AUTHENTICATION METHOD, SERVER, TERMINAL, AND GATEWAY

    公开(公告)号:US20190173670A1

    公开(公告)日:2019-06-06

    申请号:US16256129

    申请日:2019-01-24

    发明人: Yang XIAO Yan LIU

    摘要: The method provided in the embodiments of this application includes: obtaining, by a server, a first key (Ksm) shared with a gateway; receiving, by the server, an encrypted first random factor (Rand-M-Encry), a first data digest (Data-Hash), and encrypted first data (Data-Encry) that are sent by a terminal; decrypting, by the server, the Rand-M-Encry by using the Ksm, to obtain a second random factor (Rand-M′); performing, by the server, an operation on the Rand-M′ and Kpsa-xi by using a second preset algorithm, to generate a third key (K′sx); decrypting, by the server, the Data-Encry by using the K′sx, to obtain second data (Data′); performing, by the server, an operation on the K′sx and the Data′ based on a first preset algorithm to obtain a second data digest (Data-Hash′); and if the Data-Hash′ is the same as the Data-Hash, determining, by the server, that authentication of the terminal succeeds.

    METHOD AND APPARATUS FOR KEEPING NETWORK ADDRESS TRANSLATION MAPPING ALIVE

    公开(公告)号:US20190028429A1

    公开(公告)日:2019-01-24

    申请号:US16142978

    申请日:2018-09-26

    发明人: Yan LIU Yang XIAO

    IPC分类号: H04L29/12 H04L12/26

    摘要: A method and an apparatus for keeping network address translation mapping alive are provided. The method includes: receiving, by a network address translation NAT device, a probe request sent by an internal network device; sending a probe response to the internal network device, where the probe response carries indication information, and the indication information indicates that the internal network device does not actively initiate a heartbeat message to keep network address translation mapping alive; allocating at least two public network addresses to the internal network device from an address resource pool, and using in each time period of a subsequent session process between the internal network device and an external network device, one of the at least two public network addresses as a current active address in the time period, to map the private network address of the internal network device to the current active address.