KR101029205B1 - 네트워크 디바이스에서의 로컬 커뮤니티 표현을 관리하기위한 안전한 분산 시스템 - Google Patents
네트워크 디바이스에서의 로컬 커뮤니티 표현을 관리하기위한 안전한 분산 시스템 Download PDFInfo
- Publication number
- KR101029205B1 KR101029205B1 KR1020057019241A KR20057019241A KR101029205B1 KR 101029205 B1 KR101029205 B1 KR 101029205B1 KR 1020057019241 A KR1020057019241 A KR 1020057019241A KR 20057019241 A KR20057019241 A KR 20057019241A KR 101029205 B1 KR101029205 B1 KR 101029205B1
- Authority
- KR
- South Korea
- Prior art keywords
- community
- devices
- identity
- network
- trust
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Expired - Fee Related
Links
Images
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
- H04L63/0876—Network architectures or network communication protocols for network security for authentication of entities based on the identity of the terminal or configuration, e.g. MAC address, hardware or software configuration or device fingerprint
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L12/00—Data switching networks
- H04L12/02—Details
- H04L12/12—Arrangements for remote connection or disconnection of substations or of equipment thereof
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/10—Network architectures or network communication protocols for network security for controlling access to devices or network resources
- H04L63/101—Access control lists [ACL]
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/10—Network architectures or network communication protocols for network security for controlling access to devices or network resources
- H04L63/104—Grouping of entities
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/12—Applying verification of the received information
- H04L63/123—Applying verification of the received information received data contents, e.g. message integrity
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L67/00—Network arrangements or protocols for supporting network services or applications
- H04L67/34—Network arrangements or protocols for supporting network services or applications involving the movement of software or configuration parameters
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Computer Hardware Design (AREA)
- Computing Systems (AREA)
- General Engineering & Computer Science (AREA)
- Power Engineering (AREA)
- Mobile Radio Communication Systems (AREA)
- Information Transfer Between Computers (AREA)
Abstract
Description
Claims (9)
- 네트워킹된 디바이스들의 커뮤니티에 속하는 디바이스로서,상기 디바이스(x)는,증명가능 아이덴티티(idx) 및 증명가능 아이덴티티를 생성하거나 얻는 수단 중 적어도 하나와,상기 디바이스(x)와 신뢰 관계들을 갖는 상기 커뮤니티의 디바이스들에 관한 정보를 저장하는 수단(12),과거에는 상기 디바이스(x)와 신뢰 관계들을 가졌지만 더 이상은 신뢰 관계를 갖지 않는 디바이스들인 불신되는 디바이스들에 관한 정보를 저장하는 수단(12), 및상기 네트워킹된 디바이스들의 커뮤니티에 속하는 각 디바이스와의 신뢰 관계 동기화를 위한 수단 - 상기 신뢰 관계 동기화를 위한 수단은, 상기 디바이스(x)가 상기 커뮤니티에 속하는 다른 디바이스들(j)과 자동적으로 신뢰 관계들을 설정하게 함 -을 포함하는 것을 특징으로 하는 디바이스.
- 삭제
- 제1항에 있어서,상기 디바이스들에 관한 정보는 상기 디바이스들의 증명가능 아이덴티티(idj)를 포함하는 디바이스.
- 제1항에 있어서,상기 디바이스들에 관한 정보는 상기 디바이스(x)가 다른 디바이스들(j)에 의해 신뢰된다는, 상기 커뮤니티의 다른 디바이스들(j)로부터 수신되는 증명들(Sj(idx))을 포함하는 디바이스.
- 제1항에 있어서,상기 신뢰 관계 동기화를 위한 수단은, 커뮤니티의 다른 디바이스들에 의해 신뢰되거나 또는 불신되는 디바이스들에 관해 커뮤니티의 다른 디바이스들과 정보를 교환하는 수단을 포함하는 디바이스.
