Method and apparatus employing an invalid symbol security jam for communications network security
    42.
    发明授权
    Method and apparatus employing an invalid symbol security jam for communications network security 失效
    对通信网络安全性采用无效符号安全阻塞的方法和装置

    公开(公告)号:US06272640B1

    公开(公告)日:2001-08-07

    申请号:US09396233

    申请日:1999-09-15

    申请人: Michael A. Sokol

    发明人: Michael A. Sokol

    IPC分类号: G06F1300

    摘要: A security device for use in communications network devices, such as multi-port repeaters, in local area networks to prevent eavesdropping by overwriting the data with an invalid symbol in the data communication packets transmitted to all unintended transceivers connected to the communications network device. Confidential or user sensitive information is not conveyed to the unintended transceivers since the invalid symbol is defined independent of the data. The invalid symbol unambiguously informs the unintended transceivers that the data in the data packet is invalid.

    摘要翻译: 在局域网中的通信网络设备(例如多端口中继器)中使用的安全设备,用于通过在发送到连接到通信网络设备的所有非预期收发器的数据通信分组中用无效符号覆盖数据来防止窃听。 机密或用户敏感信息不会传达给非预期的收发器,因为无效符号是独立于数据定义的。 无效符号明确地通知无意的收发器数据包中的数据无效。

    Repeater security system
    44.
    发明授权
    Repeater security system 失效
    中继器安全系统

    公开(公告)号:US5353353A

    公开(公告)日:1994-10-04

    申请号:US53797

    申请日:1993-04-26

    摘要: A system is provided for use in a network providing security to ensure the prevention of unauthorized receipt of data. The system utilizes a jamming sequence to prevent unauthorized ports from receiving certain data. Repeaters utilized in the network are provided with the capability to detect a particular data sequence to provide the improved features.

    摘要翻译: 提供一种用于提供安全性的网络中的系统,以确保防止未经授权的数据接收。 系统利用干扰序列来防止未经授权的端口接收某些数据。 在网络中使用的中继器具有检测特定数据序列以提供改进的特征的能力。

    Method and apparatus for preventing extraneous detection of signal
information
    45.
    发明授权
    Method and apparatus for preventing extraneous detection of signal information 失效
    防止信号信息的外部检测的方法和装置

    公开(公告)号:US5321747A

    公开(公告)日:1994-06-14

    申请号:US50607

    申请日:1993-04-22

    申请人: Per Lindholm

    发明人: Per Lindholm

    摘要: In a method of preventing extraneous detection of signal information from raster scan signals in a plurality of consecutive line signals intended to form an image or partial images there is generated a random signal sequence, correlated with the information-carrying raster scan signals, but without information content, which is transmitted as protection for the raster scan signals. An apparatus for this purpose includes a generator (10, 12) adapted for generating a random signal sequence synchronous with the raster scan signals, and a switching element (5) adapted to transmit the random signal sequence round the equipment containing the raster scan signals that are to be protected.

    摘要翻译: 在防止来自旨在形成图像或部分图像的多个连续线信号中的光栅扫描信号的信号信息的外部检测的方法中,生成与携带信息的光栅扫描信号相关但是没有信息的随机信号序列 内容,作为光栅扫描信号的保护传输。 一种用于此目的的装置包括适于产生与光栅扫描信号同步的随机信号序列的发生器(10,12),以及适于在包含光栅扫描信号的设备周围传输随机信号序列的开关元件(5) 被保护。

    Access controller for local area network
    46.
    发明授权
    Access controller for local area network 失效
    局域网接入控制器

    公开(公告)号:US5124984A

    公开(公告)日:1992-06-23

    申请号:US564026

    申请日:1990-08-07

    申请人: Ferdinand Engel

    发明人: Ferdinand Engel

    IPC分类号: H04L12/22 H04L29/06

    摘要: An access controller for peer-to-peer communication networks which monitors the data packets transmitted between stations, determines when an access that needs to be controlled is being made, and then either destroys the packet or transmits one or more packets which appear as legitimate message packets to the stations but which, in fact, terminates or alters the communication path between the two stations. Since the invention is free of any particular protocol restrictions, it can be implemented with any type of protocol and at any layer of that protocol. And since the access control mechanism is neither part of the physical communication path nor part of the communication primitives, the stations cannot detect, in any direct sense, that their access is being controlled, and they do not need to be programmed to follow any special control protocols, or to use encryption. A signature signal can be used as a safety mechanism to prevent multiple access controllers from controlling the same network, to prevent an unauthorized access controller from seizing control of the network.

