EP2512093A1

Improvements to an agile network protocol for secure communications with assured system availability

Abstract

A computer readable medium and a method are disclosed for accessing a secure computer network address, comprising steps of receiving a secure domain name, sending a query message to a secure domain name service, the query message requesting a secure computer network address corresponding to the secure domain name, receiving a response message containing the secure computer network address corresponding to the secure domain name; and sending an access request message to the secure computer network address using a virtual private network communication link, the access request message containing a request for information stored at the secure computer network address.

EP2512093A1, drawing sheet 1
Sheet 1 of 49

Term

Term ended

Projected expiry passed 25 April 2021, 5.4 years ago.

  1. Priority
  2. Filed
  3. Published
  4. Projected expiry
  5. Today

22 claims: 19 independent, 3 dependent

  1. 1
    A method for accessing a secure computer network address, comprising steps of:receiving a secure domain name;sending a query message to a secure domain name service, the query message requesting a secure computer network address corresponding to the secure domain name;receiving a response message containing the secure computer network address corresponding to the secure domain name;and sending an access request message to the secure computer network address using a virtual private network communication link, the access request message containing a request for information stored at the secure computer network address.
  2. 3
    The method according to any of claims 1 and 2, wherein the step of receiving a command to establish the virtual private network communication link includes a step of selecting a predetermined icon displayed on a computer display.
  3. 4
    The method according to any of claims 1 to 3, wherein the response message contains provisioning information for the virtual private network.
  4. 5
    The method according to any of claims 1 to 4, wherein the virtual private network is based on inserting one or more data values into each data packet sent to the secure computer network address, the one or more data values varying according to a pseudo-random sequence.
  5. 6
    The method according to any of claims 1 to 4, wherein the virtual private network is based on inserting into at least one data packet at least one data value representing a predetermined level of service associated with the virtual private network.
  6. 7
    The method according to any of claims 1 to 4, wherein the virtual private network is based on a computer network address hopping regime that is used to pseudorandomly change computer network addresses in packets transmitted between the first computer and the second computer.
  7. 8
    The method according to any of claims 1 to 4, wherein the virtual private network is based on comparing a value in each data packet transmitted to the secure computer network address to a moving window of valid values.
  8. 9
    The method according to any of claims 1 to 4, wherein the virtual private network is based on a comparison of a discriminator field in a header of each data packet to the secure computer network address to a table of valid discriminator fields.
  9. 10
    The method according to any of claims 1 to 9, wherein the computer network includes the Internet.
  10. 11
    The method according to any of claims 1 to 10, wherein the secure domain name has a top-level domain name that includes one of .scom, .snet, .sorg, .sedu, .smil or .sgov.
  11. 12
    A computer-readable storage medium, comprising:a storage area;and computer-readable instructions for a method for accessing a secure computer network address, the method comprising steps of: receiving a secure domain name;sending a query message to a secure domain name service, the query message requesting a secure computer network address corresponding to the secure domain name;receiving a response message containing the secure computer network address corresponding to the secure domain name;and sending an access request message to the secure computer network address using a virtual private network communication link, the access request message containing a request for information stored at the secure computer network address.
  12. 15
    The computer-readable medium according to any of claims 13 and 14, wherein the response message contains provisioning information for the virtual private network.
  13. 16
    The computer-readable medium according to any of claims 13 to 15, wherein the virtual private network is based on inserting one or more data values into each data packet sent to the secure computer network address, the one or more data values varying according to a pseudo-random sequence.
  14. 17
    The computer-readable medium according to any of claims 13 to 15, wherein the virtual private network is based on inserting into at least one data packet at least one data value representing a predetermined level of service associated with the virtual private network.
  15. 18
    The computer-readable medium according to any of claims 13 to 15, wherein the virtual private network is based on a computer network address hopping regime that is used to pseudorandomly change computer network addresses in packets transmitted between the first computer and the second computer.
  16. 19
    The computer-readable medium according to any of claims 13 to 15, wherein the virtual private network is based on comparing a value in each data packet transmitted to the secure computer network address to a moving window of valid values.
  17. 20
    The computer-readable medium according to any of claims 13 to 15, wherein the virtual private network is based on a comparison of a discriminator field in a header of each data packet to the secure computer network address to a table of valid discriminator fields.
  18. 21
    The computer-readable medium according to any of claims 13 to 20, wherein the computer network includes the Internet.
  19. 22
    The computer-readable medium according to any of claims 13 to 21, wherein the secure domain name has a top-level domain name that includes one of .scom, .snet, .sorg, .sedu, .smil or .sgov.
Independent claims19