-
公开(公告)号:US09264895B2
公开(公告)日:2016-02-16
申请号:US13964236
申请日:2013-08-12
Applicant: Cisco Technology, Inc.
Inventor: Mark Krischer , Nancy Cam-Winget , Sheausong Yang , Ajit Sanzgiri , Timothy Olson , Pauline Shuen
CPC classification number: H04W12/04 , H04L41/00 , H04L63/062 , H04L63/08 , H04L63/083 , H04L63/123 , H04L63/126 , H04L63/1408 , H04W12/10 , H04W12/12 , H04W84/12 , H04W88/08
Abstract: A detection-based defense to a wireless network. Elements of the infrastructure, e.g., access points or scanning-only access points, detect intruders by detecting spoofed frames, such as from rogue access points. Access points include a signature, such as a message integrity check, with their management frames in a manner that enables neighboring access points to be able to validate the management frames, and to detect spoofed frames. When a neighboring access point receives a management frame, obtains a key for the access point sending the frame, and validates the management frame using the key.
-
公开(公告)号:US20140109190A1
公开(公告)日:2014-04-17
申请号:US13913621
申请日:2013-06-10
Applicant: Cisco Technology, Inc.
Inventor: Nancy Cam-Winget , Allan Thomson , Pok Wong , Vanaja Ravi
IPC: G06F21/30
CPC classification number: H04L63/20 , G06F9/542 , G06F21/30 , G06F21/6218 , H04L63/08 , H04L63/105 , H04L63/107
Abstract: Presented herein are techniques for adding a secure control layer to a distributed communication fabric that supports publish-subscribe (pub-sub) and direct query (synchronization) communication. The secure control layer is configured to perform policy-based authentication techniques to securely manage the exchange of data/information within the communication fabric and enable registration/discovery of new capabilities.
Abstract translation: 这里提出的技术是将安全控制层添加到支持发布订阅(pub-sub)和直接查询(同步)通信的分布式通信结构中。 安全控制层被配置为执行基于策略的认证技术以安全地管理通信结构内的数据/信息的交换并且启用新功能的注册/发现。
-