    摘要翻译: 用于对等通信网络的接入控制器,用于监视站间传输的数据分组,确定何时正在进行需要控制的接入,然后破坏数据包或发送一个或多个显示为合法消息的数据包 分组到站,但实际上终止或改变两个站之间的通信路径。 由于本发明没有任何特定的协议限制,所以它可以用任何类型的协议和协议的任何层来实现。 并且由于访问控制机制既不是物理通信路径的一部分也不是通信原语的一部分,所以站不能在任何直接的意义上检测到它们的访问被控制,并且它们不需要被编程以遵循任何特殊的 控制协议,或使用加密。 可以使用签名信号作为安全机制来防止多个接入控制器控制相同的网络,以防止未经授权的访问控制器占用网络的控制。

    Data transmission security arrangement for a plurality of data stations
sharing access to a communication network
    48.
    发明授权
    Data transmission security arrangement for a plurality of data stations sharing access to a communication network 失效
    用于共享对通信网络的访问的多个数据站的数据传输安全性布置

    公开(公告)号:US4901348A

    公开(公告)日:1990-02-13

    申请号:US812974

    申请日:1985-12-24

    摘要: An arrangement for securing data transmissions to and from one data device from among a plurality of data devices sharing a common interface is disclosed. In a data communication network, a master communication bus connects to a plurality of data transmitting and receiving devices via a single interface. The disclosed arrangement provides circuitry in the common interface which generates a jamming signal to all devices connected to the interface except for that one device which is either transmitting or receiving a data-transmission. The jamming signal inhibits all the connected devices from monitoring and detecting the data transmission processes of the interface. The one transmitting and receiving device is enabled to either transmit or receive data during the generation of the jamming signal which ensures a secure data transmission and prevents "eavesdropping" by the other devices. The jamming signal is removed at the conclusion of the data transmission to or from the one device.

    摘要翻译: 公开了一种用于保护来自共享公共接口的多个数据设备之间的数据传输到一个数据设备的装置的布置。 在数据通信网络中,主通信总线经由单个接口连接到多个数据发送和接收设备。 所公开的布置提供了公共接口中的电路,其对连接到接口的所有设备产生干扰信号,除了正在发送或接收数据传输的那个设备。 干扰信号禁止所有连接的设备监视和检测接口的数据传输过程。 一个发送和接收设备能够在生成干扰信号期间发送或接收数据,这确保了安全的数据传输,并且防止其他设备的“窃听”。 在到达或来自一个设备的数据传输结束时,干扰信号被去除。

    Computer security guard circuit
    49.
    发明授权
    Computer security guard circuit 失效
    电脑保安电路

    公开(公告)号:US4679226A

    公开(公告)日:1987-07-07

    申请号:US745782

    申请日:1985-06-17

    摘要: A circuit (16) is designed to prevent unauthorized access to a remote device such as a computer (10) over a communications system such as a telephone network (12). A remote computer terminal (13) is connected to the telephone network (12) through a conventional modem (14). At the remote location of computer (10), circuit (16) is connected between computer (10) and another modem (15). Circuit (16) is also connected to the telephone network (12) to receive a signal therefrom which connects modem (15) through circuit (16) to computer (10) to temporarily access the same. The connection, however, is disconnected after a predetermined time period unless circuit (16) receives a second signal from the telephone network (12) before the expiration of that predetermined time period.

    摘要翻译: 电路(16)被设计成防止通过诸如电话网络(12)的通信系统对诸如计算机(10)的远程设备的未经授权的访问。 远程计算机终端(13)通过常规调制解调器(14)连接到电话网络(12)。 在计算机(10)的远程位置,电路(16)连接在计算机(10)和另一个调制解调器(15)之间。 电路(16)也连接到电话网络(12)以从其接收信号,该信号通过电路(16)将调制解调器(15)连接到计算机(10)以临时访问该信号。 然而,连接在预定时间段之后被断开,除非电路(16)在该预定时间段期满之前从电话网络(12)接收到第二信号。

    Apparatus and method for restricting access to a communication network
    50.
    发明授权
    Apparatus and method for restricting access to a communication network 失效
    用于限制对通信网络的访问的装置和方法

    公开(公告)号:US4638356A

    公开(公告)日:1987-01-20

    申请号:US716384

    申请日:1985-03-27

    申请人: William A. Frezza

    发明人: William A. Frezza

    CPC分类号: H04L63/12 H04L12/22 H04L12/28

    摘要: Apparatus restricts access to a communication network having at least one service node for providing services to subscribers. A subscriber terminal, coupled to the communication network, includes a secret node key. A succession of frame verifier (FV) codes, derived through the use of the secret node key, is generated and transmitted on the network. A network access controller (NAC), coupled to the network, includes a record of the secret node key and uses the key to encrypt a seed which is transmitted to the subscriber terminal for use in generating the FV codes. The NAC also independently computes the succession of FV codes which should be generated by the subscriber terminal. A distributed access controller (DAC), coupled to the communication network, includes a look-up table for storing the succession of FV codes computed by the NAC. The FV codes transmitted by the subscriber terminal are detected and compared to those stored in the look-up table. If proper correspondence between the detected and stored FV codes is not found to exist, the communication network is jammed.

    摘要翻译: 设备限制对具有至少一个服务节点的通信网络的访问,以向订户提供服务。 耦合到通信网络的订户终端包括秘密节点密钥。 通过使用秘密节点密钥导出的连续的帧验证器(FV)代码被生成并在网络上传输。 耦合到网络的网络接入控制器(NAC)包括秘密节点密钥的记录,并且使用该密钥对发送给用户终端的用于生成FV代码的种子进行加密。 NAC还独立地计算应由用户终端产生的FV代码的继承。 耦合到通信网络的分布式访问控制器(DAC)包括用于存储由NAC计算的一系列FV代码的查找表。 检测由用户终端发送的FV代码并将其与存储在查找表中的FV代码进行比较。 如果没有发现检测到和存储的FV代码之间的对应关系存在,则通信网络被卡住。