- 제5항에 있어서,상기 디바이스(x)는,상기 디바이스(x)에 의해 신뢰되고 또한 상기 디바이스(x)를 신뢰하는 디바이스들의 아이덴티티들을 포함할 수 있는 제1 오브젝트(MT(x)),상기 디바이스(x)에 의해 신뢰되는 디바이스들의 아이덴티티들을 포함할 수 있는 제2 오브젝트(UT(x)), 및상기 디바이스(x)에 의해 불신되는 디바이스들의 아이덴티티들을 포함할 수 있는 제3 오브젝트(DT(x))를 포함하는 것을 특징으로 하는 디바이스.
- 제6항에 있어서,상기 디바이스는 상기 제1 오브젝트(MT(x)), 상기 제2 오브젝트(UT(x)) 및 상기 제3 오브젝트(DT(x)) 중 적어도 하나의 내용을 커뮤니티의 다른 디바이스들과 교환되는 정보의 함수로서 수정할 수 있는 디바이스.
- 제6항 또는 제7항에 있어서,상기 제1 오브젝트(MT(x)), 상기 제2 오브젝트(UT(x)) 및 상기 제3 오브젝트(DT(x)) 중 적어도 하나는 암호 자료(cryptographic material)를 또한 포함할 수 있는 디바이스.
- 제6항 또는 제7항에 있어서,상기 디바이스(x)는, 상기 커뮤니티의 다른 디바이스(y)의 아이덴티티(idy)가 상기 디바이스(x)의 제1 오브젝트(MT(x)) 또는 제2 오브젝트(UT(x))에 포함되어 있는 경우 상기 다른 디바이스(y)를 또한 추방할 수 있고, 상기 추방 동작은, 상기 제1 오브젝트(MT(x)) 또는 제2 오브젝트(UT(x))로부터, 추방될 상기 다른 디바이스(y)의 아이덴티티(idy)를 제거하는 것과, 추방될 상기 다른 디바이스(y)의 아이덴티티(idy)를 상기 디바이스(x)의 상기 제3 오브젝트(DT(x))에 삽입하는 것을 포함하는 디바이스.
Applications Claiming Priority (2)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
EP03290920 | 2003-04-11 | ||
EP03290920.2 | 2003-04-11 |
Publications (2)
Publication Number | Publication Date |
---|---|
KR20060009251A KR20060009251A (ko) | 2006-01-31 |
KR101029205B1 true KR101029205B1 (ko) | 2011-04-12 |
Family
ID=34673630
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
KR1020057019241A Expired - Fee Related KR101029205B1 (ko) | 2003-04-11 | 2004-04-13 | 네트워크 디바이스에서의 로컬 커뮤니티 표현을 관리하기위한 안전한 분산 시스템 |
Country Status (6)
Country | Link |
---|---|
US (1) | US20070025360A1 (ko) |
EP (1) | EP1614269A1 (ko) |
JP (1) | JP2006526228A (ko) |
KR (1) | KR101029205B1 (ko) |
CN (1) | CN1771711B (ko) |
WO (1) | WO2005057876A1 (ko) |
Families Citing this family (5)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US20070005602A1 (en) * | 2005-06-29 | 2007-01-04 | Nokia Corporation | Method, electronic device and computer program product for identifying entities based upon innate knowledge |
EP1816824A1 (en) * | 2006-02-07 | 2007-08-08 | Thomson Licensing | Method for device insertion into a community of network devices |
CN101473627B (zh) | 2006-06-22 | 2015-07-29 | 皇家飞利浦电子股份有限公司 | 医疗自组身体传感器网络的先进的访问控制的方法和装置 |
EP1921817A1 (en) | 2006-11-09 | 2008-05-14 | Thomson Licensing | Methods and a device for associating a first device with a second device |
US8943580B2 (en) * | 2007-09-24 | 2015-01-27 | Apple Inc. | Embedded authentication systems in an electronic device |
Citations (1)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
EP1102430A1 (en) * | 1999-10-27 | 2001-05-23 | Telefonaktiebolaget Lm Ericsson | Method and arrangement in an ad hoc communication network |
Family Cites Families (21)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US6061796A (en) * | 1997-08-26 | 2000-05-09 | V-One Corporation | Multi-access virtual private network |
US6092201A (en) * | 1997-10-24 | 2000-07-18 | Entrust Technologies | Method and apparatus for extending secure communication operations via a shared list |
US6298072B1 (en) * | 1998-02-19 | 2001-10-02 | Mci Communications Corporation | Real-time transaction synchronization among peer authentication systems in a telecommunications network environment |
US6256733B1 (en) * | 1998-10-08 | 2001-07-03 | Entrust Technologies Limited | Access and storage of secure group communication cryptographic keys |
US7136645B2 (en) * | 1998-10-09 | 2006-11-14 | Netmotion Wireless, Inc. | Method and apparatus for providing mobile and other intermittent connectivity in a computing environment |
