US Patent:
20080201486, Aug 21, 2008
Inventors:
Nai-Ting Hsu - Saratoga CA, US
Junzheng Zhang - Beijing, CN
Zhuoyuan Chai - Beijing, CN
Leemay Yen - San Jose CA, US
Pu-Chau Hsu - Saratoga CA, US
Assignee:
Array Networks, Inc. - Milpitas CA
International Classification:
G06F 15/173
G06F 15/16
Abstract:
A system and method for virtual private network (VPN) packet level routing using a Dual-NAT architecture to provide a bidirectional secure connection between applications, hosts, or networks at any two end sites without exposing each other's actual IP addresses and network topologies. The method includes providing a client a list of available resources on a remote network; initiating a request by the client for at least one resource from the list of available remote resources as though the at least one resource is local to the client; NATting the source and destination IP addresses to a pair of client and resource Dynamic VPN (DVPN) addresses; routing the request to the remote network; NATting the client and resource DVPN addresses to local IP addresses on the remote network; issuing the request to the at least resource; and NATting/routing the response using the reverse process.