NODE FOR A NETWORK AND METHOD FOR ESTABLISHING A DISTRIBUTED SECURITY ARCHITECTURE FOR A NETWORK
    1.
    发明申请
    NODE FOR A NETWORK AND METHOD FOR ESTABLISHING A DISTRIBUTED SECURITY ARCHITECTURE FOR A NETWORK 审中-公开
    网络节点和建立网络分布式安全架构的方法

    公开(公告)号:US20110113475A1

    公开(公告)日:2011-05-12

    申请号:US12674950

    申请日:2008-09-04

    IPC分类号: G06F17/30

    摘要: The invention relates to a node (100) for a network such as a wireless control network or the like. In this network, each node (100) comprises a identifier (104) and keying material (102), means for authenticating (112) the node's identifier based on the node's keying material and means for checking (114) the access control rights of the node in a distributed manner based on the node's multidimensional identity and access rights corresponding to the node's identity. Additionally, the invention allows the node to generate a common key with any other node in the first keying first network that can be used to enable further material identifier secure communications.

    摘要翻译: 本发明涉及一种诸如无线控制网络等网络的节点(100)。 在该网络中,每个节点(100)包括标识符(104)和密钥材料(102),用于基于节点的密钥材料认证(112)节点的标识符的装置和用于检查(114)所述节点的标识符的访问控制权限的装置 节点以分布式方式基于节点的多维身份和与节点身份相对应的访问权限。 此外,本发明允许节点与第一密钥第一网络中的任何其他节点一起生成公共密钥,其可以用于实现进一步的材料标识符安全通信。

    NETWORK AND METHOD FOR ESTABLISHING A SECURE NETWORK
    2.
    发明申请
    NETWORK AND METHOD FOR ESTABLISHING A SECURE NETWORK 审中-公开
    建立安全网络的网络和方法

    公开(公告)号:US20110119489A1

    公开(公告)日:2011-05-19

    申请号:US12674953

    申请日:2008-09-04

    IPC分类号: H04L9/32

    摘要: The invention relates to a network with a first node (102) comprising first pre-distributed keying material being assigned to the first node before the first node is connected to the network and a second node (104) comprising second pre-distributed keying material being assigned to the second node before the second node is connected to the network. The first node is configured to establish a secure communication (112) to the second node based on the first and second pre-distributed keying materials, without relying on a trust center (108). Pre-distributed keying materials can be replaced in a secure manner with post-deployed keying materials by the network trust center. Nodes can establish further secure communications based on post-deployed keying materials.

    摘要翻译: 本发明涉及具有第一节点(102)的网络,第一节点(102)包括在第一节点连接到网络之前被分配给第一节点的第一预分布密钥材料,以及包括第二预分布密钥材料的第二节点(104) 在第二节点连接到网络之前分配给第二节点。 第一节点被配置为基于第一和第二预分布密钥材料建立到第二节点的安全通信(112),而不依赖于信任中心(108)。 预分配的密钥材料可以通过网络信任中心的后处理密钥材料安全地替换。 节点可以基于后期部署的密钥材料建立进一步的安全通信。

    Personal security manager for ubiquitous patient monitoring
    3.
    发明授权
    Personal security manager for ubiquitous patient monitoring 有权
    个人安全经理无处不在的病人监护

    公开(公告)号:US09094383B2

    公开(公告)日:2015-07-28

    申请号:US12995677

    申请日:2009-06-10

    摘要: The present invention relates to a system and corresponding method for a secure end-to-end patient healthcare system which includes wireless medical sensors adapted to be attached to a patient's body and in communication with each other forming a body sensor network within a wireless medical sensor network including one or more body sensor networks; λ-secure keying means incorporated into each wireless medical sensor for enabling secure communications between the wireless medical sensors, and a personal security manager within the body sensor network and in communication with the wireless medical sensors within the body sensor network, the personal security manager providing secure communications with backend services and providing security relationships within the body sensor network by means of the λ-secure keying means, wherein the λ-secure keying means are such that a coalition of no more than λ compromised wireless medical sensors conceals a pairwise key between any two non-compromised wireless medical sensors and provides protection against node compromise until λ+1 wireless medical sensors have been compromised.

    摘要翻译: 本发明涉及一种用于安全的端到端患者保健系统的系统和相应的方法,其包括适于附接到患者身体并彼此通信的无线医疗传感器,其形成无线医疗传感器内的身体传感器网络 网络包括一个或多个身体传感器网络; 结合到每个无线医疗传感器中的λ-安全键控装置,用于实现无线医疗传感器之间的安全通信,以及身体传感器网络内的个人安全管理器,并且与身体传感器网络内的无线医疗传感器通信,个人安全管理器提供 与后端服务的安全通信,并通过λ-安全键控装置在身体传感器网络内提供安全关系,其中λ-安全键控装置使得不超过λ个受损的无线医疗传感器的联盟在两个 任何两个不妥协的无线医疗传感器,并提供对节点损害的保护,直到λ+ 1无线医疗传感器已经受到损害。

    PERSONAL SECURITY MANAGER FOR UBIQUITOUS PATIENT MONITORING
    4.
    发明申请
    PERSONAL SECURITY MANAGER FOR UBIQUITOUS PATIENT MONITORING 有权
    个人安全管理人员,负责监护病人

    公开(公告)号:US20110145894A1

    公开(公告)日:2011-06-16

    申请号:US12995677

    申请日:2009-06-10

    IPC分类号: G06F21/00 H04L29/06

    摘要: The present invention relates to a system and corresponding method for a secure end-to-end patient healthcare system which includes wireless medical sensors adapted to be attached to a patient's body and in communication with each other forming a body sensor network within a wireless medical sensor network including one or more body sensor networks; λ-secure keying means incorporated into each wireless medical sensor for enabling secure communications between the wireless medical sensors, and a personal security manager within the body sensor network and in communication with the wireless medical sensors within the body sensor network, the personal security manager providing secure communications with backend services and providing security relationships within the body sensor network by means of the λ-secure keying means, wherein the λ-secure keying means are such that a coalition of no more than λ compromised wireless medical sensors conceals a pairwise key between any two non-compromised wireless medical sensors and provides protection against node compromise until λ+1 wireless medical sensors have been compromised.

    摘要翻译: 本发明涉及一种用于安全的端到端患者保健系统的系统和相应的方法,其包括适于附接到患者身体并彼此通信的无线医疗传感器,其形成无线医疗传感器内的身体传感器网络 网络包括一个或多个身体传感器网络; 结合到每个无线医疗传感器中的λ-安全键控装置,用于实现无线医疗传感器之间的安全通信,以及身体传感器网络内的个人安全管理器,并且与身体传感器网络内的无线医疗传感器通信,个人安全管理器提供 与后端服务的安全通信,并通过λ-安全键控装置在身体传感器网络内提供安全关系,其中λ-安全键控装置使得不超过λ个受损的无线医疗传感器的联盟在两个 任何两个不妥协的无线医疗传感器,并提供对节点损害的保护,直到λ+ 1无线医疗传感器已经受到损害。