US6484257B1 (en) * | 1999-02-27 | 2002-11-19 | Alonzo Ellis | System and method for maintaining N number of simultaneous cryptographic sessions using a distributed computing environment |
US7783507B2 (en) * | 1999-08-23 | 2010-08-24 | General Electric Company | System and method for managing a fleet of remote assets |
WO2001042942A1 (en) * | 1999-12-10 | 2001-06-14 | Myteam.Com, Inc. | Tools for administering leagues and accessing and populating a community website structure |
US7165107B2 (en) * | 2001-01-22 | 2007-01-16 | Sun Microsystems, Inc. | System and method for dynamic, transparent migration of services |
CA2437548A1 (en) * | 2001-02-06 | 2002-11-28 | En Garde Systems | Apparatus and method for providing secure network communication |
JP2002271318A (ja) * | 2001-03-06 | 2002-09-20 | Mitsubishi Materials Corp | 無線通信装置、認証管理サーバ |
US7222187B2 (en) * | 2001-07-31 | 2007-05-22 | Sun Microsystems, Inc. | Distributed trust mechanism for decentralized networks |
EP1421464A4 (en) * | 2001-08-06 | 2009-12-23 | Certco Inc Loew S Corp | SYSTEM AND METHOD FOR CONFIDENCE CLIMATE FOR COMPUTER ENVIRONMENTS |
US7299351B2 (en) * | 2001-09-19 | 2007-11-20 | Microsoft Corporation | Peer-to-peer name resolution protocol (PNRP) security infrastructure and method |
US20030131232A1 (en) * | 2001-11-28 | 2003-07-10 | Fraser John D. | Directory-based secure communities |
US7185359B2 (en) * | 2001-12-21 | 2007-02-27 | Microsoft Corporation | Authentication and authorization across autonomous network systems |
US7127613B2 (en) * | 2002-02-25 | 2006-10-24 | Sun Microsystems, Inc. | Secured peer-to-peer network data exchange |
US7392375B2 (en) * | 2002-09-18 | 2008-06-24 | Colligo Networks, Inc. | Peer-to-peer authentication for real-time collaboration |
US7206934B2 (en) * | 2002-09-26 | 2007-04-17 | Sun Microsystems, Inc. | Distributed indexing of identity information in a peer-to-peer network |
US7751569B2 (en) * | 2002-11-19 | 2010-07-06 | Oracle America, Inc. | Group admission control apparatus and methods |
US20040128544A1 (en) * | 2002-12-31 | 2004-07-01 | International Business Machines Corporation | Method and system for aligning trust relationships with namespaces and policies |
-
2004
- 2004-04-13 EP EP04726997A patent/EP1614269A1/en not_active Withdrawn
- 2004-04-13 JP JP2006515751A patent/JP2006526228A/ja active Pending
- 2004-04-13 US US10/552,138 patent/US20070025360A1/en not_active Abandoned
- 2004-04-13 CN CN2004800095010A patent/CN1771711B/zh not_active Expired - Fee Related
- 2004-04-13 WO PCT/EP2004/003863 patent/WO2005057876A1/en active Application Filing
- 2004-04-13 KR KR1020057019241A patent/KR101029205B1/ko not_active Expired - Fee Related
Patent Citations (1)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
EP1102430A1 (en) * | 1999-10-27 | 2001-05-23 | Telefonaktiebolaget Lm Ericsson | Method and arrangement in an ad hoc communication network |
Also Published As
Publication number | Publication date |
---|---|
CN1771711A (zh) | 2006-05-10 |
WO2005057876A1 (en) | 2005-06-23 |
JP2006526228A (ja) | 2006-11-16 |
US20070025360A1 (en) | 2007-02-01 |
CN1771711B (zh) | 2010-05-26 |
KR20060009251A (ko) | 2006-01-31 |
EP1614269A1 (en) | 2006-01-11 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
