Method for secure packet identification
    1.
    发明申请
    Method for secure packet identification 有权
    安全数据包识别方法

    公开(公告)号:US20070214496A1

    公开(公告)日:2007-09-13

    申请号:US11370767

    申请日:2006-03-08

    IPC分类号: H04L9/32

    CPC分类号: H04L63/0428 H04L63/0838

    摘要: Methods and apparatus to limit access to a secure personal network are provided. The method includes receiving an Internet protocol (IP) packet of a device including a confirmation value associated with the SPN. The method compares the confirmation value to a predetermined confirmation value and allows access to the SPN when the confirmation value matches the predetermined confirmation value. The IP packet is dropped otherwise. The confirmation value and the predetermined confirmation value are generated by an algorithm including a pseudorandom number generator, a hash function and a one-time password.

    摘要翻译: 提供了限制访问安全个人网络的方法和装置。 该方法包括接收包括与SPN相关联的确认值的设备的因特网协议(IP)分组。 该方法将确认值与预定确认值进行比较,并且当确认值与预定确认值匹配时允许访问SPN。 IP包丢弃。 通过包括伪随机数生成器,散列函数和一次密码的算法生成确认值和预定确认值。

    Network layer end-point transfer
    2.
    发明申请
    Network layer end-point transfer 审中-公开
    网络层端点传输

    公开(公告)号:US20070168520A1

    公开(公告)日:2007-07-19

    申请号:US11332661

    申请日:2006-01-13

    IPC分类号: G06F15/16

    摘要: Methods and apparatus for handing off an end-point associated with a first device to a second device within a locally accessible network operating in an Internet protocol (IP) environment that supports multiple addresses for each device are provided. The first device is in a currently established session with a third device within the IP environment. End-point information associated with the end-point of the first device is locally transferred to the second device. A further end-point, compatible with the currently established session, is configured by the second device using the transferred end-point information. The second device broadcasts an announcement to the locally accessible network, including the router, that the second device is associated with the further end-point.

    摘要翻译: 提供了在支持每个设备的多个地址的因特网协议(IP)环境中操作的本地可访问网络内将与第一设备相关联的终点切换到第二设备的方法和装置。 第一个设备在IP环境中处于与第三台设备的当前建立的会话中。 与第一设备的端点相关联的端点信息被本地传送到第二设备。 与当前建立的会话兼容的另一端点由第二设备使用传送的终点信息配置。 第二设备向包括路由器的本地可访问网络广播第二设备与另一端点相关联的通知。

    Robust peer-to-peer networks and methods of use thereof
    3.
    发明授权
    Robust peer-to-peer networks and methods of use thereof 有权
    强大的点对点网络及其使用方法

    公开(公告)号:US08041942B2

    公开(公告)日:2011-10-18

    申请号:US11515842

    申请日:2006-09-05

    IPC分类号: H04L29/06

    摘要: A method of authentication of peers of a peer-to-peer network includes a certificate issuer tracking at most a predetermined number of node IDs for each peer on the peer-to-peer network, a requesting peer requesting from the certificate issuer a certificate for authenticating a communicating peer and each certificate issued listing at least one node ID of the predetermined number of node IDs assigned for the communicating peer.

    摘要翻译: 对等网络的对等体的认证方法包括对对等网络上的每个对等体至多跟踪预定数量的节点ID的证书颁发者,请求对等体从证书颁发者请求证书, 验证通信对等体,并且发出每个证书列出为通信对等体分配的预定数量的节点ID的至少一个节点ID。

    Method of distributed hash table node ID collision detection
    5.
    发明申请
    Method of distributed hash table node ID collision detection 审中-公开
    分布式哈希表节点ID冲突检测方法

    公开(公告)号:US20070233832A1

    公开(公告)日:2007-10-04

    申请号:US11393463

    申请日:2006-03-30

    IPC分类号: G06F15/173

    摘要: A method for joining a network resource as a joining node to a peer-to-peer network includes establishing a node ID for the joining node to be joined to the peer-to-peer network, routing the join message to an assignment node that manages resources with resource IDs closest to the node ID of the joining node, determining whether or not the node ID established is identical to respective ones of the node IDs on the peer-to-peer network, and joining the joining node to the peer-to-peer network, when the node ID of the joining node is not identical to any one of the node IDs on the peer-to-peer network.

    摘要翻译: 将作为加入节点的网络资源加入到对等网络的方法包括建立要加入到对等网络的加入节点的节点ID,将加入消息路由到管理的分配节点 具有最接近加入节点的节点ID的资源ID的资源,确定所建立的节点ID是否与对等网络上的各个节点ID相同,并且将加入节点加入到对等 同层网络,当加入节点的节点ID与对等网络上的任何一个节点ID不同时。

    Method for reducing hand-off latency in mobile networks
    6.
    发明申请
    Method for reducing hand-off latency in mobile networks 审中-公开
    降低移动网络切换延迟的方法

    公开(公告)号:US20070115883A1

    公开(公告)日:2007-05-24

    申请号:US10564112

    申请日:2004-07-14

    IPC分类号: H04Q7/00

    摘要: A method for use in a mobile device to expedite hand-off of mobile devices between access points first detects movement of the mobile device among the coverage ranges of the access points. A mobile device that moves from one access point to another periodically transmits information on the data link level connection of its new access point on the channel used to access its prior access point. A first mobile device that is coupled to access points in a particular area maintains network level access information for access points with which it has communicated. When a new mobile device enters the area, the first device detects the new device and transmits the list to the new mobile device, enabling the new device to connect to an access point without transmitting a router solicitation message or receiving a router advertisement message.

