会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 1. 发明授权
    • Method and device for anonymous entity identification
    • 用于匿名实体识别的方法和设备
    • US09225728B2
    • 2015-12-29
    • US13884749
    • 2011-06-24
    • Zhiqiang DuManxia TieXiaolong LaiQin Li
    • Zhiqiang DuManxia TieXiaolong LaiQin Li
    • H04L29/06H04L9/32
    • H04L63/12H04L9/3255H04L63/0407H04L63/08H04L63/0853
    • The present invention discloses a method for anonymous entity identification, which comprises the following steps: an entity A transmits an RA and an IGA to an entity B; the entity B returns an RB, an IGB and a TokenBA to the entity A; the entity A sends an RA′, the RB, the IGA and the IGB to a credible third-party TP; the credible third-party TP checks the validity of a first group and a second group according to the IGA and the IGB; the credible third-party TP returns an RESGA, an RESGB, and a TokenTA to the entity A, or returns the RESGA, the RESGA, a TokenTA1 and a TokenTA2 to the entity A; and the entity A performs a verification after receiving them; the entity A sends a TokenAB to the entity B; and the entity B performs the verification after receiving it. In the present invention, there is no need to send the identity information of the entity to be identified to an opposite terminal, so that anonymous identity identification is realized.
    • 本发明公开了一种匿名实体识别方法,包括以下步骤:实体A向实体B发送RA和IGA; 实体B向实体A返回RB,IGB和TokenBA; 实体A将RA',RB,IGA和IGB发送到可信的第三方TP; 可靠的第三方TP根据IGA和IGB检查第一组和第二组的有效性; 可信第三方TP向实体A返回RESGA,RESGB和TokenTA,或将RESGA,RESGA,TokenTA1和TokenTA2返回给实体A; 实体A在接收到验证后进行验证; 实体A向实体B发送TokenAB; 并且实体B在接收到该验证之后执行验证。 在本发明中,不需要将要识别的实体的身份信息发送到对方终端,从而实现匿名身份识别。
    • 2. 发明授权
    • Method and system for network access control
    • 网络访问控制的方法和系统
    • US09038143B2
    • 2015-05-19
    • US13879136
    • 2011-03-15
    • Zhiqiang DuManxia TieZhenhai HuangJun Cao
    • Zhiqiang DuManxia TieZhenhai HuangJun Cao
    • G06F7/04H04L29/06
    • H04L63/08
    • A method and a system for network access control are provided, which are based on cipher code mechanism. After a visitor has raised an access request, an access controller in the destination network processes the access request and initiates an authentication request on the visitor identity to an authentication server through the visitor. The access controller in the destination network accomplishes the authentication on the visitor identity according to the public authentication result of the authentication server transferred by the visitor, and performs according to the authorization policy the authorization management on the successfully authenticated visitor. The present invention solves the problem of incapableness of performing the access control when the access controller can not directly use the authentication service provided by the authentication server. The present invention can sufficiently satisfy the real application requirements of access control on visitor.
    • 提供了一种基于密码机制的网络访问控制方法和系统。 在访问者提出访问请求之后,目的地网络中的访问控制器处理访问请求,并通过访问者向认证服务器发起对访问者身份的认证请求。 目的地网络中的接入控制器根据访问者转发的认证服务器的公共认证结果对访客身份进行认证,并根据认证策略对成功认证的访问者进行授权管理。 本发明解决了当访问控制器不能直接使用认证服务器提供的认证服务时执行访问控制的不适用性的问题。 本发明可以充分满足访客访问控制的实际应用需求。
    • 3. 发明授权
    • Secret communication method and system between neighboring user terminals, terminal, switching equipment
    • 相邻用户终端,终端,交换设备之间的秘密通信方式和系统
    • US08850190B2
    • 2014-09-30
    • US13814899
    • 2011-04-27
    • Qin LiJun CaoManxia TieZhenhai HuangZhiqiang Du
    • Qin LiJun CaoManxia TieZhenhai HuangZhiqiang Du
    • H04L29/06H04L9/32H04L9/08
    • H04L9/0816H04L9/083H04L9/321H04L63/06H04L2463/062
    • The present invention provides a secret communication method, apparatus and system. The method comprises: 1) determining a neighboring encryption switching equipment shared by a first user terminal and a second user terminal, wherein the first user terminal and the second user terminal are neighboring user terminals (1); 2) establishing, by the neighboring encryption switching equipment, an inter-station key for communication between the first user terminal and the second terminal (2); 3) performing data secret communication between the first user terminal and the second terminal by using the inter-station key (3). With the present invention, the neighboring user terminals needing to perform the secret communication can establish the inter-station key without performing identity authentication with each other, and can perform the secret communication with the inter-station key, and thereby the network load is reduced.
