NETWORK AND METHOD FOR INITIALIZING A TRUST CENTER LINK KEY
    1.
    发明申请
    NETWORK AND METHOD FOR INITIALIZING A TRUST CENTER LINK KEY 审中-公开
    用于初始化信任中心链路的网络和方法

    公开(公告)号:US20100183152A1

    公开(公告)日:2010-07-22

    申请号:US12666835

    申请日:2008-06-26

    IPC分类号: H04W12/04 H04L9/08

    摘要: The invention relates in general to a network and to a method for initializing a trust center link key. According to an embodiment of the invention, a network is provided with a new node (106) comprising node specific cryptographic keying material, wherein the new node is configured to specify an cryptographic key based on the node specific cryptographic keying material, a first node (102) requiring the cryptographic key for a network security initialization and means (108) for providing a missing cryptographic key to the first node from a storage different to the new node, wherein the missing cryptographic key is equal to the cryptographic key.

    摘要翻译: 本发明一般涉及网络和用于初始化信任中心链路密钥的方法。 根据本发明的实施例,网络具有包括节点特定密码密钥材料的新节点(106),其中新节点被配置为基于节点特定密码密钥材料来指定密码密钥,第一节点 102),其要求用于网络安全初始化的加密密钥,以及用于从与新节点不同的存储器向第一节点提供丢失密码密钥的装置(108),其中缺少的密码密钥等于密码密钥。

    Personal security manager for ubiquitous patient monitoring
    2.
    发明授权
    Personal security manager for ubiquitous patient monitoring 有权
    个人安全经理无处不在的病人监护

    公开(公告)号:US09094383B2

    公开(公告)日:2015-07-28

    申请号:US12995677

    申请日:2009-06-10

    摘要: The present invention relates to a system and corresponding method for a secure end-to-end patient healthcare system which includes wireless medical sensors adapted to be attached to a patient's body and in communication with each other forming a body sensor network within a wireless medical sensor network including one or more body sensor networks; λ-secure keying means incorporated into each wireless medical sensor for enabling secure communications between the wireless medical sensors, and a personal security manager within the body sensor network and in communication with the wireless medical sensors within the body sensor network, the personal security manager providing secure communications with backend services and providing security relationships within the body sensor network by means of the λ-secure keying means, wherein the λ-secure keying means are such that a coalition of no more than λ compromised wireless medical sensors conceals a pairwise key between any two non-compromised wireless medical sensors and provides protection against node compromise until λ+1 wireless medical sensors have been compromised.

    摘要翻译: 本发明涉及一种用于安全的端到端患者保健系统的系统和相应的方法,其包括适于附接到患者身体并彼此通信的无线医疗传感器,其形成无线医疗传感器内的身体传感器网络 网络包括一个或多个身体传感器网络; 结合到每个无线医疗传感器中的λ-安全键控装置,用于实现无线医疗传感器之间的安全通信,以及身体传感器网络内的个人安全管理器,并且与身体传感器网络内的无线医疗传感器通信,个人安全管理器提供 与后端服务的安全通信,并通过λ-安全键控装置在身体传感器网络内提供安全关系,其中λ-安全键控装置使得不超过λ个受损的无线医疗传感器的联盟在两个 任何两个不妥协的无线医疗传感器,并提供对节点损害的保护,直到λ+ 1无线医疗传感器已经受到损害。

    METHOD FOR OPERATING A NODE IN A WIRELESS SENSOR NETWORK
    3.
    发明申请
    METHOD FOR OPERATING A NODE IN A WIRELESS SENSOR NETWORK 审中-公开
    在无线传感器网络中操作节点的方法

    公开(公告)号:US20120195431A1

    公开(公告)日:2012-08-02

    申请号:US13499930

    申请日:2010-10-07

    IPC分类号: H04K1/00

    摘要: The present invention relates to a method for operating a first node in a network, the network including a plurality of nodes, the method comprising (a) the first node having a first identifier joining the network by transmitting the first identifier to a second node having a second identifier, (b) the first node generating a first key on the basis of the second identifier (c) the first node authenticating the second node by means of the first key, (d) the first node communicating with a third node if the first and second keys are equal.

