The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Sep. 15, 2015

Filed:

Dec. 18, 2009
Applicants:

Tanya Roosta, Saratoga, CA (US);

Kavitha Kamarthy, Milpitas, CA (US);

Dinesh Ranjit, San Jose, CA (US);

Inventors:

Tanya Roosta, Saratoga, CA (US);

Kavitha Kamarthy, Milpitas, CA (US);

Dinesh Ranjit, San Jose, CA (US);

Assignee:

Cisco Technology, Inc., San Jose, CA (US);

Attorney:
Primary Examiner:
Assistant Examiner:
Int. Cl.
CPC ...
G06F 15/16 (2006.01); H04L 12/28 (2006.01); H04L 12/701 (2013.01); H04L 29/06 (2006.01);
U.S. Cl.
CPC ...
H04L 45/00 (2013.01); H04L 63/1441 (2013.01); H04L 65/102 (2013.01); H04L 63/0428 (2013.01);
Abstract

A network device receives packets sent over a network from another network device. Each packet contains a source identifier that identifies a device that is the source of the packet, a destination identifier that identifies a device that is the intended destination of the packet, a sender identifier that identifies a network device that encrypted and sent the packet and a sequence number associated with the packet. The network device stores data indicating source identifier, destination identifier, sender identifier and sequence number for packets received over time. The network device rejects a newly received packet when it is determined that the sequence number of the newly received packet is less than the last sequence number stored for a matching packet flow (same source identifier, destination identifier and sender identifier) and falls outside of the counter-based window with respect to the last sequence number stored for the matching packet flow.


Find Patent Forward Citations

Loading…