Video surveillance systems using out of band key exchange
US-12177293-B2 · Dec 24, 2024 · US
US9357014B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-9357014-B2 |
| Application number | US-201414264538-A |
| Country | US |
| Kind code | B2 |
| Filing date | Apr 29, 2014 |
| Priority date | Apr 29, 2014 |
| Publication date | May 31, 2016 |
| Grant date | May 31, 2016 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
A service-based networking capability is presented. The service-based networking capability replaces traditional networking connections between endpoints with service connections between endpoints. The service-based networking capability supports establishment and use of a service connection between endpoints, where the service connection between endpoints may be provided below the application layer and above the transport layer. The establishment and use of a service connection between endpoints may be provided using a connected services stack, which may include a connected services layer that is configured to operate below the application layer and above the transport layer.
Opening claim text (preview).
What is claimed is: 1. An apparatus, comprising: a processor and a memory communicatively connected to the processor, the processor configured to run a connected services stack, the connected services stack comprising a connected services layer configured to operate below an application layer and above a transport layer, wherein the connected services layer is configured to support establishment of a service connection between the connected services layer and a remote connected services layer of a remote endpoint, wherein the connected services layer is configured to support establishment of the service connection based on a service name of the connected services layer, a service name of the remote connected services layer, and a service connection identifier for the service connection, wherein the connected services layer is configured to: send, toward a server, a service connection request message comprising the service name of the connected services layer and the service name of the remote connected services layer of the remote endpoint; and receive, from the server, a service connection response message comprising the service name of the remote connected services layer of the remote endpoint, an Internet Protocol (IP) address of the remote endpoint, and the service connection identifier for the service connection. 2. The apparatus of claim 1 , wherein the service connection response message further comprises one or more encryption keys for the service connection. 3. The apparatus of claim 1 , wherein the connected services layer is configured to send the service connection request message responsive to: a communication request from an application via the application layer; or a determination that an application is expected to request communication via the application layer. 4. The apparatus of claim 1 , wherein the connected services layer is configured to maintain authentication information configured for use by the connected services layer in authenticating with the server. 5. The apparatus of claim 1 , wherein the connected services layer is configured to: maintain a set of service connection information for the service connection, the set of service connection information comprising the service connection identifier for the service connection, the service name of the remote connected services layer of the remote endpoint, and the IP address of the remote endpoint. 6. The apparatus of claim 1 , wherein the connected services layer is configured to: initiate establishment of the service connection with the remote connected services layer of the remote endpoint by propagating, toward the remote connected services layer of the remote endpoint, a service connection establishment request message comprising the service connection identifier for the service connection and the IP address of the remote endpoint. 7. The apparatus of claim 6 , wherein the connected services layer is configured to: participate in a handshake with the remote connected services layer of the remote endpoint for establishing the service connection with the remote connected services layer of the remote endpoint. 8. The apparatus of claim 6 , wherein the connected services layer is configured to: negotiate a set of service connection parameters with the remote connected services layer of the remote endpoint during establishment of the service connection with the remote connected services layer of the remote endpoint. 9. The apparatus of claim 1 , wherein the connected services layer is configured to: establish the service connection with the remote connected services layer of the remote endpoint based on the service connection identifier for the service connection and the IP address of the remote endpoint. 10. The apparatus of claim 9 , wherein the connected services layer is configured to: receive an application communication from an application of the apparatus via the application layer; and propagate the application communication toward the remote endpoint using the service connection with the remote connected services layer of the remote endpoint. 11. The apparatus of claim 9 , wherein the connected services layer is configured to: receive, via the service connection, an application communication from an application of the remote endpoint; and propagate the application communication toward an application of the apparatus via the application layer. 12. The apparatus of claim 1 , wherein the connected services layer is configured to: based on a change of the apparatus from the IP address to a new IP address: propagate, toward the server, an IP address change notification message including the service connection identifier for the service connection and the new IP address of the apparatus. 13. The apparatus of claim 1 , wherein the connected services layer is configured to: based on a change of the apparatus from the IP address to a new IP address: propagate, toward the remote connected services layer of the remote endpoint, an IP address change notification message including the service connection identifier for the service connection and the new IP address of the apparatus. 14. The apparatus of claim 13 , wherein the apparatus is configured to detect the change of the apparatus from the IP address to the new IP address. 15. The apparatus of claim 13 , wherein the connected services layer is configured to encrypt the IP address change notification message, using at least one encryption key associated with the service connection, prior to propagating the IP address change notification message. 16. The apparatus of claim 1 , wherein the connected services layer is configured to: based on a determination that the remote connected services layer of the remote endpoint has failed to acknowledge receipt of packets from the apparatus for a threshold length of time: propagate, toward the server, an IP address request message including the service connection identifier for the service connection; and receive, from the server, an IP address response message including a new IP address of the remote endpoint. 17. The apparatus of claim 16 , wherein the connected services layer is configured to: update a set of service connection information for the service connection, the set of service connection information comprising the service connection identifier for the service connection and the service name of the remote connected services layer of the remote endpoint, the set of service connection information being updated to replace the IP address of the remote endpoint with the new IP address of the remote endpoint. 18. A method, comprising: running, by a processor, a connected services stack, the connected services stack comprising a connected services layer configured to operate below an application layer and above a transport layer, wherein the connected services layer is configured to support establishment of a service connection between the connected services layer and a remote connected services layer of a remote endpoint, wherein the connected services layer is configured to support establishment of the service connection based on a service name of the connected services layer, a service name of the remote connected services layer, and a service connection identifier for the service connection, wherein the connected services layer is configured to: send, toward a server, a service connection request message comprising the service name of the connected services layer and the service name of the remote connected services layer of the remote endpoint; and rec
above the transport layer · CPC title
for authentication of entities (cryptographic mechanisms or cryptographic arrangements for entity authentication H04L9/32) · CPC title
wherein the data content is protected, e.g. by encrypting or encapsulating the payload · CPC title
Electricity · mapped topic
Setup of application sessions (admission control or resource allocation in data switching networks H04L47/70) · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.