CN109863732B - 用于通信网络的方法、和电子监测单元 - Google Patents

用于通信网络的方法、和电子监测单元 Download PDF

Info

Publication number
CN109863732B
CN109863732B CN201780066155.7A CN201780066155A CN109863732B CN 109863732 B CN109863732 B CN 109863732B CN 201780066155 A CN201780066155 A CN 201780066155A CN 109863732 B CN109863732 B CN 109863732B
Authority
CN
China
Prior art keywords
communication
security
firewall
communication network
maximum possible
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN201780066155.7A
Other languages
English (en)
Chinese (zh)
Other versions
CN109863732A (zh
Inventor
H·青纳
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Aumovio Germany GmbH
Original Assignee
Continental Automotive GmbH
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Continental Automotive GmbH filed Critical Continental Automotive GmbH
Publication of CN109863732A publication Critical patent/CN109863732A/zh
Application granted granted Critical
Publication of CN109863732B publication Critical patent/CN109863732B/zh
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/20Network architectures or network communication protocols for network security for managing network security; network security policies in general
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/14Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
    • H04L63/1408Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic by monitoring network traffic
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/02Network architectures or network communication protocols for network security for separating internal from external traffic, e.g. firewalls
    • H04L63/0209Architectural arrangements, e.g. perimeter networks or demilitarized zones
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/02Network architectures or network communication protocols for network security for separating internal from external traffic, e.g. firewalls
    • H04L63/0227Filtering policies
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/01Protocols
    • H04L67/10Protocols in which an application is distributed across nodes in the network
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/01Protocols
    • H04L67/12Protocols specially adapted for proprietary or special-purpose networking environments, e.g. medical networks, sensor networks, networks in vehicles or remote metering networks
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/02Network architectures or network communication protocols for network security for separating internal from external traffic, e.g. firewalls
    • H04L63/0227Filtering policies
    • H04L63/0245Filtering by information in the payload

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Computer Security & Cryptography (AREA)
  • Signal Processing (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Computer Hardware Design (AREA)
  • Health & Medical Sciences (AREA)
  • General Health & Medical Sciences (AREA)
  • Medical Informatics (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)
  • Computer And Data Communications (AREA)
  • Small-Scale Networks (AREA)
CN201780066155.7A 2016-11-18 2017-11-17 用于通信网络的方法、和电子监测单元 Active CN109863732B (zh)

Applications Claiming Priority (3)

Application Number Priority Date Filing Date Title
DE102016222740.8 2016-11-18
DE102016222740.8A DE102016222740A1 (de) 2016-11-18 2016-11-18 Verfahren für ein Kommunikationsnetzwerk und elektronische Kontrolleinheit
PCT/EP2017/079584 WO2018099736A1 (de) 2016-11-18 2017-11-17 Verfahren für ein kommunikationsnetzwerk und elektronische kontrolleinheit

Publications (2)

Publication Number Publication Date
CN109863732A CN109863732A (zh) 2019-06-07
CN109863732B true CN109863732B (zh) 2022-02-25

Family

ID=60473512

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201780066155.7A Active CN109863732B (zh) 2016-11-18 2017-11-17 用于通信网络的方法、和电子监测单元

Country Status (7)

Country Link
US (1) US11019102B2 (enExample)
EP (1) EP3542511B1 (enExample)
JP (1) JP6782842B2 (enExample)
KR (1) KR102227933B1 (enExample)
CN (1) CN109863732B (enExample)
DE (1) DE102016222740A1 (enExample)
WO (1) WO2018099736A1 (enExample)

