-
公开(公告)号:US20170012785A1
公开(公告)日:2017-01-12
申请号:US14930034
申请日:2015-11-02
Inventor: TOMOYUKI HAGA , MOTOJI OHMORI , NATSUME MATSUZAKI , HIDEKI MATSUSHIMA , YUJI UNAGAMI , MANABU MAEDA , YOSHIHIRO UJIIE
CPC classification number: H04L9/3268 , G06F21/33 , G06F21/44 , H04L9/14 , H04L9/30 , H04L63/06 , H04L63/0823
Abstract: In an authentication method according to the present disclosure, (1) a device transmits device history information with a CRL added thereto (hereinafter, device history information with added CRL) to a controller, (2) the controller transmits the device history information with added CRL to a server, and (3) if the version of the CRL included in the device history information with added CRL is older than the version of the CRL stored on the server, the server judges that the controller is unauthorized.
Abstract translation: 在根据本公开的认证方法中,(1)设备向控制器发送添加有CRL的设备历史信息(以下称为具有添加的CRL的设备历史信息),(2)控制器发送设备历史信息 CRL到服务器,以及(3)如果包含在添加的CRL的设备历史信息中的CRL的版本比存储在服务器上的CRL的版本更早,则服务器判断控制器是未授权的。
-
公开(公告)号:US20190334897A1
公开(公告)日:2019-10-31
申请号:US16505628
申请日:2019-07-08
Inventor: JUN ANZAI , TOMOYUKI HAGA
Abstract: The monitoring device includes a receiver and a processor. The receiver receives a frame from a communication network. The processor performs a first determination that determines whether the frame is illegal based on a result of message authentication for the frame and a second determination that determines whether the frame is illegal based on a state of the frame and a predetermined rule. In addition, the processor executes, in accordance with a combination of a result of the first determination and a result of the second determination, at least one of processing for the frame, processing for a transmission source device of the frame, change of contents to be notified to an external device, and change of priority of notification to the external device.
-
公开(公告)号:US20160072630A1
公开(公告)日:2016-03-10
申请号:US14930086
申请日:2015-11-02
Inventor: YOSHIHIRO UJIIE , MOTOJI OHMORI , NATSUME MATSUZAKI , HIDEKI MATSUSHIMA , TOMOYUKI HAGA , MANABU MAEDA , YUJI UNAGAMI
IPC: H04L9/32
CPC classification number: H04L9/3268 , G06F21/33 , G06F21/44 , H04L63/0823
Abstract: A device in an authentication system acquires a certificate revocation list along with a control command from an operating terminal to the device. The device determines the validity of the controller to which the device connects, based on the certificate revocation list acquired along with the control command.
Abstract translation: 认证系统中的设备从操作终端到设备获取证书吊销列表以及控制命令。 基于与控制命令一起获取的证书吊销列表,设备确定设备连接到的控制器的有效性。
-
公开(公告)号:US20160277195A1
公开(公告)日:2016-09-22
申请号:US15164911
申请日:2016-05-26
Inventor: MANABU MAEDA , NATSUME MATSUZAKI , MOTOJI OHMORI , HIDEKI MATSUSHIMA , TOMOYUKI HAGA , YUJI UNAGAMI , YOSHIHIRO UJIIE
CPC classification number: H04L9/3268 , H04L9/006 , H04L9/3297 , H04L63/0823 , H04L63/0853
Abstract: A first device, upon detecting participation in an authentication system, transmits new and old identification information of a first certificate revocation list that the first device manages to a second device. In a case where the new and old identification information of a second certificate revocation list that the second device manages is older than the new and old identification information of the received first certificate revocation list, the second device transmits a transmission request for the first certificate revocation list to the first device. Upon receiving the transmission request for the first certificate revocation list from the second device, the first device transmits the first certificate revocation list to the second device. the second device updates the second certificate revocation list using the received first certificate revocation list.
Abstract translation: 第一设备在检测到认证系统的参与时,向第二设备发送第一设备管理的第一证书吊销列表的新旧标识信息。 在第二设备管理的第二证书吊销列表的新旧识别信息比所接收的第一证书撤销列表的新旧标识信息更旧的情况下,第二设备发送第一证书撤销的传输请求 列表到第一个设备。 在从第二设备接收到针对第一证书吊销列表的传输请求时,第一设备将第一证书吊销列表发送到第二设备。 第二设备使用接收到的第一证书撤销列表来更新第二证书撤销列表。
-
公开(公告)号:US20150295721A1
公开(公告)日:2015-10-15
申请号:US14726633
申请日:2015-06-01
Inventor: YUJI UNAGAMI , MOTOJI OHMORI , NATSUME MATSUZAKI , HIDEKI MATSUSHIMA , TOMOYUKI HAGA , MANABU MAEDA , YOSHIHIRO UJIIE
CPC classification number: H04L9/3268 , G06F21/33 , G06F21/44 , H04L63/0823
Abstract: An authentication system according to the present disclosure includes a first controller connected to a first server via a first network, a second controller connected to a second server via a second network, and a device. The device compares a next issue date described in a first certificate revocation list acquired from the first controller and an issue date described in a second certificate revocation list acquired from the second controller thereby determining whether the first controller is invalid or not.
Abstract translation: 根据本公开的认证系统包括经由第一网络连接到第一服务器的第一控制器,经由第二网络连接到第二服务器的第二控制器和设备。 该设备将从第一控制器获取的第一证书吊销列表中描述的下一个发布日期与从第二控制器获取的第二证书吊销列表中描述的发布日期进行比较,从而确定第一控制器是否无效。
-
-
-
-