Systems and methods for authenticating communications in a network medium
    2.
    发明申请
    Systems and methods for authenticating communications in a network medium 有权
    用于在网络介质中认证通信的系统和方法

    公开(公告)号:US20060174116A1

    公开(公告)日:2006-08-03

    申请号:US11395274

    申请日:2006-04-03

    IPC分类号: H04L9/00

    摘要: Pre-authentication information of devices is used to securely authenticate arbitrary peer-to-peer ad-hoc interactions. In one embodiment, public key cryptography is used in the main wireless link with location-limited channels being initially used to pre-authenticate devices. Use of public keys in the pre-authentication data allows for the broadening of types of media suitable for use as location-limited channels to include, for example, audio and infrared. Also, it allows a range of key exchange protocols which can be authenticated in this manner to include most public-key-based protocols. As a result, a large range of devices, protocols can be used in various applications. Further, an eavesdropper is forced to mount an active attack on the location-limited channel itself in order to access an ad-hoc exchange. However, this results in the discovery of the eavesdropper.

    摘要翻译: 设备的预认证信息用于安全地验证任意的对等ad-hoc交互。 在一个实施例中,在主无线链路中使用公共密钥密码术,其中最初用于对设备进行预认证的位置限制信道。 在预认证数据中使用公共密钥允许扩展适合用作位置限制信道的媒体的类型,以包括例如音频和红外。 此外,它允许可以以这种方式认证的一系列密钥交换协议,以包括大多数基于公钥密钥的协议。 因此,可以在各种应用中使用大范围的设备协议。 此外,窃听者被迫对位置限制频道本身进行主动攻击,以便访问自组织交换。 然而,这导致窃听者的发现。

    Systems and methods for authenticating communications in a network medium
    3.
    发明授权
    Systems and methods for authenticating communications in a network medium 有权
    用于在网络介质中认证通信的系统和方法

    公开(公告)号:US08156337B2

    公开(公告)日:2012-04-10

    申请号:US11395274

    申请日:2006-04-03

    IPC分类号: H04L9/32

    摘要: Pre-authentication information of devices is used to securely authenticate arbitrary peer-to-peer ad-hoc interactions. In one embodiment, public key cryptography is used in the main wireless link with location-limited channels being initially used to pre-authenticate devices. Use of public keys in the pre-authentication data allows for the broadening of types of media suitable for use as location-limited channels to include, for example, audio and infrared. Also, it allows a range of key exchange protocols which can be authenticated in this manner to include most public-key-based protocols. As a result, a large range of devices, protocols can be used in various applications. Further, an eavesdropper is forced to mount an active attack on the location-limited channel itself in order to access an ad-hoc exchange. However, this results in the discovery of the eavesdropper.

    摘要翻译: 设备的预认证信息用于安全地验证任意的对等ad-hoc交互。 在一个实施例中,在主无线链路中使用公共密钥密码术,其中最初用于对设备进行预认证的位置限制信道。 在预认证数据中使用公共密钥允许扩展适合用作位置限制信道的媒体的类型,以包括例如音频和红外。 此外,它允许可以以这种方式认证的一系列密钥交换协议,以包括大多数基于公钥密钥的协议。 因此,可以在各种应用中使用大范围的设备协议。 此外,窃听者被迫对位置限制频道本身进行主动攻击,以便访问自组织交换。 然而,这导致窃听者的发现。

    System and method for providing secure resource management
    7.
    发明授权
    System and method for providing secure resource management 有权
    提供安全资源管理的系统和方法

    公开(公告)号:US07904720B2

    公开(公告)日:2011-03-08

    申请号:US10289528

    申请日:2002-11-06

    IPC分类号: H04L9/32 H04L9/12 H04L9/00

    摘要: System and method for providing secure resource management. The system includes a first device that creates a secure, shared resource space and a corresponding root certificate for the shared space. The first device associates one or more resources that it can access with the shared space. The first device invites one or more other devices to join as members of the space, and establishes secure communication channels with the devices that accept this invitation. The first device generates a member certificate for each accepting device, and sends the root certificate and the generated member certificate to the device through the secure channel. These devices may then access resources associated with the shared space by presenting their member certificates. Further, members of the shared space may invite other device to join the space, and may create member certificates in the same manner as the first device.

    摘要翻译: 提供安全资源管理的系统和方法。 该系统包括为共享空间创建安全的共享资源空间和相应的根证书的第一设备。 第一个设备将可以访问的一个或多个资源与共享空间相关联。 第一个设备邀请一个或多个其他设备作为该空间的成员加入,并且与接受该邀请的设备建立安全的通信信道。 第一个设备为每个接受设备生成成员证书,并通过安全通道将根证书和生成的成员证书发送到设备。 然后,这些设备可以通过呈现他们的成员证书来访问与共享空间相关联的资源。 此外,共享空间的成员可以邀请其他设备加入空间,并且可以以与第一设备相同的方式创建成员证书。