Method and device for enabling a trust relationship using an expired public key infrastructure (PKI) certificate
    42.
    发明授权
    Method and device for enabling a trust relationship using an expired public key infrastructure (PKI) certificate 有权
    使用过期公钥基础设施(PKI)证书启用信任关系的方法和设备

    公开(公告)号:US08423761B2

    公开(公告)日:2013-04-16

    申请号:US12262786

    申请日:2008-10-31

    IPC分类号: G06F21/00

    摘要: A method and device are useful for enabling a trust relationship using an expired public key infrastructure (PKI) certificate. The method includes determining at a relying party a maximum permissible grace period during which the PKI certificate can be conditionally granted a valid status (step 905). Next, at the relying party an uncertainty interval is determined, during which the relying party is unable to detect a revocation of the PKI certificate (step 910). A certificate grace period is then determined at the relying party from a function of the maximum permissible grace period, the uncertainty interval and at least one attribute defined in the PKI certificate (step 915). Using the PKI certificate, a trust relationship is then enabled between the relying party and a certificate holder of the PKI certificate, after determining the grace period and before an expiration of the grace period (step 920).

    摘要翻译: 一种方法和设备对于使用过期的公共密钥基础设施(PKI)证书启用信任关系很有用。 该方法包括在依赖方确定PKI证书有条件地被授予有效状态的最大允许宽限期(步骤905)。 接下来,在依赖方确定不确定性间隔,在该期间,依赖方不能检测到PKI证书的撤销(步骤910)。 然后根据最大允许宽限期,不确定性间隔和PKI证书中定义的至少一个属性的功能,在依赖方确定证书宽限期(步骤915)。 使用PKI证书,在确定宽限期之后和宽限期到期之前,在依赖方与PKI证书的证书持有者之间启用信任关系(步骤920)。

    Method and device for establishing a secure route in a wireless network
    43.
    发明授权
    Method and device for establishing a secure route in a wireless network 有权
    用于在无线网络中建立安全路由的方法和设备

    公开(公告)号:US08161283B2

    公开(公告)日:2012-04-17

    申请号:US11680359

    申请日:2007-02-28

    IPC分类号: H04L9/32

    摘要: A method for establishing a secure route in a wireless network as provided improves network efficiency. According to one aspect, the method includes receiving at a first node in the wireless network a route request message from a second node, where the second node and the first node have not been mutually authenticated. The route request message is then forwarded from the first node to a third node. A route reply message is then received at the first node from the third node. The first node is then mutually authenticated with the second node in response to receiving the route reply message at the first node.

    摘要翻译: 在所提供的无线网络中建立安全路由的方法提高了网络效率。 根据一个方面,所述方法包括在所述无线网络中的第一节点处接收来自第二节点的路由请求消息,其中所述第二节点和所述第一节点未被相互认证。 然后路由请求消息从第一节点转发到第三节点。 然后在第一节点从第三节点接收路由应答消息。 响应于在第一节点接收到路由应答消息,第一节点与第二节点相互认证。

    Dynamic resource assignment and exit information for emergency responders
    44.
    发明授权
    Dynamic resource assignment and exit information for emergency responders 有权
    紧急应急人员的动态资源分配和退出信息

    公开(公告)号:US07855639B2

    公开(公告)日:2010-12-21

    申请号:US11767610

    申请日:2007-06-25

    IPC分类号: G08B1/08

    摘要: A method of providing situational awareness at an incident scene. Sensor data can be received from at least one sensor (104, 106, 108) located at the incident scene and position data can be received for at least one resource (306, 308, 310, 312). Based on the received data, at least one optimal exit route (318) at the incident scene can be calculated. The present invention also relates to a system (118) that provides situational awareness at an incident scene. The system can include a communications adapter (204) that receives sensor data from at least one sensor located at the incident scene and position data for at least one resource located at the incident scene, and a processor (202) that calculates at least one optimal exit route for the resource to exit a location at the incident scene based on the received sensor data and position data.