    摘要翻译: 移动设备中用于加速移动设备在接入点之间切换的方法首先检测移动设备在接入点的覆盖范围内的移动。 从一个接入点移动到另一个接入点的移动设备周期性地在用于访问其先前接入点的信道上发送关于其新接入点的数据链路级连接的信息。 耦合到特定区域中的接入点的第一移动设备保持与其通信的接入点的网络级访问信息。 当新的移动设备进入该区域时,第一设备检测新设备并将该列表发送到新的移动设备,使得新设备能够连接到接入点而不发送路由器请求消息或接收到路由器通告消息。

    Authentication of a peer in a peer-to-peer network
    7.
    发明授权
    Authentication of a peer in a peer-to-peer network 有权
    对等网络中的对等体的认证

    公开(公告)号:US08572387B2

    公开(公告)日:2013-10-29

    申请号:US11493453

    申请日:2006-07-26

    IPC分类号: H04L29/06

    摘要: A method of authentication of a verifying device by a confirming device includes the confirming device receiving and storing a shared secret derived from at least a password of a user and sending a challenge. The method further includes the confirming device receiving a response to the challenge using the shared secret; determining if the response to the challenge is correct and if the response to the challenge is correct, authenticating the verifying device.

    摘要翻译: 由确认装置对验证装置进行认证的方法包括:确认装置,接收并存储从用户的至少一个口令导出的共享秘密,并发送询问。 该方法还包括:确认装置使用共享秘密接收对挑战的响应; 确定对挑战的响应是否正确以及如果对挑战的响应是正确的,则验证该验证装置。

    Authentication of a peer in a peer-to-peer network
    8.
    发明申请
    Authentication of a peer in a peer-to-peer network 有权
    对等网络中的对等体的认证

    公开(公告)号:US20080046740A1

    公开(公告)日:2008-02-21

    申请号:US11493453

    申请日:2006-07-26

    IPC分类号: H04L9/00

    摘要: A method of authentication of a verifying device by a confirming device includes the confirming device receiving and storing a shared secret derived from at least a password of a user and sending a challenge. The method further includes the confirming device receiving a response to the challenge using the shared secret; determining if the response to the challenge is correct and if the response to the challenge is correct, authenticating the verifying device.

    摘要翻译: 由确认装置对验证装置进行认证的方法包括:确认装置,接收并存储从用户的至少一个口令导出的共享秘密,并发送询问。 该方法还包括:确认装置使用共享秘密接收对挑战的响应; 确定对挑战的响应是否正确以及如果对挑战的响应是正确的,则验证该验证装置。

    Computer network security system employing portable storage device
    9.
    发明授权
    Computer network security system employing portable storage device 有权
    计算机网络安全系统采用便携式存储设备

    公开(公告)号:US07228438B2

    公开(公告)日:2007-06-05

    申请号:US10001687

    申请日:2001-10-23

    IPC分类号: H04L9/32 H04L9/00 G06F15/16

    摘要: The trusted computer network is protected behind a gateway that includes a bastion host and screening router which blocks all URLs associated with the trusted network. The bastion host includes a remote client authentication mechanism and web proxy component that verifies and translates incoming URL requests from authenticated remote clients. Authentication is performed using one-time passwords that are stored on a portable storage device. The user configures the portable storage device by operating configuration software from the protected side of the gateway. The portable storage device also stores plug-in software to enable the client computer to properly retrieve the one-time password and exchange authentication messages with the bastion host. Further security is obtained by basing the one-time password on an encrypted version of the user's PIN. A symmetric key used to encrypt the PIN is stored in a protected area within the portable storage device.

    摘要翻译: 受信任的计算机网络被保护在包括堡垒主机和筛选路由器的网关之后,该路由器阻止与可信网络相关联的所有URL。 堡垒主机包括远程客户端认证机制和Web代理组件,用于验证和翻译来自已验证远程客户端的传入URL请求。 使用存储在便携式存储设备上的一次性密码来执行认证。 用户通过从网关的受保护侧操作配置软件来配置便携式存储设备。 便携式存储设备还存储插件软件,以使得客户端计算机能够正确地检索一次性密码并与堡垒主机交换认证消息。 通过将一次性密码基于用户PIN的加密版本来获得进一步的安全性。 用于加密PIN的对称密钥存储在便携式存储设备内的保护区域中。