US11483143B2 (en) | Enhanced monitoring and protection of enterprise data | |
CN106576096B (zh) | 用于对具有不等能力的设备的认证的装置、方法及介质 | |
JP4347335B2 (ja) | ネットワーク中継プログラム、ネットワーク中継装置、通信システム、ネットワーク中継方法 | |
US20200287726A1 (en) | Remote device control | |
US5822434A (en) | Scheme to allow two computers on a network to upgrade from a non-secured to a secured session | |
EP1536609B1 (en) | Systems and methods for authenticating communications in a network | |
US20230037520A1 (en) | Blockchain schema for secure data transmission | |
WO2009074956A1 (en) | Method and system for managing a software application on a mobile computing device | |
US8145917B2 (en) | Security bootstrapping for distributed architecture devices | |
JP4975252B2 (ja) | 非共有の秘密を危険にすることなく共有の秘密を検出する方法及び装置 | |
US20120226909A1 (en) | Method of Configuring a Node, Related Node and Configuration Server | |
EP4323898B1 (en) | Computer-implemented methods and systems for establishing and/or controlling network connectivity | |
US20040024882A1 (en) | Enabling authorised-server initiated internet communication in the presence of network address translation (NAT) and firewalls | |
US20230045486A1 (en) | Apparatus and Methods for Encrypted Communication | |
Liou et al. | T-auth: A novel authentication mechanism for the iot based on smart contracts and pufs | |
KR101029205B1 (ko) | 네트워크 디바이스에서의 로컬 커뮤니티 표현을 관리하기위한 안전한 분산 시스템 | |
EP1622333A1 (en) | Method and apparatus for minimally onerous and rapid authentification | |
JP2009181194A (ja) | 認証システム、それに用いる制御装置、認証方法および認証用プログラム | |
CN116132163B (zh) | 使用dhcp协议实现设备限定局域网络围栏的方法 | |
Bagnulo et al. | Rosa: Realistic open security architecture for active networks | |
JP7656065B2 (ja) | セキュアキー管理デバイス、認証システム、広域ネットワーク、およびセッションキーを生成する方法 | |
del Campo et al. | Providing security services in a multiprotocol service discovery system for ubiquitous networks | |
Larafa et al. | Light and distributed AAA scheme for mobile ad-hoc networks | |
Urien et al. | HIP-Tags, a new paradigm for the Internet Of Things | |
Stockwell | Towards a deployable framework for delegation of authority in network applications |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
PA0105 | International application |
St.27 status event code: A-0-1-A10-A15-nap-PA0105 |
|
P11-X000 | Amendment of application requested |
St.27 status event code: A-2-2-P10-P11-nap-X000 |
|
P13-X000 | Application amended |
St.27 status event code: A-2-2-P10-P13-nap-X000 |
|
PG1501 | Laying open of application |
St.27 status event code: A-1-1-Q10-Q12-nap-PG1501 |
|
PN2301 | Change of applicant |
St.27 status event code: A-3-3-R10-R13-asn-PN2301 St.27 status event code: A-3-3-R10-R11-asn-PN2301 |
|
R18-X000 | Changes to party contact information recorded |
St.27 status event code: A-3-3-R10-R18-oth-X000 |
|
A201 | Request for examination | ||
AMND | Amendment | ||
P11-X000 | Amendment of application requested |
St.27 status event code: A-2-2-P10-P11-nap-X000 |
|
P13-X000 | Application amended |
St.27 status event code: A-2-2-P10-P13-nap-X000 |
|
PA0201 | Request for examination |
St.27 status event code: A-1-2-D10-D11-exm-PA0201 |
|
E902 | Notification of reason for refusal | ||
PE0902 | Notice of grounds for rejection |
St.27 status event code: A-1-2-D10-D21-exm-PE0902 |
|
R18-X000 | Changes to party contact information recorded |