    摘要翻译: 在事件现场提供情境意识的方法。 可以从位于入射场景的至少一个传感器(104,106,108)接收传感器数据,并且可以为至少一个资源(306,308,310,312)接收位置数据。 基于接收的数据,可以计算入射场景下的至少一个最优退出路线(318)。 本发明还涉及一种在事件现场提供情境感知的系统(118)。 该系统可以包括:通信适配器(204),其从位于事件场景处的至少一个传感器接收传感器数据,并且位于位于事件场景处的至少一个资源的位置数据;以及处理器(202),其计算至少一个最优 基于所接收的传感器数据和位置数据,资源的出口路线离开事件场景的位置。

    METHOD AND SYSTEM FOR ENSURING AUTHORIZED OPERATION OF A COMMUNICATION SYSTEM AS A SECONDARY USER
    45.
    发明申请
    METHOD AND SYSTEM FOR ENSURING AUTHORIZED OPERATION OF A COMMUNICATION SYSTEM AS A SECONDARY USER 有权
    用于确保作为第二用户的通信系统的授权操作的方法和系统

    公开(公告)号:US20100223659A1

    公开(公告)日:2010-09-02

    申请号:US12394561

    申请日:2009-02-27

    IPC分类号: H04L9/00

    摘要: A communication system (100) is facilitated by an access node (102) to support communication with subscriber units (104, 106) as secondary users of a regulated spectrum portion. The access node requests permission to operate as a secondary user from an authorization server (118). The authorization server provides authorized transmission parameters based on characteristics of the access node. The access node operates according to the authorized transmission parameters and provides the parameters to eligible subscriber units.

    摘要翻译: 通信系统(100)由接入节点(102)促进,以支持与订户单元(104,106)的通信,作为受限频谱部分的次要用户。 访问节点请求从授权服务器(118)作为次要用户操作的许可。 授权服务器根据接入节点的特性提供授权的传输参数。 接入节点根据授权的传输参数进行操作,并向符合条件的用户单元提供参数。

    METHOD AND DEVICE FOR ESTABLISHING A SECURE ROUTE IN A WIRELESS NETWORK
    47.
    发明申请
    METHOD AND DEVICE FOR ESTABLISHING A SECURE ROUTE IN A WIRELESS NETWORK 有权
    在无线网络中建立安全路由的方法和设备

    公开(公告)号:US20080205312A1

    公开(公告)日:2008-08-28

    申请号:US11680359

    申请日:2007-02-28

    IPC分类号: H04B7/00

    摘要: A method for establishing a secure route in a wireless network as provided improves network efficiency. According to one aspect, the method includes receiving at a first node in the wireless network a route request message from a second node, where the second node and the first node have not been mutually authenticated. The route request message is then forwarded from the first node to a third node. A route reply message is then received at the first node from the third node. The first node is then mutually authenticated with the second node in response to receiving the route reply message at the first node.

    摘要翻译: 在所提供的无线网络中建立安全路由的方法提高了网络效率。 根据一个方面,所述方法包括在所述无线网络中的第一节点处接收来自第二节点的路由请求消息,其中所述第二节点和所述第一节点未被相互认证。 然后路由请求消息从第一节点转发到第三节点。 然后在第一节点从第三节点接收路由应答消息。 响应于在第一节点接收到路由应答消息,第一节点与第二节点相互认证。

    METHOD AND DEVICE FOR TRANSMITTING DATA PACKETS
    48.
    发明申请
    METHOD AND DEVICE FOR TRANSMITTING DATA PACKETS 有权
    用于发送数据包的方法和设备

    公开(公告)号:US20080165786A1

    公开(公告)日:2008-07-10

    申请号:US11621803

    申请日:2007-01-10

    IPC分类号: H04L12/56

    摘要: A method for transmitting a packet from a transmitting node to a destination node in a communication network can enable improved network efficiency. The method includes receiving and storing identification information concerning at least one foreign node that is directly reachable in the communication network (block 505). It is then determined, using the identification information, whether the destination node is directly reachable in the communication network (block 510). Based on whether the destination node is directly reachable in the communication network, it is then determined whether to transmit the packet to the destination node using a tunneling protocol or without using a tunneling protocol (block 515). The packet is then transmitted from the transmitting node to the destination node (block 520).

