The present invention is useful for routing data traffic in data
communications networks where some or all of the network interface links
are protected by cryptographic techniques, e.g., encryption. The
invention routes datagram traffic in such networks toward interface links
perceived to have strong encryption protection and away from interface
links perceived to have weak or weakening encryption protection, based on
the remaining encryption capacity for such links.