Families Citing this family (13)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JP7316609B2 (ja) * 2017-01-05 2023-07-28 ガードノックス・サイバー・テクノロジーズ・リミテッド サービス指向アーキテクチャに基づく集中化サービスecuおよびその使用方法
KR102711206B1 (ko) * 2019-06-14 2024-09-27 현대자동차주식회사 자동차 및 그를 위한 사용자 설정 메뉴 관리 방법
DE102019210230A1 (de) * 2019-07-10 2021-01-14 Robert Bosch Gmbh Vorrichtung und Verfahren für Angriffserkennung in einem Rechnernetzwerk
CN112347047B (zh) * 2019-08-09 2024-06-11 广州汽车集团股份有限公司 一种车辆数据文件生成方法及装置
JP7115442B2 (ja) * 2019-08-21 2022-08-09 トヨタ自動車株式会社 判定装置、判定システム、プログラム及び判定方法
FR3106421B1 (fr) * 2020-01-17 2021-12-10 Continental Automotive Passerelle de communication de trames de données pour véhicule automobile
EP4149027B1 (en) * 2021-09-10 2025-04-02 Schneider Electric Industries SAS Time synchronization in industrial system
CN114465889B (zh) * 2022-01-07 2024-06-04 东风柳州汽车有限公司 一种车辆配置的切换方法
CN114866344B (zh) * 2022-07-05 2022-09-27 佛山市承林科技有限公司 信息系统数据安全防护方法、系统及云平台
KR20240177204A (ko) * 2023-06-19 2024-12-27 현대자동차주식회사 이더넷 패킷 필터링 장치 및 그 방법
DE102023002589B4 (de) 2023-06-26 2025-01-23 Mercedes-Benz Group AG Netzwerksystem und Fahrzeug
DE102023002575B4 (de) 2023-06-26 2025-02-06 Mercedes-Benz Group AG Netzwerksystem und Fahrzeug
DE102023208140A1 (de) 2023-08-25 2025-02-27 Robert Bosch Gesellschaft mit beschränkter Haftung Verfahren zum Bereitstellen eines verteilten Informationssicherheits-Systems für ein Fahrzeug

Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JP2000330897A (ja) * 1999-05-17 2000-11-30 Nec Corp ファイアウォール負荷分散システム、ファイアウォール負荷分散方法および記録媒体
CN1666477A (zh) * 2002-07-04 2005-09-07 网络研发私人有限公司 监测和控制通信网络中数据传输的方法、系统和装置
CN101300807A (zh) * 2005-09-30 2008-11-05 诺基亚西门子通信有限责任两合公司 通信网络的网络接入节点计算机、通信系统以及用于操作通信系统的方法
CN103139184A (zh) * 2011-12-02 2013-06-05 中国电信股份有限公司 智能网络防火墙设备及网络攻击防护方法
JP2014520441A (ja) * 2011-06-10 2014-08-21 ローベルト ボッシュ ゲゼルシャフト ミット ベシュレンクテル ハフツング 通信ネットワークのための接続ノード
EP2892199A1 (en) * 2014-01-06 2015-07-08 Argus Cyber Security Ltd. Global automotive safety system
CN104908781A (zh) * 2015-05-27 2015-09-16 中国铁路总公司 一种集成化电务监测维护系统

Family Cites Families (10)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6161071A (en) * 1999-03-12 2000-12-12 Navigation Technologies Corporation Method and system for an in-vehicle computing architecture
JP2000293493A (ja) 1999-04-02 2000-10-20 Nec Corp セキュリティチェックの分散処理方法及びその装置並びに情報記録媒体
JP4124948B2 (ja) 2000-08-25 2008-07-23 三菱電機株式会社 移動体電子装置
JP4116920B2 (ja) 2003-04-21 2008-07-09 株式会社日立製作所 分散型サービス不能攻撃を防ぐネットワークシステム
US7966654B2 (en) * 2005-11-22 2011-06-21 Fortinet, Inc. Computerized system and method for policy-based content filtering
US8914406B1 (en) * 2012-02-01 2014-12-16 Vorstack, Inc. Scalable network security with fast response protocol
MX356554B (es) 2012-10-17 2018-06-04 Towersec Ltd Dispositivo para deteccion y prevencion de ataque en vehiculo.
US9288048B2 (en) * 2013-09-24 2016-03-15 The Regents Of The University Of Michigan Real-time frame authentication using ID anonymization in automotive networks
WO2017024078A1 (en) * 2015-08-03 2017-02-09 Icon Labs A method for detecting, blocking and reporting cyber-attacks against automotive electronic control units
US20180183826A1 (en) * 2015-08-21 2018-06-28 Renesas Electronics Europe Limited Design support system

