摘要:
A digital “baton” is provided from a firewall or other gateway, or other network device, to a device B outside the firewall, when a device A, which is inside the firewall, requests information from the device B. The device B may pass the digital baton to subsequent electronic devices that may respond to the request using the digital baton to send messages or information through the firewall to the device A. The firewall authenticates and filters the messages based on authentication of the batons contained within the messages.
摘要:
A digital “baton” is provided from a firewall or other gateway, or other network device, to a device B outside the firewall, when a device A, which is inside the firewall, requests information from the device B. The device B may pass the digital baton to subsequent electronic devices that may respond to the request using the digital baton to send messages or information through the firewall to the device A. The firewall authenticates and filters the messages based on authentication of the batons contained within the messages.
摘要:
A system for authenticating a terminal includes a terminal capable of communicating within and/or across at least one network. The terminal is included within an organization including a plurality of terminals, where each terminal is located at one or more of a plurality of positions within the organization. The system also includes a primary CA capable of issuing an identity certificate to each terminal of the organization, and as such, to the terminal of the system. The system also includes a secondary CA capable of providing at least one role certificate to the terminal based upon the position(s) of the terminal within the organization. The organization includes a plurality of secondary CA's capable of issuing role certificate(s) to respective groups of terminals of the organization. The system further includes a server capable of authenticating the terminal based upon the identity certificate and the role certificate(s) of the terminal.
摘要:
A system for authenticating a terminal includes a terminal included within an organization including a plurality of terminals, each having characteristic(s) and being at one or more positions within the organization. The system also includes a secondary certification authority (CA) capable of providing role certificate(s) to the terminal based upon the position(s) of the terminal, where the organization includes a plurality of secondary CA's capable of issuing role certificate(s) to respective groups of terminals of the organization. In addition, the system includes a tertiary CA capable of providing permission certificate(s) to the terminal based upon the characteristic(s) of the terminal, where the organization includes a plurality of tertiary CA's capable of issuing permission certificate(s) to respective sub-groups of terminals of the organization. The system further includes a server capable of authenticating the terminal based upon an identity certificate, the role certificate(s) and the permission certificate(s) of the terminal.