首页> 外国专利> Method and system for introducing in-network services in an end-to-end communication path

Method and system for introducing in-network services in an end-to-end communication path

机译:在端到端通信路径中引入网络内服务的方法和系统

摘要

A method for introducing in-network services in an end-to-end communication path between two hosts includes: providing at least one middlebox entity and performing a registration procedure that includes registering the in-network services together with their respective service level agreements at the at least one middlebox entity; by at least one of the two hosts, sending a subscription for the in-network services to the at least one middlebox entity together with a policy list containing at least host-specific security requirements; by the at least one middlebox entity, evaluating potential conflicts between the host-specific security requirements and the service level agreements of the in-network services, and, in case no conflicts are detected, authenticating the in-network services; and inserting the authenticated in-network services within the end-to-end communication path and starting encrypted communication between the two hosts.
机译:在两个主机之间的端到端通信路径中引入网络内服务的方法包括:提供至少一个中间封口实体并执行注册过程,该登记过程包括将内联服务与其各自的服务级别协议一起注册 至少一个中间盒实体; 通过两个主机中的至少一个,将网络内服务的订阅与至少一个中间箱实体一起发送到至少一个策略列表,其中包含特定于主机的安全要求; 通过至少一个中间箱实体,评估主机特定的安全要求与网络内服务的服务级别协议之间的潜在冲突,而在没有检测到冲突的情况下,验证网络内服务; 并在端到端通信路径中插入经过身份验证的网络内服务,并在两个主机之间启动加密通信。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号