US 11,916,889 B2
Computer network for secure IP to non-IP communication and backend device, gateway, frontend device therefore and procedure for operation thereof
Jiye Park, Munich (DE); Prajosh Premdas, Freising (DE); Markus Jung, Feldkirchen (DE); and Bernhard Siessegger, Unterschleissheim (DE)
Assigned to Inventronics GmbH, Munich (DE)
Filed by Inventronics GmbH, Munich (DE)
Filed on Oct. 5, 2021, as Appl. No. 17/493,871.
Claims priority of application No. PA202070676 (DK), filed on Oct. 5, 2020.
Prior Publication US 2022/0109658 A1, Apr. 7, 2022
Int. Cl. H04L 29/06 (2006.01); H04L 9/40 (2022.01)
CPC H04L 63/0435 (2013.01) [H04L 63/029 (2013.01); H04L 63/0823 (2013.01); H04L 63/166 (2013.01); H04L 63/20 (2013.01)] 13 Claims
OG exemplary drawing
 
1. A computer network for secure IP to Non-IP communication, wherein the computer network comprises:
a Non-IP subnetwork with at least one frontend device;
an IP subnetwork with at least one backend device;
a gateway configured to connect the Non-IP subnetwork with the IP subnetwork and configured to translate communication therebetween,
wherein the communication between the backend device and the gateway is an IP communication based on an IP security protocol, providing means for authentication and/or encryption; and
wherein the communication between the gateway and the frontend device is a Non-IP communication;
wherein the gateway is configured to mediate handshaking for establishing a secure tunnel for secure end-to-end communication between the backend device and the frontend device, wherein the secure tunnel is set to apply a session key; and
wherein the gateway and the backend device are configured to exchange datagrams with handshaking parameters; and
and wherein the gateway and the frontend device are configured to exchange Non-IP messages with a subset of the handshaking parameters; and
wherein backend device is configured to generate the session key and to authenticate the handshaking incorporating the handshaking parameters; and
wherein frontend device is configured to generate the session key and to authenticate the handshaking incorporating the subset of the handshaking parameters; and
wherein gateway is configured as not being capable of generating the session key from the handshaking parameters.