CN1833228A - 用于实现远程客户端完整性验证的设备、系统、方法和计算机程序 - Google Patents
用于实现远程客户端完整性验证的设备、系统、方法和计算机程序 Download PDFInfo
- Publication number
- CN1833228A CN1833228A CNA200480017647XA CN200480017647A CN1833228A CN 1833228 A CN1833228 A CN 1833228A CN A200480017647X A CNA200480017647X A CN A200480017647XA CN 200480017647 A CN200480017647 A CN 200480017647A CN 1833228 A CN1833228 A CN 1833228A
- Authority
- CN
- China
- Prior art keywords
- network equipment
- equipment
- remote network
- script
- service
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Granted
Links
Images
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/14—Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
- H04L63/1433—Vulnerability analysis
-
- G—PHYSICS
- G06—COMPUTING; CALCULATING OR COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/50—Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
- G06F21/57—Certifying or maintaining trusted computer platforms, e.g. secure boots or power-downs, version controls, system software checks, secure updates or assessing vulnerabilities
-
- G—PHYSICS
- G06—COMPUTING; CALCULATING OR COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/50—Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
- G06F21/57—Certifying or maintaining trusted computer platforms, e.g. secure boots or power-downs, version controls, system software checks, secure updates or assessing vulnerabilities
- G06F21/577—Assessing vulnerabilities and evaluating computer system security
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/10—Network architectures or network communication protocols for network security for controlling access to devices or network resources
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/16—Implementing security features at a particular protocol layer
- H04L63/166—Implementing security features at a particular protocol layer at the transport layer
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Computer Hardware Design (AREA)
- General Engineering & Computer Science (AREA)
- Software Systems (AREA)
- Theoretical Computer Science (AREA)
- General Physics & Mathematics (AREA)
- Physics & Mathematics (AREA)
- Computing Systems (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Data Exchanges In Wide-Area Networks (AREA)
- Computer And Data Communications (AREA)
Abstract
Description
Claims (48)
Applications Claiming Priority (3)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
US10/606,346 | 2003-06-24 | ||
US10/606,346 US7591017B2 (en) | 2003-06-24 | 2003-06-24 | Apparatus, and method for implementing remote client integrity verification |
PCT/IB2004/002090 WO2004114048A2 (en) | 2003-06-24 | 2004-06-23 | An apparatus, system, method and computer program product for implementing remote client integrity verification |
Publications (2)
Publication Number | Publication Date |
---|---|
CN1833228A true CN1833228A (zh) | 2006-09-13 |
CN1833228B CN1833228B (zh) | 2012-05-02 |
Family
ID=33540039
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN200480017647XA Expired - Fee Related CN1833228B (zh) | 2003-06-24 | 2004-06-23 | 用于实现远程客户端完整性验证的设备、系统、方法 |
Country Status (5)
Country | Link |
---|---|
US (1) | US7591017B2 (zh) |
EP (1) | EP1644832A4 (zh) |
JP (2) | JP2007520763A (zh) |
CN (1) | CN1833228B (zh) |
WO (1) | WO2004114048A2 (zh) |
Cited By (7)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN101968838A (zh) * | 2010-09-29 | 2011-02-09 | 北京握奇数据系统有限公司 | 一种浏览器及配置安全浏览器的方法 |
CN101989919A (zh) * | 2009-08-06 | 2011-03-23 | 中兴通讯股份有限公司 | 本地诊断和维护软件系统及相应的诊断、维护方法及系统 |
CN102147842A (zh) * | 2010-07-23 | 2011-08-10 | 卡巴斯基实验室封闭式股份公司 | 防御网络资源上的恶意软件 |
CN101562558B (zh) * | 2008-04-15 | 2012-04-18 | 华为技术有限公司 | 一种终端等级划分的方法、系统和设备 |
CN102882852A (zh) * | 2012-09-03 | 2013-01-16 | 北京神州绿盟信息安全科技股份有限公司 | 安全配置核查系统和方法 |
CN103870750A (zh) * | 2012-12-12 | 2014-06-18 | 腾讯科技(武汉)有限公司 | 一种在浏览器中实现设备安全扫描的方法及装置 |
CN106209748A (zh) * | 2015-05-08 | 2016-12-07 | 阿里巴巴集团控股有限公司 | 互联网接口的防护方法及装置 |
Families Citing this family (51)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
WO2004021114A2 (en) | 2002-08-27 | 2004-03-11 | Td Security, Inc., Dba Trust Digital, Llc | Enterprise-wide security system for computer devices |
