is disclosed. Encrypted data is transmitted between a first network element and a second network element by: acquiring an encryption seed at the first network element, the encryption seed being substantially similar to a decryption seed at the second network element; generating at least one encryption key from the encryption seed; receiving data; encrypting the data using the encryption key to generate encrypted data; transmitting the encrypted data from the first network element to the second network element via a network; and updating the encryption seed at the first network element in response to an event trigger

Claims

exact text as granted — not AI-modified
1 - 12 . (canceled) 
     
     
         13 . A method for encrypting data, comprising:
 encrypting data using an original encryption key generated at least partly from an original encryption seed;   providing additional data for encryption;   acquiring a new encryption seed;   determining whether a new encryption key is to be generated;   determining whether the original encryption seed has expired;   responsive to determining that a new encryption key is to be generated and that the original encryption key has expired: generating a new encryption key at least partly from the new encryption seed and encrypting additional data using the new encryption key;   responsive to determining that a new encryption key is to be generated and that the original encryption key has not expired: generating a new encryption key at least partly from the original encryption seed and encrypting additional data using the new encryption key; and   responsive to determining that a new encryption key is not to be generated: encrypting the additional data using the original encryption key.   
     
     
         14 . The method defined in  claim 13 , wherein said determining whether the first encryption seed has expired is carried out in response to determining that a new encryption key is to be generated. 
     
     
         15 . The method defined in  claim 13 , wherein said acquiring a second encryption seed is carried out after said determining whether a new encryption key is to be generated. 
     
     
         16 . The method defined in  claim 13 , wherein said acquiring a second encryption seed is carried out after said determining whether a new encryption key is to be generated. 
     
     
         17 . The method defined in  claim 13 , wherein a new encryption key is to be generated after a predetermined amount of time has elapsed since generation of the original encryption key. 
     
     
         18 . The method defined in  claim 13 , wherein a new encryption key is to be generated upon having encrypted a predetermined amount of data. 
     
     
         19 . The method defined in  claim 13 , wherein a new encryption key is to be generated upon receipt of a trigger from a synchronization management entity. 
     
     
         20 . The method defined in  claim 13 , wherein a new encryption key is to be generated upon said providing the additional data. 
     
     
         21 . The method defined in  claim 13 , wherein the original encryption seed is determined to have expired upon said acquiring the new encryption seed. 
     
     
         22 . The method defined in  claim 13 , wherein the original encryption seed is determined to have expired after a predetermined amount of time has elapsed. 
     
     
         23 . The method defined in  claim 13 , wherein the original encryption seed is determined to have expired upon having encrypted a predetermined amount of data. 
     
     
         24 . The method defined in  claim 13 , wherein the original encryption seed is determined to have expired upon said providing the additional data. 
     
     
         25 . The method defined in  claim 13 , wherein acquiring the new encryption seed comprises receiving the new encryption seed from a seed generator. 
     
     
         26 . A system for encrypting data, comprising:
 a seed generator for generating an original encryption seed and a new encryption seed;   a computing apparatus configured for:
 encrypting data using an original encryption key generated at least partly from the original encryption seed; 
 providing additional data for encryption; 
 acquiring the new encryption seed from the seed generator; 
 determining whether a new encryption key is to be generated; 
 determining whether the original encryption seed has expired; 
 responsive to determining that a new encryption key is to be generated and that the original encryption key has expired: generating a new encryption key at least partly from the new encryption seed and encrypting additional data using the new encryption key; 
 responsive to determining that a new encryption key is to be generated and that the original encryption key has not expired: generating a new encryption key at least partly from the original encryption seed and encrypting additional data using the new encryption key; and 
 responsive to determining that a new encryption key is not to be generated: encrypting the additional data using the original encryption key. 
   
     
     
         27 . A method for decrypting data, comprising:
 decrypting data using an original decryption key generated at least partly from an original decryption seed;   providing additional data for decryption;   acquiring a new decryption seed;   determining whether a new decryption key is to be generated;   determining whether the original decryption seed has expired;   responsive to determining that a new decryption key is to be generated and that the original decryption key has expired: generating a new decryption key at least partly from the new decryption seed and decrypting additional data using the new decryption key;   responsive to determining that a new decryption key is to be generated and that the original decryption key has not expired: generating a new decryption key at least partly from the original decryption seed and decrypting additional data using the new decryption key; and   responsive to determining that a new decryption key is not to be generated: decrypting the additional data using the original decryption key.

Join the waitlist — get patent alerts

Track US2012069996A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.