Method and apparatus for network security based on device security status
    1.
    发明申请
    Method and apparatus for network security based on device security status 有权
    基于设备安全状态的网络安全的方法和装置

    公开(公告)号:US20050246767A1

    公开(公告)日:2005-11-03

    申请号:US10832107

    申请日:2004-04-26

    摘要: A method and apparatus are provided for network security based on a security status of a device. A security update status of a device is evaluated; and one or more of a plurality of security policies are selected to apply to the device based on the security update status. The available security philosophies may include, for example, a “protect the good” philosophy, an “encourage the busy” philosophy and a “shut off the non-compliant” philosophy. The security update status can evaluate, for example, a version level of one or more security features installed on the device or can be based on a flag indicating whether the device satisfies predefined criteria for maintaining one or more computer security protection features up-to-date.

    摘要翻译: 基于设备的安全状态为网络安全提供方法和装置。 评估设备的安全更新状态; 并且基于安全更新状态来选择多个安全策略中的一个或多个以应用于设备。 可用的安全哲学可能包括例如“保护好”哲学,“鼓励繁忙”哲学和“关闭不合规”的理念。 安全更新状态可以评估例如设备上安装的一个或多个安全特征的版本级别,或者可以基于指示设备是否满足用于维护一个或多个计算机安全保护特征的预定标准的标志, 日期。

    Method and apparatus for generating a signal strength model for an access point at an arbitrary location
    2.
    发明申请
    Method and apparatus for generating a signal strength model for an access point at an arbitrary location 有权
    用于在任意位置生成用于接入点的信号强度模型的方法和装置

    公开(公告)号:US20050245252A1

    公开(公告)日:2005-11-03

    申请号:US10834291

    申请日:2004-04-28

    CPC分类号: H04W16/18 H04W16/20 H04W24/02

    摘要: A method and apparatus are provided for obtaining a signal strength model for an access point at an arbitrary location, q, at a site. Signal strength measurements are obtained for each of n sampling points; the signal strength received at the arbitrary location, q, is computed from each of said sampling points (for example, using reciprocity principles); signal strength estimates corresponding to the signal received at the sampling points from the arbitrary location are computed; and a signal strength model is determined for an access point positioned at the arbitrary location, q.

    摘要翻译: 提供了一种方法和装置,用于在现场的任意位置q获得接入点的信号强度模型。 对于n个采样点中的每一个获得信号强度测量; 从每个所述采样点(例如使用互惠原理)计算在任意位置处接收的信号强度q。 计算与从任意位置的采样点接收的信号相对应的信号强度估计值; 并且为位于任意位置的接入点q确定信号强度模型。

    Methods and systems for providing priority access to 802.11 endpoints using DCF protocol
    3.
    发明申请
    Methods and systems for providing priority access to 802.11 endpoints using DCF protocol 有权
    使用DCF协议提供对802.11终端的优先访问的方法和系统

    公开(公告)号:US20060187952A1

    公开(公告)日:2006-08-24

    申请号:US11062262

    申请日:2005-02-18

    IPC分类号: H04Q7/24 H04L12/413

    摘要: A method for providing priority access to 802.11 endpoints. The method includes the steps of sending a Clear To Send (CTS) frame from a designated station, without requiring a Request to Send (RTS) frame from a first station. The CTS frame includes a field identifying the first station for commencing transmission, and a field indicating a duration of transmission. A deferring step is also performed for deferring any transmissions of stations other than the first station until after the duration indicated in the CTS frame has passed.

    摘要翻译: 提供对802.11终端的优先访问的方法。 该方法包括从指定站发送清除发送(CTS)帧的步骤,而不需要来自第一站的请求发送(RTS)帧。 CTS帧包括识别用于开始传输的第一站的字段和指示传输持续时间的字段。 还执行推迟步骤以推迟除第一站之外的站的任何传输,直到在CTS帧中指示的持续时间已经过去之后。

    Detection of hidden wireless routers
    4.
    发明申请
    Detection of hidden wireless routers 有权
    隐藏无线路由器的检测

    公开(公告)号:US20050060434A1

    公开(公告)日:2005-03-17

    申请号:US10757676

    申请日:2004-01-14

    IPC分类号: H04L12/24 H04L29/06 G06F15/16

    摘要: A technique is disclosed for detecting hidden wireless routers that constitute security threats in telecommunications networks that comprise a wireless network portion and a wireline network portion. In accordance with the illustrative embodiment of the invention, a test station is used in the wireless portion of a network to detect the presence of a hidden wireless router. Furthermore, in some embodiments, a test server is used in the wireline portion of the network in order to detect packets that are illegitimately routed from the wireless portion to the wireline portion of the network through the hidden wireless router.

