Apparatus and method for traversing gateway device using a plurality of batons
    1.
    发明授权
    Apparatus and method for traversing gateway device using a plurality of batons 有权
    使用多个警棍横穿网关装置的装置和方法

    公开(公告)号:US07694334B2

    公开(公告)日:2010-04-06

    申请号:US11003687

    申请日:2004-12-03

    IPC分类号: G06F15/16

    CPC分类号: H04L63/029 H04L63/08

    摘要: A digital “baton” is provided from a firewall or other gateway, or other network device, to a device B outside the firewall, when a device A, which is inside the firewall, requests information from the device B. The device B may pass the digital baton to subsequent electronic devices that may respond to the request using the digital baton to send messages or information through the firewall to the device A. The firewall authenticates and filters the messages based on authentication of the batons contained within the messages.

    摘要翻译: 当防火墙内的设备A从设备B请求信息时,防火墙或其他网关或其他网络设备提供数字“指挥棒”到防火墙外部的设备B.设备B可以通过 使用数字警棍响应该请求的数字警棍可以通过防火墙将消息或信息发送到设备A.防火墙基于消息中包含的警棍的认证来对消息进行认证和过滤。

    Apparatus and method for traversing gateway device using a plurality of batons
    2.
    发明申请
    Apparatus and method for traversing gateway device using a plurality of batons 有权
    使用多个警棍横穿网关装置的装置和方法

    公开(公告)号:US20060123475A1

    公开(公告)日:2006-06-08

    申请号:US11003687

    申请日:2004-12-03

    IPC分类号: G06F15/16

    CPC分类号: H04L63/029 H04L63/08

    摘要: A digital “baton” is provided from a firewall or other gateway, or other network device, to a device B outside the firewall, when a device A, which is inside the firewall, requests information from the device B. The device B may pass the digital baton to subsequent electronic devices that may respond to the request using the digital baton to send messages or information through the firewall to the device A. The firewall authenticates and filters the messages based on authentication of the batons contained within the messages.

    摘要翻译: 当防火墙内的设备A从设备B请求信息时,防火墙或其他网关或其他网络设备提供数字“指挥棒”到防火墙外部的设备B.设备B可以通过 使用数字警棍响应该请求的数字警棍可以通过防火墙将消息或信息发送到设备A.防火墙基于消息中包含的警棍的认证来对消息进行认证和过滤。

    System and method for authenticating a terminal based upon a position of the terminal within an organization
    3.
    发明申请
    System and method for authenticating a terminal based upon a position of the terminal within an organization 审中-公开
    基于终端在组织内的位置来认证终端的系统和方法

    公开(公告)号:US20050149724A1

    公开(公告)日:2005-07-07

    申请号:US10748980

    申请日:2003-12-30

    申请人: Jon Graff

    发明人: Jon Graff

    IPC分类号: H04L9/00 H04L12/28 H04L12/56

    CPC分类号: H04W12/06 H04W12/08

    摘要: A system for authenticating a terminal includes a terminal capable of communicating within and/or across at least one network. The terminal is included within an organization including a plurality of terminals, where each terminal is located at one or more of a plurality of positions within the organization. The system also includes a primary CA capable of issuing an identity certificate to each terminal of the organization, and as such, to the terminal of the system. The system also includes a secondary CA capable of providing at least one role certificate to the terminal based upon the position(s) of the terminal within the organization. The organization includes a plurality of secondary CA's capable of issuing role certificate(s) to respective groups of terminals of the organization. The system further includes a server capable of authenticating the terminal based upon the identity certificate and the role certificate(s) of the terminal.

    摘要翻译: 用于认证终端的系统包括能够在至少一个网络内和/或跨越至少一个网络进行通信的终端。 终端包括在包括多个终端的组织中,其中每个终端位于组织内的多个位置中的一个或多个位置。 该系统还包括能够向组织的每个终端颁发身份证书的主CA,并且同样地向系统的终端发送。 该系统还包括能够基于组织内的终端的位置向终端提供至少一个角色证书的辅助CA。 该组织包括能够向组织的各个终端组发放角色证书的多个辅助CA。 该系统还包括能够基于身份证书和终端的角色证书来认证终端的服务器。

    System and method for authenticating a terminal based upon at least one characteristic of the terminal located at a position within an organization
    4.
    发明申请
    System and method for authenticating a terminal based upon at least one characteristic of the terminal located at a position within an organization 审中-公开
    基于位于组织内的位置的终端的至少一个特征来验证终端的系统和方法

    公开(公告)号:US20050144144A1

    公开(公告)日:2005-06-30

    申请号:US10749042

    申请日:2003-12-30

    申请人: Jon Graff

    发明人: Jon Graff

    摘要: A system for authenticating a terminal includes a terminal included within an organization including a plurality of terminals, each having characteristic(s) and being at one or more positions within the organization. The system also includes a secondary certification authority (CA) capable of providing role certificate(s) to the terminal based upon the position(s) of the terminal, where the organization includes a plurality of secondary CA's capable of issuing role certificate(s) to respective groups of terminals of the organization. In addition, the system includes a tertiary CA capable of providing permission certificate(s) to the terminal based upon the characteristic(s) of the terminal, where the organization includes a plurality of tertiary CA's capable of issuing permission certificate(s) to respective sub-groups of terminals of the organization. The system further includes a server capable of authenticating the terminal based upon an identity certificate, the role certificate(s) and the permission certificate(s) of the terminal.

    摘要翻译: 用于认证终端的系统包括包括在包括多个终端的组织内的终端,每个终端具有特征并且处于组织内的一个或多个位置。 该系统还包括能够基于终端的位置向终端提供角色证书的二级认证机构(CA),其中组织包括能够发布角色证书的多个辅助CA, 到组织的各个终端组。 此外,该系统包括能够基于终端的特征向终端提供许可证书的三级CA,其中该组织包括能够向相应的许可证颁发许可证的多个三级CA 组织终端子组。 该系统还包括能够基于身份证书,角色证书和终端的许可证书来认证终端的服务器。