St.27 status event code: A-3-3-R10-R18-oth-X000 |
|
AMND | Amendment | ||
P11-X000 | Amendment of application requested |
St.27 status event code: A-2-2-P10-P11-nap-X000 |
|
P13-X000 | Application amended |
St.27 status event code: A-2-2-P10-P13-nap-X000 |
|
E601 | Decision to refuse application | ||
PE0601 | Decision on rejection of patent |
St.27 status event code: N-2-6-B10-B15-exm-PE0601 |
|
AMND | Amendment | ||
E13-X000 | Pre-grant limitation requested |
St.27 status event code: A-2-3-E10-E13-lim-X000 |
|
J201 | Request for trial against refusal decision | ||
P11-X000 | Amendment of application requested |
St.27 status event code: A-2-2-P10-P11-nap-X000 |
|
P13-X000 | Application amended |
St.27 status event code: A-2-2-P10-P13-nap-X000 |
|
PJ0201 | Trial against decision of rejection |
St.27 status event code: A-3-3-V10-V11-apl-PJ0201 |
|
PB0901 | Examination by re-examination before a trial |
St.27 status event code: A-6-3-E10-E12-rex-PB0901 |
|
B701 | Decision to grant | ||
PB0701 | Decision of registration after re-examination before a trial |
St.27 status event code: A-3-4-F10-F13-rex-PB0701 |
|
GRNT | Written decision to grant | ||
PR0701 | Registration of establishment |
St.27 status event code: A-2-4-F10-F11-exm-PR0701 |
|
PR1002 | Payment of registration fee |
St.27 status event code: A-2-2-U10-U12-oth-PR1002 Fee payment year number: 1 |
|
PG1601 | Publication of registration |
St.27 status event code: A-4-4-Q10-Q13-nap-PG1601 |
|
PN2301 | Change of applicant |
St.27 status event code: A-5-5-R10-R13-asn-PN2301 St.27 status event code: A-5-5-R10-R11-asn-PN2301 |
|
PN2301 | Change of applicant |
St.27 status event code: A-5-5-R10-R13-asn-PN2301 St.27 status event code: A-5-5-R10-R11-asn-PN2301 |
|
FPAY | Annual fee payment |
Payment date: 20140320 Year of fee payment: 4 |
|
PR1001 | Payment of annual fee |
St.27 status event code: A-4-4-U10-U11-oth-PR1001 Fee payment year number: 4 |
|
PR1001 | Payment of annual fee |
St.27 status event code: A-4-4-U10-U11-oth-PR1001 Fee payment year number: 5 |
|
FPAY | Annual fee payment |
Payment date: 20160304 Year of fee payment: 6 |
|
PR1001 | Payment of annual fee |
St.27 status event code: A-4-4-U10-U11-oth-PR1001 Fee payment year number: 6 |
|
FPAY | Annual fee payment |
Payment date: 20170317 Year of fee payment: 7 |
|
PR1001 | Payment of annual fee |
St.27 status event code: A-4-4-U10-U11-oth-PR1001 Fee payment year number: 7 |
|
PR1001 | Payment of annual fee |
St.27 status event code: A-4-4-U10-U11-oth-PR1001 Fee payment year number: 8 |
|
R17-X000 | Change to representative recorded |
St.27 status event code: A-5-5-R10-R17-oth-X000 |
|
LAPS | Lapse due to unpaid annual fee | ||
PC1903 | Unpaid annual fee |
St.27 status event code: A-4-4-U10-U13-oth-PC1903 Not in force date: 20190407 Payment event data comment text: Termination Category : DEFAULT_OF_REGISTRATION_FEE |
|
R18-X000 | Changes to party contact information recorded |
St.27 status event code: A-5-5-R10-R18-oth-X000 |
|
PC1903 | Unpaid annual fee |
St.27 status event code: N-4-6-H10-H13-oth-PC1903 Ip right cessation event data comment text: Termination Category : DEFAULT_OF_REGISTRATION_FEE Not in force date: 20190407 |
|
P22-X000 | Classification modified |
St.27 status event code: A-4-4-P10-P22-nap-X000 |