    摘要翻译: 公开了一种用于检测在构成无线网络部分和有线网络部分的电信网络中构成安全威胁的隐藏无线路由器的技术。 根据本发明的说明性实施例,在网络的无线部分中使用测试台来检测隐藏的无线路由器的存在。 此外,在一些实施例中,在网络的有线部分中使用测试服务器,以便通过隐藏的无线路由器检测非法从无线部分路由到网络的有线部分的分组。

    Method and apparatus for content based authentication for network access
    5.
    发明申请
    Method and apparatus for content based authentication for network access 有权
    用于网络访问的基于内容的身份验证的方法和装置

    公开(公告)号:US20050111466A1

    公开(公告)日:2005-05-26

    申请号:US10721721

    申请日:2003-11-25

    摘要: A method and apparatus are provided for authenticating the contents of a device requesting access to a first network, such as an enterprise network. If a device has connected to at least one other network then the content of the device is evaluated prior to obtaining access. The scope of the content evaluation may be based, for example, on properties of the other network or on one or more defined content authentication rules. If a device attempts to access a network, the content of the device is evaluated and the device may be restricted to accessing only one or more restoration services if the content fails to satisfy one or more predefined criteria, such as a content item that is out of date or a determination that the device connected to one or more external networks. The restoration service(s) can update a content item that is out of date, reinstall one or more programs or return configuration settings to default values.

    摘要翻译: 提供了一种用于认证请求接入诸如企业网络的第一网络的设备的内容的方法和装置。 如果设备已经连接到至少一个其他网络,则在获得访问之前对设备的内容进行评估。 内容评估的范围可以例如基于另一网络的属性或基于一个或多个定义的内容认证规则。 如果设备尝试访问网络,则评估设备的内容,并且如果内容不能满足一个或多个预定义的标准(例如,出口的内容项目),则设备可能被限制为仅访问一个或多个恢复服务 或确定设备连接到一个或多个外部网络。 恢复服务可以更新过期的内容项目,重新安装一个或多个程序或将配置设置返回到默认值。

    Method and apparatus for generating a signal strength model for an access point at an arbitrary location
    6.
    发明授权
    Method and apparatus for generating a signal strength model for an access point at an arbitrary location 有权
    用于在任意位置生成用于接入点的信号强度模型的方法和装置

    公开(公告)号:US07583961B2

    公开(公告)日:2009-09-01

    申请号:US10834291

    申请日:2004-04-28

    IPC分类号: H04Q7/20

    CPC分类号: H04W16/18 H04W16/20 H04W24/02

    摘要: A method and apparatus are provided for obtaining a signal strength model for an access point at an arbitrary location, q, at a site. Signal strength measurements are obtained for each of n sampling points; the signal strength received at the arbitrary location, q, is computed from each of the sampling points (for example, using reciprocity principles); signal strength estimates corresponding to the signal received at the sampling points from the arbitrary location are computed; and a signal strength model is determined for an access point positioned at the arbitrary location, q.

    摘要翻译: 提供了一种方法和装置,用于在现场的任意位置q获得接入点的信号强度模型。 对于n个采样点中的每一个获得信号强度测量; 从任意位置接收的信号强度q从每个采样点计算(例如,使用互易原理); 计算与从任意位置的采样点接收的信号相对应的信号强度估计值; 并且为位于任意位置的接入点q确定信号强度模型。

    Method and Apparatus for Content Based Authentication for Network Access
    7.
    发明申请
    Method and Apparatus for Content Based Authentication for Network Access 审中-公开
    用于网络访问的基于内容的认证的方法和装置

    公开(公告)号:US20090031399A1

    公开(公告)日:2009-01-29

    申请号:US12243390

    申请日:2008-10-01

    IPC分类号: G06F21/00

    摘要: A method and apparatus are provided for authenticating the contents of a device requesting access to a first network, such as an enterprise network. If a device has connected to at least one other network then the content of the device is evaluated prior to obtaining access. The scope of the content evaluation may be based, for example, on properties of the other network or on one or more defined content authentication rules. If a device attempts to access a network, the content of the device is evaluated and the device may be restricted to accessing only one or more restoration services if the content fails to satisfy one or more predefined criteria, such as a content item that is out of date or a determination that the device connected to one or more external networks. The restoration service(s) can update a content item that is out of date, reinstall one or more programs or return configuration settings to default values.