    摘要翻译: 本发明涉及一种用于操作网络中的第一节点的方法,所述网络包括多个节点,所述方法包括(a)所述第一节点具有通过将所述第一标识符发送到具有 第二标识符,(b)第一节点基于第二标识符(c)生成第一密钥,第一节点通过第一密钥认证第二节点,(d)第一节点与第三节点通信,如果 第一和第二键是相等的。

    NODE FOR A NETWORK AND METHOD FOR ESTABLISHING A DISTRIBUTED SECURITY ARCHITECTURE FOR A NETWORK
    6.
    发明申请
    NODE FOR A NETWORK AND METHOD FOR ESTABLISHING A DISTRIBUTED SECURITY ARCHITECTURE FOR A NETWORK 审中-公开
    网络节点和建立网络分布式安全架构的方法

    公开(公告)号:US20110113475A1

    公开(公告)日:2011-05-12

    申请号:US12674950

    申请日:2008-09-04

    IPC分类号: G06F17/30

    摘要: The invention relates to a node (100) for a network such as a wireless control network or the like. In this network, each node (100) comprises a identifier (104) and keying material (102), means for authenticating (112) the node's identifier based on the node's keying material and means for checking (114) the access control rights of the node in a distributed manner based on the node's multidimensional identity and access rights corresponding to the node's identity. Additionally, the invention allows the node to generate a common key with any other node in the first keying first network that can be used to enable further material identifier secure communications.

    摘要翻译: 本发明涉及一种诸如无线控制网络等网络的节点(100)。 在该网络中,每个节点(100)包括标识符(104)和密钥材料(102),用于基于节点的密钥材料认证(112)节点的标识符的装置和用于检查(114)所述节点的标识符的访问控制权限的装置 节点以分布式方式基于节点的多维身份和与节点身份相对应的访问权限。 此外,本发明允许节点与第一密钥第一网络中的任何其他节点一起生成公共密钥,其可以用于实现进一步的材料标识符安全通信。

    Method for distributed identification of a station in a network
    7.
    发明授权
    Method for distributed identification of a station in a network 有权
    网络中站点的分布式识别方法

    公开(公告)号:US09553726B2

    公开(公告)日:2017-01-24

    申请号:US12936534

    申请日:2009-04-10

    IPC分类号: H04L9/32 H04L9/08 H04L29/06

    摘要: The present invention relates to a method for identifying and/or, authenticating, and/or authorizing a first radio station in a radio network, comprising the steps of (a) at the first radio station, transmitting to a second radio station a first radio station identifier computed from a set of identity parameters based on the identity of the first radio station, comprising at least one identity parameter, (b) at the first radio station, transmitting at least one identity parameter from the set of identity parameters, (c) at the second radio station, comparing an authentication identifier computed on the basis of the transmitted identity parameter to the first radio station identifier for enabling a subsequent communication between the first and second radio stations.

    摘要翻译: 本发明涉及一种用于在无线电网络中识别和/或认证和/或授权第一无线电台的方法,包括以下步骤:(a)在第一无线电台,向第二无线电台发送第一无线电 (c)基于第一无线电站的身份从一组身份参数计算的站标识符,包括至少一个身份参数,(b)在第一无线电台从所述一组身份参数中传送至少一个身份参数,(c ),将根据所发送的身份参数计算出的认证标识与第一无线电台标识符进行比较,以便能够进行第一和第二无线电台之间的后续通信。

    PERSONAL SECURITY MANAGER FOR UBIQUITOUS PATIENT MONITORING
    8.
    发明申请
    PERSONAL SECURITY MANAGER FOR UBIQUITOUS PATIENT MONITORING 有权
    个人安全管理人员,负责监护病人

    公开(公告)号:US20110145894A1

    公开(公告)日:2011-06-16

    申请号:US12995677

    申请日:2009-06-10

    IPC分类号: G06F21/00 H04L29/06

    摘要: The present invention relates to a system and corresponding method for a secure end-to-end patient healthcare system which includes wireless medical sensors adapted to be attached to a patient's body and in communication with each other forming a body sensor network within a wireless medical sensor network including one or more body sensor networks; λ-secure keying means incorporated into each wireless medical sensor for enabling secure communications between the wireless medical sensors, and a personal security manager within the body sensor network and in communication with the wireless medical sensors within the body sensor network, the personal security manager providing secure communications with backend services and providing security relationships within the body sensor network by means of the λ-secure keying means, wherein the λ-secure keying means are such that a coalition of no more than λ compromised wireless medical sensors conceals a pairwise key between any two non-compromised wireless medical sensors and provides protection against node compromise until λ+1 wireless medical sensors have been compromised.

