Direct connection limitation based on a period of time

US10880381B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-10880381-B2
Application numberUS-201515773010-A
CountryUS
Kind codeB2
Filing dateNov 4, 2015
Priority dateNov 4, 2015
Publication dateDec 29, 2020
Grant dateDec 29, 2020

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

Examples herein disclose a facilitation of a direct connection between a source and a destination. In response to a request from the source to facilitate the direct connection, the examples identify the destination among multiple destinations based on available bandwidth from the multiple destinations. The examples transmit a security token to the identified destination for authentication of traffic from the source, wherein the source includes an indication of a period of time. Based on the indication of the period of time, the examples limit the direct connection.

First claim

Opening claim text (preview).

I claim: 1. A method comprising: in response to a connection request from a source, identifying, by a processor of a networking device, a first destination from among multiple destinations based on available bandwidths of the multiple destinations; transmitting, by the processor of the networking device, a first security information to the source and a second security information to the first destination for authorizing a direct connection between the source and the first destination for a predetermined period of time, wherein the second security information transmitted to the first destination includes an indication of the predetermined period of time for the direct connection between the source and the first destination; receiving, by the processor of the networking device, a signal indicating an activation of the predetermined period of time from the first destination, wherein the signal indicating the activation of the predetermined period of time is sent to the networking device in responsive in response to an arrival of encrypted data from the source at the first destination; tracking, by the processor of the networking device, the predetermined period of time in association with the first security information and the second security information in response to receiving the signal indicating the activation of the predetermined period of time; and limiting, by the processor of the networking device, the direct connection between the source and the first destination based on the tracking of the predetermined period of time. 2. The method of claim 1 , wherein the limiting of the direct connection between the source and the first destination comprises: transmitting, by the processor of the networking device, a stop signal to the source and the first destination in response to an expiration of the predetermined period of time, wherein the stop signal causes the source to cease transmitting the encrypted data to the first destination and causes the first destination to cease receiving the encrypted data from the source. 3. The method of claim 1 , comprising: receiving, by the networking device, information of the available bandwidths of the multiple destinations from the multiple destinations. 4. The method of claim 1 , comprising: responsive to the connection request from the source, transmitting, by the processor of the networking device, a response to the source, wherein the response includes the first security information and an Internet Protocol (IP) address of the first destination. 5. The method of claim 1 , comprising: approving, by the processor of the networking device, the connection request from the source prior to the transmitting of the first security information to the source and the second security information to the first destination. 6. The method of claim 1 , wherein the first security information comprises a private key, and the second security information comprises a public key different from the private key. 7. The method of claim 1 , wherein the connection request from the source includes an events per second (EPS) information corresponding to network traffic at the source. 8. A non-transitory machine-readable storage medium storing instructions that when executed by a processing resource cause a networking device to: in response to a connection request from a source device, identify a first destination device from among multiple destination devices based on available bandwidths of the multiple destination devices; transmit a first security information to the source device and a second security information to the first destination device for authenticating a direct connection between the source device and the first destination device for a predetermined period of time, wherein the second security information transmitted to the first destination device includes an indication of the predetermined period of time; receive a signal indicating an activation of the predetermined period of time from the first destination device, wherein the signal indicating the activation of the predetermined period of time is sent to the networking device in response to an arrival of encrypted data from the source device at the first destination device; track the predetermined period of time in association with the first security information and the second security information in response to receiving the signal indicating the activation of the predetermined period of time; and limit the direct connection between the source device and the first destination device based on the tracking of the predetermined period of time. 9. The non-transitory machine-readable storage medium of claim 8 , wherein the instructions to limit the direct connection between the source device and the first destination device comprise instructions that when executed by the processing resource cause the networking device to: transmit a stop signal to the source device and the first destination device in response to an expiration of the predetermined period of time, wherein the stop signal causes the source device to stop transmitting the encrypted data to the first destination device and causes the first destination device to stop receiving the encrypted data from the source device. 10. The non-transitory machine-readable storage medium of claim 8 , comprising instructions that when executed by the processing resource cause the networking device to: responsive to the connection request from the source device, transmit a response to the source device including the first security information and an Internet Protocol (IP) address of the first destination device. 11. A networking device comprising: a processor; and a first memory storing instructions that when executed by the processor cause the processor to: in response to a connection request from a source, identify a first destination from among multiple destinations based on available bandwidths of the multiple destinations; transmit a first security information to the source and a second security information to the first destination for authorizing a direct connection between the source and the first destination for a predetermined period of time, wherein the second security information transmitted to the first destination includes an indication of the predetermined period of time; receive a signal indicating an activation of the predetermined period of time from the first destination, wherein the signal indicating the activation of the predetermined period of time is sent to the networking device in response to an arrival of encrypted data from the source at the first destination; track the predetermined period of time in association with the first security information and the second security information in response to receiving the signal indicating the activation of the predetermined period of time; and limit the direct connection between the source and the first destination based on the tracking of the predetermined period of time. 12. The networking device of claim 11 , comprising: a second memory storing instructions to handle the direct connection between the source and the first destination in response to the first memory being unavailable. 13. The method of claim 1 , wherein the source comprises a source computing device, and the multiple destinations comprise multiple destination computing devices. 14. The method of claim 1 , wherein the first security information transmitted to the source comprises a first key pair, and the second security information transmitted to the first destination comprises a second key pair, wherein the first key pair comprises a first public key and

Assignees

Inventors

Classifications

  • H04L67/101Primary

    based on network conditions · CPC title

  • Traffic characterised by specific attributes, e.g. priority or QoS · CPC title

  • Usage controlling of secret information, e.g. techniques for restricting cryptographic keys to pre-authorized uses, different access levels, validity of crypto-period, different key- or password length, or different strong and weak cryptographic algorithms (network architectures or network communication protocols for using time-dependent keys in a packet data network H04L63/068) · CPC title

  • Termination or inactivation of sessions, e.g. event-controlled end of session · CPC title

  • H04L67/141Primary

    Setup of application sessions (admission control or resource allocation in data switching networks H04L47/70) · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US10880381B2 cover?
Examples herein disclose a facilitation of a direct connection between a source and a destination. In response to a request from the source to facilitate the direct connection, the examples identify the destination among multiple destinations based on available bandwidth from the multiple destinations. The examples transmit a security token to the identified destination for authentication of tr…
Who is the assignee on this patent?
Entit Software Llc, Micro Focus Llc
What technology area does this patent fall under?
Primary CPC classification H04L67/101. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Dec 29 2020 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 7 related publications on this page (citations in our corpus or others sharing the same primary CPC).