US2021227268A1PendingUtilityA1

Method for encrypting data streams with negotiable and adaptable encryption levels

Assignee: CITRIX SYSTEMS INCPriority: Jan 10, 2018Filed: Apr 1, 2021Published: Jul 22, 2021
Est. expiryJan 10, 2038(~11.4 yrs left)· nominal 20-yr term from priority
H04L 63/0428H04N 21/6582H04N 21/23476H04L 63/205H04N 21/2347H04N 21/25833
54
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

Described embodiments provide systems and methods for data encryption. A server communicating data with a client can determine a level of data encryption on the data that the server is capable of handling according to resources available to the server. A level of data encryption can include a type of encryption and a strength of the type of data encryption. The server can receive a level of data encryption on the data that the client is capable of handling according to resources available to the client. The server can identify a level of data encryption with which the server and the client agree to proceed, according to the determined level of data encryption and the received level of data encryption. The server, following a predefined interval, can identify an updated level of data encryption with which the server and the client agree to proceed.

Claims

exact text as granted — not AI-modified
What is claimed is: 
     
         1 . A method comprising:
 identifying, by a server, a first one or more types of encryption and a strength of each of the first one or more types of encryption the server can use to communicate with a client for a first time instance;   receiving, by the server, a second one or more types of encryption and the strength of each of the second one or more types of encryption that the client can use to communicate with the server;   identifying, by the server, the type of encryption and the strength of the type of encryption common to both the server and the client to use for encryption of communications for the first time instance; and   selecting, by the server for a second time instance, another type of encryption and another strength of the type of encryption common to both the server and client to use to upgrade a level of encryption for communications between the server and the client for the second time instance.   
     
     
         2 . The method of  claim 1 , further comprising using, by the server, the another type of encryption and the another strength of the type of encryption for communications between the server and the client to upgrade the level of encryption. 
     
     
         3 . The method of  claim 1 , further comprising determining, by the server based at least on resources available to the server, the first one or more types of encryption and the strength of each of the first one or more types of encryption. 
     
     
         4 . The method of  claim 3 , wherein the resources available to the server comprises at least one of: network bandwidth, processor capacity, computational capacity, memory, battery level or battery consumption rate. 
     
     
         5 . The method of  claim 1 , further comprising selecting, by the server, the another type of encryption and the another strength of the type of encryption while in communication with the client. 
     
     
         6 . The method of  claim 1 , further comprising selecting, by the server, the another type of encryption and the another strength of the type of encryption as being above a predetermined level of encryption. 
     
     
         7 . The method of  claim 1 , further comprising receiving, by the server, the second one or more types of encryption and the strength of each of the second one or more types of encryption based at least on resources available to the client. 
     
     
         8 . A device comprising:
 one or more processors, coupled to memory and configured to:   identify a first one or more types of encryption and a strength of each of the first one or more types of encryption that the device can use to communicate with a second device for a first time instance;   receive a second one or more types of encryption and the strength of each of the second one or more types of encryption that the second device can use to communicate with the device;   identify the type of encryption and the strength of the type of encryption common to both the device and the second device to use for encryption of communications for the first time instance; and   select, for a second time instance, another type of encryption and another strength of the type of encryption common to both the device and second device to use to upgrade a level of encryption for communications between the device and the second device for the second time instance.   
     
     
         9 . The device of  claim 8 , wherein the one or more processors are further configured to use the another type of encryption and the another strength of the type of encryption for communications between the device and the second device to upgrade the level of encryption. 
     
     
         10 . The device of  claim 8 , wherein the one or more processors are further configured to determine, based at least on resources available to the device, the first one or more types of encryption and the strength of each of the first one or more types of encryption. 
     
     
         11 . The device of  claim 10 , wherein the resources available to the device comprises at least one of: network bandwidth, processor capacity, computational capacity, memory, battery level or battery consumption rate. 
     
     
         12 . A system comprising:
 a server in communication with a plurality of clients, wherein the server is configured to:
 identify a plurality of types of encryption and a strength of each of the plurality of types of encryption that the server can use to communicate with the plurality of clients; 
 select for use in communication with a first client of the plurality of clients for at least a first instance one of the plurality of types of encryption and the strength of the one of the plurality of types of encryption of the server common to a first one or more types of encryption and a strength of each of the first one or more types of encryption of the first client; and 
 select for use in communication with a second client of the plurality of clients for at least a second instance one of the plurality of types of encryption and the strength of the one of the plurality of types of encryption of the server common to a second one or more types of encryption and a strength of each of the second one or more types of encryption of the second client. 
   
     
     
         13 . The system of  claim 12 , wherein the one or more processors are further configured to receive the first one or more types of encryption and the strength of each of the first one or more types of encryption that the first client of the plurality of clients can use to communicate with the server. 
     
     
         14 . The system of  claim 13 , wherein the first one or more types of encryption and the strength of each of the first one or more types of encryption are based at least on resources available to the first client. 
     
     
         15 . The system of  claim 12 , wherein the one or more processors are further configured to receive the second one or more types of encryption and the strength of each of the second one or more types of encryption that the second client of the plurality of clients can use to communicate with the server. 
     
     
         16 . The system of  claim 15 , wherein the second one or more types of encryption and the strength of each of the first one or more types of encryption are based at least on resources available to the second client. 
     
     
         17 . The system of  claim 12 , wherein the one or more processors are further configured to select one of the plurality of types of encryption and strength of the plurality of types of encryption of the server above a predetermined level of encryption. 
     
     
         18 . The system of  claim 12 , wherein the one or more processors are further configured to select another type of encryption and another strength of the type of encryption to use for the first client while in communication with the first client. 
     
     
         19 . The system of  claim 12 , wherein the one or more processors are further configured to select another type of encryption and another strength of the type of encryption to use for the second client while in communication with the second client. 
     
     
         20 . The system of  claim 12 , wherein the one or more processors are further configured to identify at least one of the plurality of types of encryption or the strength of each of the plurality of types of encryption based at least on resources available to the server comprises at least one of: network bandwidth, processor capacity, computational capacity, memory, battery level or battery consumption rate.

Join the waitlist — get patent alerts

Track US2021227268A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.