    摘要翻译: 提供了一种用于认证请求接入诸如企业网络的第一网络的设备的内容的方法和装置。 如果设备已经连接到至少一个其他网络,则在获得访问之前对设备的内容进行评估。 内容评估的范围可以例如基于另一网络的属性或基于一个或多个定义的内容认证规则。 如果设备尝试访问网络,则评估设备的内容,并且如果内容不能满足一个或多个预定义的标准(例如,出口的内容项目),则设备可能被限制为仅访问一个或多个恢复服务 或确定设备连接到一个或多个外部网络。 恢复服务可以更新过期的内容项目,重新安装一个或多个程序或将配置设置返回到默认值。

    Granting privileges to a telecommunications terminal based on the relationship of a first signal to a second signal
    8.
    发明授权
    Granting privileges to a telecommunications terminal based on the relationship of a first signal to a second signal 有权
    基于第一信号与第二信号的关系向电信终端授予特权

    公开(公告)号:US07949114B2

    公开(公告)日:2011-05-24

    申请号:US11080866

    申请日:2005-03-15

    IPC分类号: H04M3/00

    摘要: A method and apparatus are disclosed that enable a data-processing system, such as a server, to determine whether or not to grant a telecommunications terminal one or more privileges, without some of the disadvantages of the prior art. Specifically, in accordance with the illustrative embodiments of the present invention, a call-processing server transmits, to a first terminal, a first signal for verifying a second terminal, such as one that has been designated by a user. The user is then required to transmit a second signal to the call-processing server via the second terminal. The call-processing server then examines the received second signal with respect to the first signal and determines whether or not to grant the second terminal a privilege (e.g., handling calls on behalf of the user, etc.), based on the relationship between the first and second signals.

    摘要翻译: 公开了一种使数据处理系统(诸如服务器)能够确定是否授予电信终端一个或多个特权的方法和装置,而不存在现有技术的一些缺点。 具体地,根据本发明的说明性实施例,呼叫处理服务器向第一终端发送用于验证诸如用户指定的第二终端的第二终端的第一信号。 然后,用户需要经由第二终端向呼叫处理服务器发送第二信号。 然后,呼叫处理服务器检查相对于第一信号的接收到的第二信号,并且基于第一信号之间的关系确定是否授予第二终端的特权(例如,代表用户处理呼叫等) 第一和第二信号。

    Detection of hidden wireless routers
    9.
    发明授权
    Detection of hidden wireless routers 有权
    隐藏无线路由器的检测

    公开(公告)号:US07840698B2

    公开(公告)日:2010-11-23

    申请号:US10757676

    申请日:2004-01-14

    IPC分类号: G06F15/173

    摘要: A technique is disclosed for detecting hidden wireless routers that constitute security threats in telecommunications networks that comprise a wireless network portion and a wireline network portion. In accordance with the illustrative embodiment of the invention, a test station is used in the wireless portion of a network to detect the presence of a hidden wireless router. Furthermore, in some embodiments, a test server is used in the wireline portion of the network in order to detect packets that are illegitimately routed from the wireless portion to the wireline portion of the network through the hidden wireless router.

    摘要翻译: 公开了一种用于检测在构成无线网络部分和有线网络部分的电信网络中构成安全威胁的隐藏无线路由器的技术。 根据本发明的说明性实施例,在网络的无线部分中使用测试台来检测隐藏的无线路由器的存在。 此外,在一些实施例中,在网络的有线部分中使用测试服务器,以便通过隐藏的无线路由器检测非法从无线部分路由到网络的有线部分的分组。

    Method and apparatus for content based authentication for network access
    10.
    发明授权
    Method and apparatus for content based authentication for network access 有权
    用于网络访问的基于内容的身份验证的方法和装置

    公开(公告)号:US07752320B2

    公开(公告)日:2010-07-06

    申请号:US10721721

    申请日:2003-11-25

    IPC分类号: G06F15/16

    摘要: A method and apparatus are provided for authenticating the contents of a device requesting access to a first network, such as an enterprise network. If a device has connected to at least one other network then the content of the device is evaluated prior to obtaining access. The scope of the content evaluation may be based, for example, on properties of the other network or on one or more defined content authentication rules. If a device attempts to access a network, the content of the device is evaluated and the device may be restricted to accessing only one or more restoration services if the content fails to satisfy one or more predefined criteria, such as a content item that is out of date or a determination that the device connected to one or more external networks. The restoration service(s) can update a content item that is out of date, reinstall one or more programs or return configuration settings to default values.

    摘要翻译: 提供了一种用于认证请求接入诸如企业网络的第一网络的设备的内容的方法和装置。 如果设备已经连接到至少一个其他网络,则在获得访问之前对设备的内容进行评估。 内容评估的范围可以例如基于另一网络的属性或基于一个或多个定义的内容认证规则。 如果设备尝试访问网络,则评估设备的内容,并且如果内容不能满足一个或多个预定义的标准(例如,出口的内容项目),则设备可能被限制为仅访问一个或多个恢复服务 或确定设备连接到一个或多个外部网络。 恢复服务可以更新过期的内容项目,重新安装一个或多个程序或将配置设置返回到默认值。