    摘要翻译: 本发明涉及一种用于安全的端到端患者保健系统的系统和相应的方法,其包括适于附接到患者身体并彼此通信的无线医疗传感器,其形成无线医疗传感器内的身体传感器网络 网络包括一个或多个身体传感器网络; 结合到每个无线医疗传感器中的λ-安全键控装置,用于实现无线医疗传感器之间的安全通信,以及身体传感器网络内的个人安全管理器,并且与身体传感器网络内的无线医疗传感器通信,个人安全管理器提供 与后端服务的安全通信,并通过λ-安全键控装置在身体传感器网络内提供安全关系,其中λ-安全键控装置使得不超过λ个受损的无线医疗传感器的联盟在两个 任何两个不妥协的无线医疗传感器,并提供对节点损害的保护,直到λ+ 1无线医疗传感器已经受到损害。

    NETWORK AND METHOD FOR ESTABLISHING A SECURE NETWORK
    9.
    发明申请
    NETWORK AND METHOD FOR ESTABLISHING A SECURE NETWORK 审中-公开
    建立安全网络的网络和方法

    公开(公告)号:US20110119489A1

    公开(公告)日:2011-05-19

    申请号:US12674953

    申请日:2008-09-04

    IPC分类号: H04L9/32

    摘要: The invention relates to a network with a first node (102) comprising first pre-distributed keying material being assigned to the first node before the first node is connected to the network and a second node (104) comprising second pre-distributed keying material being assigned to the second node before the second node is connected to the network. The first node is configured to establish a secure communication (112) to the second node based on the first and second pre-distributed keying materials, without relying on a trust center (108). Pre-distributed keying materials can be replaced in a secure manner with post-deployed keying materials by the network trust center. Nodes can establish further secure communications based on post-deployed keying materials.

    摘要翻译: 本发明涉及具有第一节点(102)的网络,第一节点(102)包括在第一节点连接到网络之前被分配给第一节点的第一预分布密钥材料,以及包括第二预分布密钥材料的第二节点(104) 在第二节点连接到网络之前分配给第二节点。 第一节点被配置为基于第一和第二预分布密钥材料建立到第二节点的安全通信(112),而不依赖于信任中心(108)。 预分配的密钥材料可以通过网络信任中心的后处理密钥材料安全地替换。 节点可以基于后期部署的密钥材料建立进一步的安全通信。

    METHOD FOR DISTRIBUTED IDENTIFICATION, A STATION IN A NETWORK
    10.
    发明申请
    METHOD FOR DISTRIBUTED IDENTIFICATION, A STATION IN A NETWORK 有权
    分布式识别方法,网络中的一个站点

    公开(公告)号:US20110029778A1

    公开(公告)日:2011-02-03

    申请号:US12936534

    申请日:2009-04-10

    IPC分类号: H04W12/04 H04B7/00 H04W12/06

    摘要: The present invention relates to a method for identifying and/or, authenticating, and/or authorizing a first radio station in a radio network, comprising the steps of (a) at the first radio station, transmitting to a second radio station a first radio station identifier computed from a set of identity parameters based on the identity of the first radio station, comprising at least one identity parameter, (b) at the first radio station, transmitting at least one identity parameter from the set of identity parameters, (c) at the second radio station, comparing an authentication identifier computed on the basis of the transmitted identity parameter to the first radio station identifier for enabling a subsequent communication between the first and second radio stations.

    摘要翻译: 本发明涉及一种用于在无线电网络中识别和/或认证和/或授权第一无线电台的方法,包括以下步骤:(a)在第一无线电台,向第二无线电台发送第一无线电 (c)基于第一无线电站的身份从一组身份参数计算的站标识符,包括至少一个身份参数,(b)在第一无线电台从所述一组身份参数中传送至少一个身份参数,(c ),将根据所发送的身份参数计算出的认证标识与第一无线电台标识符进行比较,以便能够进行第一和第二无线电台之间的后续通信。