US2016248736A1PendingUtilityA1

Encapsulation of Secure Encrypted Data in a Deployable, Secure Communication System Allowing Benign, Secure Commercial Transport

Assignee: TELECOMM SYSTEMS INCPriority: Sep 15, 2003Filed: Feb 26, 2016Published: Aug 25, 2016
Est. expirySep 15, 2023(expired)· nominal 20-yr term from priority
H04L 63/0428H04L 63/029H04L 63/164
45
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

Sensitive, Type 1 KIV-encrypted data is encapsulated into IP packets in a remotely deployed, secure communication system. The IP packets are addressed to a matching IP encapsulator/decapsulator device over the public Internet or other IP protocol network, that then passes it to a similar Type 1 KIV device for decryption. Thus, sensitive, encrypted data is made to appear as if it were any other commercial network data, cloaking it in the vast and busy world of the Internet. The present invention is embodied in a system that provides secure Voice-Over-IP (VOIP), video and data network functionality in a single, small size deployable case, to a remote user. Most importantly, the embodiment allows for the routing of bulk encrypted (i.e., secure) data over a public network, e.g., the Internet.

Claims

exact text as granted — not AI-modified
1 - 27 . (canceled) 
     
     
         28 . A method of cloaking encrypted data, comprising:
 encapsulating a received encrypted serial data stream into Internet Protocol (IP) packets with a first physical IP encapsulator device;   forming a first Internet Protocol Security (IPSEC) tunnel over a physical public IP network, between a first physical IP encapsulating router and a remote, second physical IP encapsulating gateway router;   forming a second data tunnel over said physical public IP network, within said IPSEC tunnel, between said first physical IP encapsulator device and a remote, second physical IP encapsulator device; and   transmitting said IP packets of encrypted data within said second data tunnel, which is within said IPSEC tunnel, between said first physical IP encapsulator device and said remote, second physical IP encapsulator device.   
     
     
         29 . The method of cloaking encrypted data according to  claim 28 , wherein:
 said encrypted serial data stream is encrypted by a Type 1 encryption unit.   
     
     
         30 . The method of cloaking encrypted data according to  claim 28 , wherein:
 said encrypted serial data stream is encrypted by a KIV type encryption unit.   
     
     
         31 . The method of cloaking encrypted data according to  claim 28 , wherein:
 said encrypted serial data stream is encrypted by a KIV-7 encryption unit.   
     
     
         32 . The method of cloaking encrypted data according to  claim 28 , wherein:
 said first physical IP encapsulating router includes an ISDN router.   
     
     
         33 . The method of cloaking encrypted data according to  claim 28 , further comprising:
 transmitting said IP packets over a satellite terminal.   
     
     
         34 . The method of cloaking encrypted data according to  claim 28 , further comprising:
 outputting said serial data stream as a synchronous serial data stream.   
     
     
         35 . The method of cloaking encrypted data according to  claim 28 , further comprising:
 outputting said serial data stream as an RS-530 data stream.   
     
     
         36 . The method of cloaking encrypted data according to  claim 28 , further comprising:
 combining two separate voice data sources to form said encrypted serial data stream.   
     
     
         37 . An apparatus for cloaking encrypted data, comprising:
 means for encapsulating a received encrypted serial data stream into Internet Protocol (IP) packets with a first physical IP encapsulator device;   means for forming a first Internet Protocol Security (IPSEC) tunnel over a physical public IP network, between a first physical IP encapsulating router and a remote, second physical IP encapsulating gateway router;   means for forming a second data tunnel over said physical public IP network, within said IPSEC tunnel, between said first physical IP encapsulator device and a remote, second physical IP encapsulator device; and   means for transmitting said IP packets of encrypted data within said second data tunnel, which is within said IPSEC tunnel, between said first physical IP encapsulator device and said remote, second physical IP encapsulator device.   
     
     
         38 . The apparatus for cloaking encrypted data according to  claim 37 , wherein:
 said encrypted serial data stream is encrypted by a Type 1 encryption unit.   
     
     
         39 . The apparatus for cloaking encrypted data according to  claim 37 , wherein:
 said encrypted serial data stream is encrypted by a KIV type encryption unit.   
     
     
         40 . The apparatus for cloaking encrypted data according to  claim 37 , wherein:
 said encrypted serial data stream is encrypted by a KIV-7 encryption unit.   
     
     
         41 . The apparatus for cloaking encrypted data according to  claim 37 , wherein:
 said first physical IP encapsulating router includes an ISDN router.   
     
     
         42 . The apparatus for cloaking encrypted data according to  claim 37 , further comprising:
 means for transmitting said IP packets over a satellite terminal.   
     
     
         43 . The apparatus for cloaking encrypted data according to  claim 37 , further comprising:
 means for outputting said serial data stream as a synchronous serial data stream.   
     
     
         44 . The apparatus for cloaking encrypted data according to  claim 37 , further comprising:
 means for outputting said serial data stream as an RS-530 data stream.   
     
     
         45 . The apparatus for cloaking encrypted data according to  claim 37 , further comprising:
 means for combining two separate voice data sources to form said encrypted serial data stream.

Join the waitlist — get patent alerts

Track US2016248736A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.