US2011099365A1PendingUtilityA1

Methods and apparatus for multi-level dynamic security system

Assignee: NEW JERSEY TECH INSTPriority: Apr 9, 2003Filed: Dec 30, 2010Published: Apr 28, 2011
Est. expiryApr 9, 2023(expired)· nominal 20-yr term from priority
Inventors:Atam Dhawan
H04K 1/04H04L 9/3247H04L 2209/56H04L 2209/608H04L 9/3236H04N 19/63
48
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

Methods and apparatus for converting original data into a plurality of sub-bands using wavelet decomposition; encrypting at least one of the sub-bands using a key to produce encrypted sub-band data; and transmitting the encrypted sub-band data to a recipient separately from the other sub-bands.

Claims

exact text as granted — not AI-modified
1 .- 10 . (canceled) 
     
     
         11 . A method of routing, comprising:
 routing one or more packets of encrypted data to a recipient through a communication network having nodes, wherein the encrypted data has an associated security level, and wherein a respective node has an associated node security level,   said routing comprising routing a particular packet only through one or more nodes having associated node security levels higher than or equal to the associated security level of the encrypted data carried by the particular packet,   wherein the associated node security level of a respective node is updated based at least in part on recent behavior of the respective node.   
     
     
         12 . The method of  claim 11 , wherein the node security level of a respective node is further based at least in part on an assigned security clearance. 
     
     
         13 . The method of  claim 11 , wherein said routing comprises comparing the associated security level of the encrypted data carried by the particular packet with an associated security level of a particular node. 
     
     
         14 . A machine-readable medium containing executable instructions that, upon execution by a machine, cause the machine to perform operations comprising:
 routing one or more packets of encrypted data to a recipient through a communication network having nodes, wherein the encrypted data has an associated security level, and wherein a respective node has an associated node security level,   said routing comprising routing a particular packet only through one or more nodes having associated node security levels higher than or equal to the associated security level of the encrypted data carried by the particular packet,   wherein the associated node security level of a respective node is updated based at least in part on recent behavior of the respective node.   
     
     
         15 . The medium of  claim 14 , wherein the node security level of a respective node is further based at least in part on an assigned security clearance. 
     
     
         16 . The medium of  claim 14 , wherein said routing comprises comparing the associated security level of the encrypted data carried by the particular packet with an associated security level of a particular node. 
     
     
         17 . A node of a communication network, comprising:
 a security level evaluator configured to compute a metric based at least in part on evaluating recent behavior of the node and to update a node security level associated with the node.   
     
     
         18 . The node of  claim 17 , wherein the node security level is based at least in part on an assigned security clearance. 
     
     
         19 . The node of  claim 17 , wherein the node is further configured to route one or more packets of encrypted data through the communication network, using a routing protocol based on security levels of nodes in the communication network. 
     
     
         20 . The node of  claim 19 , wherein the encrypted data has an associated security level, and wherein the node is further configured to route a particular packet only through one or more nodes having associated node security levels higher than or equal to the security level associated with the encrypted data carried by the particular packet. 
     
     
         21 . The node of  claim 19 , wherein the node is further configured to merge two or more packets prior to routing if the node security level is higher than the security levels associated with the encrypted data carried by the two or more packets. 
     
     
         22 . A method to be executed by a node of a communication network, the method comprising:
 dynamically updating a node security level associated with the node, said dynamically updating including computing a metric based at least in part on evaluating recent behavior of the node.   
     
     
         23 . The method of  claim 22 , wherein the node security level is based at least in part on an assigned security clearance. 
     
     
         24 . The method of  claim 22 , further comprising routing one or more packets of encrypted data through the communication network, using a routing protocol based on security levels of nodes in the communication network. 
     
     
         25 . The method of  claim 24 , wherein the encrypted data has an associated security level, and wherein respective nodes of the communication network have associated node security levels, and wherein said routing comprises routing a particular packet only through one or more nodes having associated node security levels higher than or equal to the security level associated with the encrypted data carried by the particular packet. 
     
     
         26 . The method of  claim 24 , further comprising merging two or more packets prior to routing if the node security level is higher than the security levels associated with the encrypted data carried by the two or more packets. 
     
     
         27 . A machine-readable medium containing executable instructions that, upon execution by a machine, cause the machine to perform operations comprising:
 dynamically updating a node security level associated with the node, said dynamically updating including computing a metric based at least in part on evaluating recent behavior of the node.   
     
     
         28 . The medium of  claim 27 , wherein the node security level is based at least in part on an assigned security clearance. 
     
     
         29 . The medium of  claim 27 , wherein the operations further comprise routing one or more packets of encrypted data through the communication network, using a routing protocol based on security levels of nodes in the communication network. 
     
     
         30 . The medium of  claim 29 , wherein the encrypted data has an associated security level, and wherein respective nodes of the communication network have associated node security levels, and wherein said routing comprises routing a particular packet only through one or more nodes having associated node security levels higher than or equal to the security level associated with the encrypted data carried by the particular packet. 
     
     
         31 . The medium of  claim 29 , wherein the operations further comprise merging two or more packets prior to routing if the node security level is higher than the security levels associated with the encrypted data carried by the two or more packets.

Join the waitlist — get patent alerts

Track US2011099365A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.