发明授权
US07299351B2 Peer-to-peer name resolution protocol (PNRP) security infrastructure and method
有权
对等名称解析协议(PNRP)安全基础设施和方法
- 专利标题: Peer-to-peer name resolution protocol (PNRP) security infrastructure and method
- 专利标题(中): 对等名称解析协议(PNRP)安全基础设施和方法
-
申请号: US09956260申请日: 2001-09-19
-
公开(公告)号: US07299351B2公开(公告)日: 2007-11-20
- 发明人: Christian Huitema , John L. Miller , Alexandru Gavrilescu
- 申请人: Christian Huitema , John L. Miller , Alexandru Gavrilescu
- 申请人地址: US WA Redmond
- 专利权人: Microsoft Corporation
- 当前专利权人: Microsoft Corporation
- 当前专利权人地址: US WA Redmond
- 代理机构: Marshall, Gerstein & Borun LLP
- 主分类号: H04L9/00
- IPC分类号: H04L9/00
摘要:
A method for use in a peer-to-peer communication system to ensure valid connections are made in a secure manner includes the steps of receiving an address record for a peer node which includes an ID certificate. The ID certificate is validated and checked to verify that the ID certificate has not expired. Further, the method determines if the node from whom the address record was received is to be trusted, and the number of instances of the IP address included in the certificate is already stored in cache. When the foregoing are completed successfully, i.e. the certificate is valid, not expired, has been supplied by a trusted neighbor, and does not point to an IP address that already exists for different ID's multiple times, the method opportunistically verifies ownership of the ID certificate at the peer node's IP address. That is, the verification of ownership only occurs when the advertiser of the ID is the owner of that ID (or when the ID is to be used). If any of the above cannot be completed successfully, the address record is discarded.
公开/授权文献
信息查询