-
公开(公告)号:US11792023B2
公开(公告)日:2023-10-17
申请号:US17270378
申请日:2019-05-10
Inventor: Tomoki Takazoe , Yoichi Masuda , Kenji Yasu , Yuji Unagami
CPC classification number: H04L9/3268 , H04L9/30
Abstract: A GM acquires a first certificate revocation list designating revoked public key certificates and distributed from a certificate authority server. The GM generates a second certificate revocation list produced by extracting information on a plurality of home electric appliances from the first certificate revocation list. The GM restricts communication with a device for which the public key certificate is revoked, by distributing the second certificate revocation list generated to the plurality of home electric appliances.
-
公开(公告)号:US11290442B2
公开(公告)日:2022-03-29
申请号:US16741720
申请日:2020-01-13
Inventor: Yoichi Masuda , Tomoki Takazoe
IPC: H04L29/06
Abstract: A HEMS controller receives, from each of a plurality of devices requesting registration in a HEMS, an electronic certificate of the device in a continuous registration mode in which a plurality of devices can be continuously registered in the HEMS. The HEMS controller 14 determines whether or not to permit registration in the HEMS for each device based on an attribute indicated by the electronic certificate of each of the plurality of devices.
-
公开(公告)号:US10440021B2
公开(公告)日:2019-10-08
申请号:US15358283
申请日:2016-11-22
Inventor: Yuji Unagami , Manabu Maeda , Tomoki Takazoe , Yoichi Masuda , Hideki Matsushima
Abstract: A first controller generates a first group key, executes first mutual authentication with devices within a group, and shares a first group key with devices that have succeeded in authentication. At least one controller within the group decides a coordinator that manages a group key used in common in the group, from controllers including a second controller newly joined in the group. The first controller executes second mutual authentication with the coordinator, and shares the first group key with the coordinator. The coordinator performs encrypted communication within the group using the first group key. The coordinator generates a second group key when valid time of the first group key is equal to or smaller than a predetermined value, executes third mutual authentication with the devices and controllers within the group, and updates the group key of the devices and controllers that have succeeded in authentication to the second group key.
-
公开(公告)号:US10785208B2
公开(公告)日:2020-09-22
申请号:US15559803
申请日:2016-02-01
Inventor: Tomoki Takazoe
Abstract: A controller and a device generate a shared key by performing mutual authentication using a public key certificate of the controller and a public key certificate of the device. The controller and the device set an expiry for the shared key to one of the expiry of the public key certificate of the controller and the expiry of the public key certificate of the device. The controller and the device perform the mutual authentication using neither the public key certificate of the controller nor the public key certificate of the device, but the shared key, if the expiry set for the shared key has not passed.
-
公开(公告)号:US10992667B2
公开(公告)日:2021-04-27
申请号:US16552445
申请日:2019-08-27
Inventor: Yuji Unagami , Manabu Maeda , Tomoki Takazoe , Yoichi Masuda , Hideki Matsushima
Abstract: A first controller generates a first group key, executes first mutual authentication with devices within a group, and shares the first group key with the devices that have succeeded in first mutual authentication. When a second controller joins the group, the first controller decides a coordinator that manages a group key used in common in the group. The first controller executes second mutual authentication with the coordinator, and shares the first group key with the coordinator when the second mutual authentication is successful. The coordinator performs encrypted communication within the group using the first group key, generates a second group key when valid time of the first group key is equal to or smaller than a predetermined value, executes third mutual authentication with the devices and a third controller, and updates the first group key of the devices and the third controller that have succeeded in the third authentication.
-
公开(公告)号:US10951400B2
公开(公告)日:2021-03-16
申请号:US16511293
申请日:2019-07-15
Inventor: Yuji Unagami , Manabu Maeda , Hideki Matsushima , Tomoki Takazoe , Yoichi Masuda
Abstract: An authentication method for a group of devices connected to a network includes selecting the first controller as a coordinator, the coordinator being configured to manage a group key to be used in common in the group. The method includes generating the group key, and performing first mutual authentication and second mutual authentication. The method also includes sharing the group key with each device for which the first mutual authentication has been successful, and sharing the group key with each second controller for which the second mutual authentication has been successful. The method further includes encrypting transmission data by using the group key to generate encrypted data, generating, authentication data by using the group key, and simultaneously broadcasting a message to each device for which the first mutual authentication has been successful and each second controller for which the second mutual authentication has been successful.
-
公开(公告)号:US10764275B2
公开(公告)日:2020-09-01
申请号:US15753148
申请日:2016-08-04
Inventor: Tomoki Takazoe , Yoichi Masuda , Hideki Matsushima , Yuji Unagami
Abstract: A new controller (supporting device authentication) is a controller which performs encrypted communication with a device which has succeeded in mutual authentication using an electronic certificate, and the controller includes: a determining unit that determines whether or not a communication target device with which communication is to be performed is an authentication support device that supports the mutual authentication; a functional restriction unit that, when the communication target device is determined not to be the authentication support device by the determining unit, imposes a functional restriction on one or more functions of the communication target device which are operable by the new controller (supporting device authentication); and a communication unit which performs communication in plain text with the communication target device with the functional restriction imposed by the functional restriction unit.
-
公开(公告)号:US10609027B2
公开(公告)日:2020-03-31
申请号:US15322279
申请日:2015-05-27
Inventor: Yoichi Masuda , Tomoki Takazoe , Manabu Maeda , Yuji Unagami
Abstract: A communication system, including: a NW management device which (i) forms a network together with an authenticated target device, and (ii) manages the network by delivering a session key for use in communication in the network to the authenticated target device; and a device authenticated by the NW management device, wherein the NW management device: determines whether or not to permit the device to be an alternative management device which manages the network in replace of the NW management device when communication is impossible in the network; shares, with the device, authentication information about the authenticated target device, when permitting the device to be the alternative management device; and the device shares the authentication information with the NW management device, and starts managing the network using the authentication information as the alternative management device when determining that the NW management device cannot communicate in the network.
-
公开(公告)号:US10404453B2
公开(公告)日:2019-09-03
申请号:US15400031
申请日:2017-01-06
Inventor: Yuji Unagami , Manabu Maeda , Hideki Matsushima , Tomoki Takazoe , Yoichi Masuda
Abstract: At least one controller in a group selects a coordinator that manages a group key to be used in common in the group from among controllers in the group in accordance with an attribute of the controllers. The selected coordinator generates a group key, performs mutual authentication with devices and the controllers in the group, and shares the generated group key with devices and controllers that have been successfully authenticated. The coordinator then generates encrypted data and authentication data by using the group key and simultaneously broadcasts a message including the encrypted data and the authentication data.
-
10.
公开(公告)号:US09906948B2
公开(公告)日:2018-02-27
申请号:US14766846
申请日:2014-02-03
Inventor: Tomoki Takazoe
CPC classification number: H04W8/26 , H04L12/40032 , H04L61/2092 , H04L61/2521 , H04L61/6004 , H04L61/6022 , H04L61/6059 , H04L61/6068 , H04L61/6077 , H04L61/6081
Abstract: An address setting method of a wireless communication system includes the steps of generating an address by each of a HEMS controller and a HEMS terminal based on an address prefix included in a router advertisement of a smart meter, and setting, by the HEMS terminal, a route of a packet sent to a HEMS server to a route by way of the HEMS controller. The HEMS controller performs NAT setting by replacing an address prefix of a source address of the packet sent to the HEMS server with an address prefix of the HEMS controller.
-
-
-
-
-
-
-
-
-