    • 本发明提供一种秘密通信方法,装置和系统。 该方法包括:1)确定由第一用户终端和第二用户终端共享的相邻加密交换设备,其中第一用户终端和第二用户终端是相邻的用户终端(1); 2)由相邻加密交换设备建立用于第一用户终端和第二终端(2)之间的通信的站间密钥; 3)使用站间密钥(3)执行第一用户终端与第二终端之间的数据秘密通信。 通过本发明,需要执行秘密通信的相邻用户终端可以建立站间密钥,而不进行彼此的身份认证,并且可以执行与站间密钥的秘密通信,从而减少网络负载 。
    • 4. 发明授权
    • Method for realizing convergent WAPI network architecture with separate MAC mode
    • 用于实现具有单独MAC模式的融合WAPI网络架构的方法
    • US08813199B2
    • 2014-08-19
    • US13203645
    • 2009-12-14
    • Zhiqiang DuJun CaoManxia TieXiaolong LaiZhenhai Huang
    • Zhiqiang DuJun CaoManxia TieXiaolong LaiZhenhai Huang
    • G06F15/16H04L29/06H04W12/06H04W84/12
    • H04W12/06H04L63/08H04L63/10H04W84/12
    • A method for realizing a convergent Wireless Local Area Networks (WLAN) Authentication and Privacy Infrastructure (WAPI) network architecture with a split Medium Access Control (MAC) mode involves the steps: a split MAC mode for realizing WLAN Privacy Infrastructure (WPI) by an access controller is constructed through splitting the MAC function and the WAPI function of the wireless access point apart to a wireless terminal point and the access controller; integration of a WAPI and a convergent WLAN network system architecture is realized under the split MAC mode that the access controller realizes WPI; the association connection process is performed among a station point, a wireless terminal point and an access controller; the process for announcing the start of performing the WLAN Authentication Infrastructure (WAI) protocol between the access controller and the wireless terminal point is performed; the process for performing the WAI protocol between the station point and the access controller is performed; the process for announcing the end of performing the WAI protocol between the access controller and the wireless terminal point is performed; the secret communication process is performed between the wireless terminal point and the station point by using WPI.
    • 用于实现具有分离式媒体接入控制(MAC)模式的融合无线局域网(WLAN)认证和隐私基础设施(WAPI)网络架构的方法包括以下步骤:用于通过以下方式实现WLAN隐私基础设施(WPI)的分割MAC模式 通过将无线接入点的MAC功能和WAPI功能分离到无线终端点和接入控制器来构建接入控制器; 在接入控制器实现WPI的分割MAC模式下实现WAPI和融合WLAN网络系统架构的集成; 在站点,无线终端点和访问控制器之间执行关联连接处理; 执行在接入控制器和无线终端点之间通知执行WLAN认证基础设施(WAI)协议的开始的过程; 执行在站点和访问控制器之间执行WAI协议的过程; 执行用于在接入控制器和无线终端点之间通知执行WAI协议的结束的过程; 通过使用WPI在无线终端点和站点之间执行秘密通信处理。
    • 7. 发明申请
    • ANONYMOUS ENTITY AUTHENTICATION METHOD AND SYSTEM
    • 匿名实体认证方法与系统
    • US20130227289A1
    • 2013-08-29
    • US13884712
    • 2011-07-11
    • Zhiqiang DuManxia TieXiaolong LaiQiongwen Liang
    • Zhiqiang DuManxia TieXiaolong LaiQiongwen Liang
    • H04L29/06
    • H04L63/0807H04L9/3213H04L9/3247H04L63/0421H04L2209/42H04M3/42008
    • An anonymous entity authentication method includes the steps of: an entity B sending RB and IGB; an entity A sending RB, R′A, IGA and IGB to a trusted third party TP, the trusted third party TP checking a group GA and a group GB against IGA and IGB for legality; the trusted third party TP returning ResGA, ResGB and a token TokenTA or returning ResGA, ResGB, TokenTA1 and TokenTA2 to the entity A; the entity A sending TokenAB and IGA to the entity B for authentication by the entity B; and the entity B sending TokenBA to the entity A for authentication by the entity A. In this solution, anonymous entity authentication can be performed without passing identity information of the authenticated entity itself to the opposite entity. Furthermore this solution further relates to an anonymous entity authentication apparatus and a trusted third party.
