-
公开(公告)号:US07926090B2
公开(公告)日:2011-04-12
申请号:US11777704
申请日:2007-07-13
CPC分类号: H04L41/0856 , H04L45/00 , H04L45/56 , H04L63/0272 , H04L63/104
摘要: Systems and methods for creating and operating separate secure networks over a non-secure network are described herein. Some illustrative embodiments include a system that includes a router with one or more ports and control logic coupled to the one or more ports (the control logic capable of establishing a plurality of secure data paths with at least one other router across a network), and a plurality of external storage devices (each storage device separate from the router but capable of being detachably coupled to a port of the one or more ports, and each external storage device comprising configuration data defining one or more secure data paths of the plurality of secure data paths). Configuration data stored in a first external storage device of the plurality of external storage devices is different from configuration data stored in a second external storage device of the plurality of external storage devices.
摘要翻译: 本文描述了用于通过非安全网络创建和操作单独的安全网络的系统和方法。 一些说明性实施例包括系统,其包括具有一个或多个端口的路由器和耦合到该一个或多个端口的控制逻辑(能够跨网络与至少一个其他路由器建立多个安全数据路径的控制逻辑),以及 多个外部存储设备(每个存储设备与路由器分开但能够可拆卸地耦合到一个或多个端口的端口,并且每个外部存储设备包括定义多个安全的一个或多个安全数据路径的配置数据) 数据路径)。 存储在多个外部存储装置的第一外部存储装置中的配置数据与存储在多个外部存储装置的第二外部存储装置中的配置数据不同。
-
公开(公告)号:US20100228961A1
公开(公告)日:2010-09-09
申请号:US12396608
申请日:2009-03-03
IPC分类号: H04L9/00 , H04L12/56 , G06F15/177
CPC分类号: H04L63/0272 , H04L45/04 , H04L45/60
摘要: Systems and methods for creating hierarchical network communications between trusted domains are described herein. An illustrative system includes a first, second, and third network. The first and second networks each include a plurality of routers, each router capable of establishing a secure data path with another router in the respective network. The third network includes a first router and a second router, each router capable of establishing a secure data path with the other router. The definition of each secure data path is provided by an external storage device that detachably couples to a router. The storage devices defining the secure data paths are unique to each router. The first and second networks communicate through the third network.
摘要翻译: 本文描述了用于在可信域之间创建分级网络通信的系统和方法。 说明性系统包括第一,第二和第三网络。 第一和第二网络各自包括多个路由器,每个路由器能够与相应网络中的另一路由器建立安全数据路径。 第三网络包括第一路由器和第二路由器,每个路由器能够与另一路由器建立安全数据路径。 每个安全数据路径的定义由可拆卸地耦合到路由器的外部存储设备提供。 定义安全数据路径的存储设备对于每个路由器是唯一的。 第一和第二网络通过第三网络进行通信。
-
公开(公告)号:US20090016357A1
公开(公告)日:2009-01-15
申请号:US11777704
申请日:2007-07-13
IPC分类号: H04L12/28
CPC分类号: H04L41/0856 , H04L45/00 , H04L45/56 , H04L63/0272 , H04L63/104
摘要: Systems and methods for creating and operating separate secure networks over a non-secure network are described herein. Some illustrative embodiments include a system that includes a router with one or more ports and control logic coupled to the one or more ports (the control logic capable of establishing a plurality of secure data paths with at least one other router across a network), and a plurality of external storage devices (each storage device separate from the router but capable of being detachably coupled to a port of the one or more ports, and each external storage device comprising configuration data defining one or more secure data paths of the plurality of secure data paths). Configuration data stored in a first external storage device of the plurality of external storage devices is different from configuration data stored in a second external storage device of the plurality of external storage devices.
摘要翻译: 本文描述了用于通过非安全网络创建和操作单独的安全网络的系统和方法。 一些说明性实施例包括系统,其包括具有一个或多个端口的路由器和耦合到该一个或多个端口的控制逻辑(能够跨网络与至少一个其他路由器建立多个安全数据路径的控制逻辑),以及 多个外部存储设备(每个存储设备与路由器分开但能够可拆卸地耦合到一个或多个端口的端口,并且每个外部存储设备包括定义多个安全的一个或多个安全数据路径的配置数据) 数据路径)。 存储在多个外部存储装置的第一外部存储装置中的配置数据与存储在多个外部存储装置的第二外部存储装置中的配置数据不同。
-
公开(公告)号:US07818790B1
公开(公告)日:2010-10-19
申请号:US11533652
申请日:2006-09-20
申请人: John Arley Burns , Edward J. Blevins , John Adrian Burns , Charles C. Hardin , Samuel D. Hartman , Dale S. Walker , Ricky C. White
发明人: John Arley Burns , Edward J. Blevins , John Adrian Burns , Charles C. Hardin , Samuel D. Hartman , Dale S. Walker , Ricky C. White
CPC分类号: H04L63/08 , H04L2463/082
摘要: A network of routers is monitored by a monitoring server. Each router implements various security mechanisms to secure the operation of the routers. For example, each router comprises control logic that implements a security protocol dictated, at least in part, by contents of at least two separate external storage devices, each storage device separate from, but coupled to, one of the ports of said router.
摘要翻译: 路由器网络由监控服务器监控。 每个路由器实现各种安全机制来保护路由器的操作。 例如,每个路由器包括控制逻辑,其实现至少部分地由至少两个单独的外部存储设备的内容指定的安全协议,每个存储设备与所述路由器的一个端口分离,但是耦合到所述路由器的一个端口。
-
公开(公告)号:US20100226280A1
公开(公告)日:2010-09-09
申请号:US12396616
申请日:2009-03-03
CPC分类号: H04L12/4633 , H04L63/0209 , H04L63/08
摘要: Systems and methods for securing a data communication network are described herein. An illustrative system includes a first router and an external storage device. The external storage device contains data that configures the first router. The external storage device is remotely coupled to the first router to configure the first router. The data that configures the first router includes the definition of a secure data path between the first router and a second router.
摘要翻译: 本文描述了用于保护数据通信网络的系统和方法。 说明性系统包括第一路由器和外部存储设备。 外部存储设备包含配置第一个路由器的数据。 外部存储设备远程耦合到第一路由器以配置第一路由器。 配置第一个路由器的数据包括第一个路由器和第二个路由器之间的安全数据路径的定义。
-
-
-
-