The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Jan. 21, 2025

Filed:

Jul. 27, 2023
Applicant:

Nicira, Inc., Palo Alto, CA (US);

Inventors:

Amit Chopra, Palo Alto, CA (US);

Uday Masurekar, Sunnyvale, CA (US);

Assignee:

Nicira, Inc., Palo Alto, CA (US);

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
H04L 9/40 (2022.01); H04L 9/08 (2006.01);
U.S. Cl.
CPC ...
H04L 63/162 (2013.01); H04L 9/0825 (2013.01); H04L 9/0833 (2013.01); H04L 9/0866 (2013.01); H04L 63/0272 (2013.01); H04L 63/0457 (2013.01); H04L 63/0485 (2013.01); H04L 63/061 (2013.01); H04L 63/065 (2013.01); H04L 63/0876 (2013.01); H04L 63/123 (2013.01);
Abstract

Techniques are disclosed for securing traffic flowing across multi-tenant virtualized infrastructures using group key-based encryption. In one embodiment, an encryption module of a virtual machine (VM) host intercepts layer 2 (L2) frames sent via a virtual NIC (vNIC). The encryption module determines whether the vNIC is connected to a 'secure wire,' and invokes an API exposed by a key management module to encrypt the frames using a group key associated with the secure wire, if any. Encryption may be performed for all frames from the vNIC, or according to a policy. In one embodiment, the encryption module may be located at a layer farthest from the vNIC, and encryption may be transparent to both the VM and a virtual switch. Unauthorized network entities which lack the group key cannot decipher the data of encrypted frames, even if they gain access to such frames.


Find Patent Forward Citations

Loading…