Internet protocol security (IPSEC) packet processing for multiple clients sharing a single network address

Embodiments of the present invention address deficiencies of the art in respect to secure communications for multiple hosts in an address translation environment and provide a method, system and computer program product for IPsec SA management for multiple clients sharing a single network address. I...

Full description

Saved in:
Bibliographic Details
Main Authors OVERBY, JR. LINWOOD H, PORTER JOYCE A, WIERBOWSKI DAVID J
Format Patent
LanguageEnglish
Published 21.08.2012
Subjects
Online AccessGet full text

Cover

Loading…
More Information
Summary:Embodiments of the present invention address deficiencies of the art in respect to secure communications for multiple hosts in an address translation environment and provide a method, system and computer program product for IPsec SA management for multiple clients sharing a single network address. In one embodiment, a computer implemented method for IPsec SA management for multiple hosts sharing a single network address can include receiving a packet for IPsec processing for a specified client among the multiple clients sharing the single network address. A dynamic SA can be located among multiple dynamic SAs for the specified client using client identifying information exclusive of a 5-tuple produced for the dynamic SA. Finally, IPsec processing can be performed for the packet.
Bibliography:Application Number: US20050238613