    摘要翻译: 在通信网络中从发送节点向目的地节点发送分组的方法可以提高网络效率。 该方法包括接收和存储关于在通信网络中可直接到达的至少一个外来节点的标识信息(方框505)。 然后,使用识别信息确定目的地节点是否可直接到达通信网络(方框510)。 基于目的地节点在通信网络中是否可直接到达,然后确定是否使用隧道协议向目的地节点发送分组,或者不使用隧道协议(框515)。 然后从发送节点向目的地节点发送分组(框520)。

    AD-HOC NETWORK KEY MANAGEMENT
    49.
    发明申请
    AD-HOC NETWORK KEY MANAGEMENT 有权
    AD-HOC网络关键管理

    公开(公告)号:US20080046732A1

    公开(公告)日:2008-02-21

    申请号:US11464744

    申请日:2006-08-15

    摘要: An ad hoc network includes a first node, a second node, and a third node. The first node and second node share a first shared secret key, and the first node and third node share a second shared secret key. The second node and third node share a temporal key. The first node generates a unique key, encrypts the unique key with a first shared secret key to generate a first encrypted unique key and transmits the first encrypted unique key to the second node. The first node encrypts the unique key with a second shared secret key to generate a second encrypted unique key and transmits the second encrypted unique key to the third node. To establish the temporal key, the second node decrypts the first encrypted unique key and the third node decrypts the second encrypted unique key thereby each generating the unique key.

    摘要翻译: 自组织网络包括第一节点,第二节点和第三节点。 第一节点和第二节点共享第一共享秘密密钥,并且第一节点和第三节点共享第二共享秘密密钥。 第二节点和第三节点共享一个临时密钥。 第一节点生成唯一密钥,用第一共享秘密密钥加密唯一密钥以生成第一加密唯一密钥,并将第一加密唯一密钥发送到第二节点。 第一节点用第二个共享秘密密钥加密唯一密钥,以生成第二加密唯一密钥,并将第二加密唯一密钥发送到第三个节点。 为了建立时间密钥,第二节点解密第一加密唯一密钥,第三节点解密第二加密唯一密钥,从而每个生成唯一密钥。

    Method and system for mutual authentication of wireless communication network nodes
    50.
    发明授权
    Method and system for mutual authentication of wireless communication network nodes 有权
    无线通信网络节点相互认证的方法和系统

    公开(公告)号:US08862881B2

    公开(公告)日:2014-10-14

    申请号:US11420968

    申请日:2006-05-30

    IPC分类号: H04L29/06 H04L9/32 H04W12/06

    摘要: A method and system for mutually authenticating a first node and a second node operating in a wireless communication network enables mutual authentication when the first node and the second node are unable to directly authenticate each other. The method includes identifying, at the first node, a third node that can authenticate both the first node and the second node (step 215). Authentication data for authenticating the first node with the third node is then transmitted from the first node to the third node (step 220). Keying material that is received from the third node is then processed at the first node (step 225). A shared secret mutual authentication protocol is then processed, whereby the first node and the second node are mutually authenticated by proving that they each have authenticated with the third node and each have the keying material (step 230).

    摘要翻译: 在第一节点和第二节点不能直接相互认证的情况下,用于相互认证第一节点和在无线通信网络中操作的第二节点的方法和系统使得能够进行相互认证。 该方法包括在第一节点处识别能够认证第一节点和第二节点的第三节点(步骤215)。 然后从第一节点向第三节点发送用于认证具有第三节点的第一节点的认证数据(步骤220)。 然后在第一节点处处理从第三节点接收的键控材料(步骤225)。 然后处理共享秘密相互认证协议,由此第一节点和第二节点通过证明它们各自已经与第三节点认证并且每个具有密钥材料来相互认证(步骤230)。