    • 匿名实体认证方法包括以下步骤:实体B发送RB和IGB; 实体A向受信任的第三方TP发送RB,R'A,IGA和IGB,可信第三方TP检查组GA,组GB对IGA和IGB进行合法性检查; 可信第三方TP返回ResGA,ResGB和令牌TokenTA或返回ResGA,ResGB,TokenTA1和TokenTA2到实体A; 实体A向实体B发送TokenAB和IGA以供实体B认证; 并且实体B向实体A发送TokenBA以进行实体A的认证。在该解决方案中,可以执行匿名实体认证,而不将认证实体本身的身份信息传递给相对实体。 此外,该解决方案还涉及匿名实体认证装置和可信第三方。
    • 10. 发明申请
    • METHOD FOR REALIZING CONVERGENT WAPI NETWORK ARCHITECTURE WITH SEPARATE MAC MODE
    • 用于实现具有独立MAC模式的融合WAPI网络架构的方法
    • US20110307943A1
    • 2011-12-15
    • US13203645
    • 2009-12-14
    • Zhiqiang DuJun CaoManxia TieXiaolong LaiZhenhai Huang
    • Zhiqiang DuJun CaoManxia TieXiaolong LaiZhenhai Huang
    • H04W12/06H04W12/04H04L29/06
    • H04W12/06H04L63/08H04L63/10H04W84/12
    • A method for realizing a convergent Wireless Local Area Networks (WLAN) Authentication and Privacy Infrastructure (WAPI) network architecture with a split Medium Access Control (MAC) mode involves the steps: a split MAC mode for realizing WLAN Privacy Infrastructure (WPI) by an access controller is constructed through splitting the MAC function and the WAPI function of the wireless access point apart to a wireless terminal point and the access controller; integration of a WAPI and a convergent WLAN network system architecture is realized under the split MAC mode that the access controller realizes WPI; the association connection process is performed among a station point, a wireless terminal point and an access controller; the process for announcing the start of performing the WLAN Authentication Infrastructure (WAI) protocol between the access controller and the wireless terminal point is performed; the process for performing the WAI protocol between the station point and the access controller is performed; the process for announcing the end of performing the WAI protocol between the access controller and the wireless terminal point is performed; the secret communication process is performed between the wireless terminal point and the station point by using WPI.
    • 用于实现具有分离式媒体接入控制(MAC)模式的融合无线局域网(WLAN)认证和隐私基础设施(WAPI)网络架构的方法包括以下步骤:用于通过以下方式实现WLAN隐私基础设施(WPI)的分割MAC模式 通过将无线接入点的MAC功能和WAPI功能分离到无线终端点和接入控制器来构建接入控制器; 在接入控制器实现WPI的分割MAC模式下实现WAPI和融合WLAN网络系统架构的集成; 在站点,无线终端点和访问控制器之间执行关联连接处理; 执行在接入控制器和无线终端点之间通知执行WLAN认证基础设施(WAI)协议的开始的过程; 执行在站点和访问控制器之间执行WAI协议的过程; 执行用于在接入控制器和无线终端点之间通知执行WAI协议的结束的过程; 通过使用WPI在无线终端点和站点之间执行秘密通信处理。