会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 1. 发明授权
    • Scalable replay counters for network security
    • 可扩展的重播计数器,用于网络安全
    • US09077772B2
    • 2015-07-07
    • US13451897
    • 2012-04-20
    • Jonathan W. HuiAnjum AhujaKrishna KondakaWei Hong
    • Jonathan W. HuiAnjum AhujaKrishna KondakaWei Hong
    • G06F7/04H04L29/14H04L29/08H04L29/06G06F15/16
    • H04L69/40H04L63/0846H04L67/12
    • In one embodiment, an authenticator in a communication network maintains a persistent authenticator epoch value that increments each time the authenticator restarts. The authenticator also maintains a persistent per-supplicant value for each supplicant of the authenticator, each per-supplicant value set to a current value of the authenticator epoch value each time the corresponding supplicant establishes a new security association with the authenticator. To communicate messages from the authenticator to a particular supplicant, each message uses a per-supplicant replay counter having a security association epoch counter and a message counter specific to the particular supplicant. In particular, the security association epoch counter for each message is set as a difference between the authenticator epoch value and the per-supplicant value for the particular supplicant when the message is communicated, while the message counter is incremented for each message communicated.
    • 在一个实施例中,通信网络中的认证器维护持续认证器时期值,其在每次验证器重新启动时递增。 认证者还为认证者的每个请求者维护持续的每个请求者的值,每次请求方的值都被设置为每次请求方与认证者建立新的安全关联时的认证者时期值的当前值。 为了将来自认证者的消息传递给特定的请求者,每个消息使用具有安全关联时计数器和特定请求者特定的消息计数器的每个请求者重播计数器。 特别地,当消息被传送时,每个消息的安全关联时代计数器被设置为特定请求者的认证者时期值和每个请求者的值之间的差异,同时消息计数器对于传达的每个消息而增加。
    • 2. 发明申请
    • SCALABLE REPLAY COUNTERS FOR NETWORK SECURITY
    • 网络安全的可扩展的重置计数器
    • US20130283347A1
    • 2013-10-24
    • US13451897
    • 2012-04-20
    • Jonathan W. HuiAnjum AhujaKrishna KondakaWei Hong
    • Jonathan W. HuiAnjum AhujaKrishna KondakaWei Hong
    • H04L29/06
    • H04L69/40H04L63/0846H04L67/12
    • In one embodiment, an authenticator in a communication network maintains a persistent authenticator epoch value that increments each time the authenticator restarts. The authenticator also maintains a persistent per-supplicant value for each supplicant of the authenticator, each per-supplicant value set to a current value of the authenticator epoch value each time the corresponding supplicant establishes a new security association with the authenticator. To communicate messages from the authenticator to a particular supplicant, each message uses a per-supplicant replay counter having a security association epoch counter and a message counter specific to the particular supplicant. In particular, the security association epoch counter for each message is set as a difference between the authenticator epoch value and the per-supplicant value for the particular supplicant when the message is communicated, while the message counter is incremented for each message communicated.
    • 在一个实施例中,通信网络中的认证器维护持续认证器时期值,其在每次验证器重新启动时递增。 认证者还为认证者的每个请求者维护持续的每个请求者的值,每次请求方的值都被设置为每次请求方与认证者建立新的安全关联时的认证者时期值的当前值。 为了将来自认证者的消息传递给特定的请求者,每个消息使用具有安全关联时计数器和特定请求者特定的消息计数器的每个请求者重播计数器。 特别地,当消息被传送时,每个消息的安全关联时代计数器被设置为特定请求者的认证者时期值和每个请求者的值之间的差异,同时消息计数器对于传达的每个消息而增加。
    • 6. 发明授权
    • Distributed group temporal key (GTK) state management
    • 分布式时间密钥(GTK)状态管理
    • US08800010B2
    • 2014-08-05
    • US13451918
    • 2012-04-20
    • Jonathan W. HuiAnjum AhujaKrishna KondakaWei Hong
    • Jonathan W. HuiAnjum AhujaKrishna KondakaWei Hong
    • H04L9/16
    • H04L63/08H04L9/0866
    • In one embodiment, each security protocol supplicant in a computer network determines its group temporal key (GTK) state, and exchanges the GTK state with one or more neighbor supplicants in the computer network. Based on the exchange, a supplicant may determine whether any inconsistencies exist in its GTK state, and in response to any inconsistencies in the GTK state, may perform a GTK state synchronization with a security protocol authenticator by indicating to the authenticator what is needed to resolve the inconsistent GTK state at the particular supplicant. In another embodiment, the authenticator, which is configured to not store per-supplicant GTK state, may transmit beacons containing GTK identifiers (IDs) of GTKs currently enabled on the authenticator, and also responds to supplicants having inconsistent GTK states with one or more needed GTKs as indicated by the supplicants.
    • 在一个实施例中,计算机网络中的每个安全协议请求者确定其组时间密钥(GTK)状态,并且与计算机网络中的一个或多个邻居请求者交换GTK状态。 基于交换,请求者可以确定其GTK状态中是否存在任何不一致,并且响应于GTK状态中的任何不一致,可以通过向认证者指示需要解决什么来执行与安全协议认证器的GTK状态同步 特定请求方的GTK状态不一致。 在另一个实施例中,被配置为不存储每个请求者GTK状态的认证器可以传送包含认证器当前启用的GTK的GTK标识符(ID)的信标,并且还响应具有不一致的GTK状态的请求者,其中一个或多个需要 请求者指出的GTK。
    • 7. 发明申请
    • DISTRIBUTED GROUP TEMPORAL KEY (GTK) STATE MANAGEMENT
    • 分布式时区(GTK)状态管理
    • US20130283360A1
    • 2013-10-24
    • US13451918
    • 2012-04-20
    • Jonathan W. HuiAnjum AhujaKrishna KondakaWei Hong
    • Jonathan W. HuiAnjum AhujaKrishna KondakaWei Hong
    • G06F21/20
    • H04L63/08H04L9/0866
    • In one embodiment, each security protocol supplicant in a computer network determines its group temporal key (GTK) state, and exchanges the GTK state with one or more neighbor supplicants in the computer network. Based on the exchange, a supplicant may determine whether any inconsistencies exist in its GTK state, and in response to any inconsistencies in the GTK state, may perform a GTK state synchronization with a security protocol authenticator by indicating to the authenticator what is needed to resolve the inconsistent GTK state at the particular supplicant. In another embodiment, the authenticator, which is configured to not store per-supplicant GTK state, may transmit beacons containing GTK identifiers (IDs) of GTKs currently enabled on the authenticator, and also responds to supplicants having inconsistent GTK states with one or more needed GTKs as indicated by the supplicants.
    • 在一个实施例中,计算机网络中的每个安全协议请求者确定其组时间密钥(GTK)状态,并且与计算机网络中的一个或多个邻居请求者交换GTK状态。 基于交换,请求者可以确定其GTK状态中是否存在任何不一致,并且响应于GTK状态中的任何不一致,可以通过向认证者指示需要解决什么来执行与安全协议认证器的GTK状态同步 特定请求方的GTK状态不一致。 在另一个实施例中,被配置为不存储每个请求者GTK状态的认证器可以传送包含认证器当前启用的GTK的GTK标识符(ID)的信标,并且还响应具有不一致的GTK状态的请求者,其中一个或多个需要 请求者指出的GTK。