Patent Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JP2000330897A (ja) * 1999-05-17 2000-11-30 Nec Corp ファイアウォール負荷分散システム、ファイアウォール負荷分散方法および記録媒体
CN1666477A (zh) * 2002-07-04 2005-09-07 网络研发私人有限公司 监测和控制通信网络中数据传输的方法、系统和装置
CN101300807A (zh) * 2005-09-30 2008-11-05 诺基亚西门子通信有限责任两合公司 通信网络的网络接入节点计算机、通信系统以及用于操作通信系统的方法
JP2014520441A (ja) * 2011-06-10 2014-08-21 ローベルト ボッシュ ゲゼルシャフト ミット ベシュレンクテル ハフツング 通信ネットワークのための接続ノード
CN103139184A (zh) * 2011-12-02 2013-06-05 中国电信股份有限公司 智能网络防火墙设备及网络攻击防护方法
EP2892199A1 (en) * 2014-01-06 2015-07-08 Argus Cyber Security Ltd. Global automotive safety system
CN104908781A (zh) * 2015-05-27 2015-09-16 中国铁路总公司 一种集成化电务监测维护系统

Also Published As

Publication number Publication date
JP6782842B2 (ja) 2020-11-11
EP3542511B1 (de) 2021-11-17
WO2018099736A9 (de) 2019-05-16
WO2018099736A1 (de) 2018-06-07
US20190245890A1 (en) 2019-08-08
DE102016222740A1 (de) 2018-05-24
US11019102B2 (en) 2021-05-25
EP3542511A1 (de) 2019-09-25
KR102227933B1 (ko) 2021-03-12
JP2020500374A (ja) 2020-01-09
KR20190065440A (ko) 2019-06-11
CN109863732A (zh) 2019-06-07

Similar Documents

Publication Publication Date Title
CN109863732B (zh) 用于通信网络的方法、和电子监测单元
US11314614B2 (en) Security for container networks
US11038912B2 (en) Method of selecting the most secure communication path
CN100556031C (zh) 智能集成网络安全设备
EP2057552B1 (en) System and method for distributed multi-processing security gateway
US7360242B2 (en) Personal firewall with location detection
US8006297B2 (en) Method and system for combined security protocol and packet filter offload and onload
US8453208B2 (en) Network authentication method, method for client to request authentication, client, and device
US20090113517A1 (en) Security state aware firewall
CN108881328B (zh) 数据包过滤方法、装置、网关设备及存储介质
US20080077694A1 (en) Method and system for network security using multiple virtual network stack instances
CN114679309B (zh) 报文检测方法及装置
KR20200109875A (ko) 유해 ip 판단 방법
US20210014257A1 (en) Method and device for intrusion detection in a computer network
KR100723864B1 (ko) 패킷에 포함된 정보를 이용하여 네트워크 공격을 차단하는방법 및 그 장치
CN112217783A (zh) 用于在通信网络中的攻击识别的设备和方法
JP5625394B2 (ja) ネットワークセキュリティシステムおよび方法
US12120517B2 (en) System for detecting short duration attacks on connected vehicles
Lindberg Security analysis of vehicle diagnostics using DoIP
EP4531343A1 (en) Methods for security control and devices thereof
FI126032B (en) Detection of a threat in a telecommunications network
CN115941298A (zh) 一种基于vpp&dpdk的防火墙安全域隔离方法
CN119854148A (zh) 服务发现方法、装置、设备及存储介质
CN116781303A (zh) 一种DDoS攻击防护方法和相关装置

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant
TR01 Transfer of patent right
TR01 Transfer of patent right

Effective date of registration: 20230116

Address after: Hannover

Patentee after: Continental Automotive Technology Co.,Ltd.

Address before: 9 Valen Ward street, Hannover, Germany

Patentee before: CONTINENTAL AUTOMOTIVE GmbH