Providing forward secrecy in a terminating TLS connection proxy
US-2015106624-A1 · Apr 16, 2015 · US
US9479443B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-9479443-B2 |
| Application number | US-201414285843-A |
| Country | US |
| Kind code | B2 |
| Filing date | May 23, 2014 |
| Priority date | May 16, 2014 |
| Publication date | Oct 25, 2016 |
| Grant date | Oct 25, 2016 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
An example method is provided in one example embodiment and may include receiving a packet for a subscriber at a gateway, wherein the gateway includes a local policy anchor for interfacing with one or more policy servers and one or more classifiers for interfacing with one or more service chains, each service chain including one or more services accessible by the gateway; determining a service chain to receive the subscriber's packet; appending the subscriber's packet with a header, wherein the header includes, at least in part, identification information for the subscriber and an Internet Protocol (IP) address for the local policy anchor; and injecting the packet including the header into the service chain determined for the subscriber.
Opening claim text (preview).
What is claimed is: 1. A method, comprising: receiving an update for a service at a local policy anchor included in a gateway, wherein the service is included in one or more service chains accessible by the gateway and wherein the update is at least one of a policy update and a charging update; determining if the local policy anchor has a session established with the service; communicating the update to a classifier within the gateway if the local policy anchor does not have a session established with the service; determining, by the classifier, one or more service chains including the service if the local policy anchor does not have a session established with the service; injecting, by the classifier, a packet including a service header containing the update into the one or more determined service chains including the service if the local policy anchor does not have a session established with the service; and communicating the update to the service from the local policy anchor if the local policy anchor has a session established with the service. 2. The method of claim 1 , wherein the communicating includes pushing the update to the service if the local policy anchor has a session established with the service. 3. The method of claim 1 , further comprising: consuming, by the service, the update included in the service header for the packet. 4. The method of claim 1 , wherein the service header is appended to a data packet containing subscriber data. 5. The method of claim 1 , wherein the service header is a Network Service Header including at least one of: policy information for the service; and charging information for the service. 6. The method of claim 1 , wherein the update is received from at least one of: a policy charging and rules function (PCRF); an online charging system (OCS); and an offline charging system (OFCS). 7. One or more non-transitory tangible media encoding logic that include instructions for execution that, when executed by a processor, is operable to perform operations comprising: receiving an update for a service at a local policy anchor included in a gateway, wherein the service is included in one or more service chains accessible by the gateway and wherein the update is at least one of a policy update and a charging update; determining if the local policy anchor has a session established with the service; communicating the update to a classifier within the gateway if the local policy anchor does not have a session established with the service: determining, by the classifier, one or more service chains including the service if the local policy anchor does not have a session established with the service; injecting by the classifier a packet including a service header containing the update into the one or more determined service chains including the service if the local policy anchor does not have a session established with the service; and communicating the update to the service from the local policy anchor if the local policy anchor has a session established with the service. 8. The media of claim 7 , wherein the communicating includes pushing the update to the service if the local policy anchor has a session established with the service. 9. The media of claim 7 , the operations further comprising: consuming, by the service, the update included in the service header for the packet. 10. The media of claim 7 , wherein the service header is appended to a data packet containing subscriber data. 11. The media of claim 7 , wherein the service header is a Network Service Header including at least one of: policy information for the service; and charging information for the service. 12. The media of claim 7 , wherein the update is received from at least one of: a policy charging and rules function (PCRF); an online charging system (OCS); and an offline charging system (OFCS). 13. An apparatus, comprising: a gateway; a memory element for storing data; and a processor that executes instructions associated with the data, wherein the processor and memory element cooperate such that the apparatus is configured for: receiving an update for a service at a local policy anchor included in the gateway, wherein the service is included in one or more service chains accessible by the gateway and wherein the update is at least one of a policy update and a charging update; determining if the local policy anchor has a session established with the service; communicating the update to a classifier within the gateway if the local policy anchor does not have a session established with the service; determining, by the classifier, one or more service chains including the service if the local policy anchor does not have a session established with the service; injecting, by the classifier, a packet including a service header containing the update into the one or more determined service chains including the service if the local policy anchor does not have a session established with the service; and communicating the update to the service from the local policy anchor if the local policy anchor has a session established with the service. 14. The apparatus of claim 13 , wherein the communicating includes pushing the update to the service if the local policy anchor has a session established with the service. 15. The apparatus of Claim 13 , wherein the service header is appended to a data packet containing subscriber data. 16. The apparatus of Claim 13 , wherein the service header is a Network Service Header including at least one of: policy information for the service; and charging information for the service. 17. The apparatus of claim 13 , wherein the update is received from at least one of: a policy charging and rules function (PCRF); an online charging system (OCS); and an offline charging system (OFCS).
based on regulatory allocation policies · CPC title
for supporting different services, e.g. a differentiated services [DiffServ] type of service · CPC title
Flow based routing · CPC title
Gateway arrangements · CPC title
Electricity · mapped topic
Related publications grouped by family.
Answers are generated from the same data shown on this page.