FR2849311B1 (fr) * | 2002-12-18 | 2005-04-15 | France Telecom | Procede de communication entre deux unites, et terminal mettant en oeuvre le procede |
US20050097199A1 (en) | 2003-10-10 | 2005-05-05 | Keith Woodard | Method and system for scanning network devices |
US7752320B2 (en) * | 2003-11-25 | 2010-07-06 | Avaya Inc. | Method and apparatus for content based authentication for network access |
EP2733656A1 (en) * | 2003-12-23 | 2014-05-21 | Trust Digital, LLC | System and method for enforcing a security policy on mobile devices using dynamically generated security profiles |
US8154987B2 (en) * | 2004-06-09 | 2012-04-10 | Intel Corporation | Self-isolating and self-healing networked devices |
US8353028B2 (en) | 2004-06-21 | 2013-01-08 | Ebay Inc. | Render engine, and method of using the same, to verify data for access and/or publication via a computer system |
US7526810B2 (en) * | 2004-06-21 | 2009-04-28 | Ebay Inc. | Method and system to verify data received, at a server system, for access and/or publication via the server system |
US7971245B2 (en) * | 2004-06-21 | 2011-06-28 | Ebay Inc. | Method and system to detect externally-referenced malicious data for access and/or publication via a computer system |
CN1703004B (zh) * | 2005-02-28 | 2010-08-25 | 联想(北京)有限公司 | 一种实现网络接入认证的方法 |
WO2006093917A2 (en) | 2005-02-28 | 2006-09-08 | Trust Digital | Mobile data security system and methods |
US10764264B2 (en) * | 2005-07-11 | 2020-09-01 | Avaya Inc. | Technique for authenticating network users |
US7603708B2 (en) * | 2005-07-13 | 2009-10-13 | Microsoft Corporation | Securing network services using network action control lists |
US8434147B2 (en) * | 2005-11-07 | 2013-04-30 | International Business Machines Corporation | Method, system and program product for remotely verifying integrity of a system |
WO2007103818A2 (en) * | 2006-03-02 | 2007-09-13 | Vxv Solutions, Inc. | Methods and apparatus for implementing secure and adaptive proxies |
EP2506184A1 (en) * | 2006-03-29 | 2012-10-03 | The Bank of Tokyo-Mitsubishi UFJ, Ltd. | Apparatus, method, and program for validating user |
WO2008004064A1 (en) * | 2006-06-30 | 2008-01-10 | Network Box Corporation Limited | Proxy server |
US8353048B1 (en) | 2006-07-31 | 2013-01-08 | Sprint Communications Company L.P. | Application digital rights management (DRM) and portability using a mobile device for authentication |
KR100991479B1 (ko) * | 2006-08-31 | 2010-11-04 | 후지쯔 가부시끼가이샤 | 컴퓨터 자원 검증 방법 및 컴퓨터 자원 검증 프로그램을 기록한 컴퓨터 판독 가능한 기록 매체 |
US8259568B2 (en) | 2006-10-23 | 2012-09-04 | Mcafee, Inc. | System and method for controlling mobile device access to a network |
WO2008086567A1 (en) * | 2007-01-18 | 2008-07-24 | Michael Joseph Knight | Interaction process |
CN101335746A (zh) * | 2007-06-29 | 2008-12-31 | 国际商业机器公司 | 保护软件系统的完整性的安全设备和方法及其系统 |
FR2926692B1 (fr) | 2008-01-23 | 2010-02-19 | Airbus France | Procedes et dispositifs pour ameliorer la fiabilite de communication entre un aeronef et un systeme distant |
US8156544B2 (en) * | 2008-08-20 | 2012-04-10 | Symbol Technologies, Inc. | System and method for a WPAN firewall |
EP2345205B1 (en) | 2008-11-06 | 2016-04-27 | McAfee, Inc. | Apparatus and method for mediating connections between policy source servers, corporate repositories, and mobile devices |
CN101447992B (zh) * | 2008-12-08 | 2011-04-06 | 西安西电捷通无线网络通信股份有限公司 | 一种基于三元对等鉴别的可信网络连接实现方法 |
US20110107410A1 (en) * | 2009-11-02 | 2011-05-05 | At&T Intellectual Property I,L.P. | Methods, systems, and computer program products for controlling server access using an authentication server |
US9479509B2 (en) * | 2009-11-06 | 2016-10-25 | Red Hat, Inc. | Unified system for authentication and authorization |
US20110154469A1 (en) * | 2009-12-17 | 2011-06-23 | At&T Intellectual Property Llp | Methods, systems, and computer program products for access control services using source port filtering |
US8590031B2 (en) * | 2009-12-17 | 2013-11-19 | At&T Intellectual Property I, L.P. | Methods, systems, and computer program products for access control services using a transparent firewall in conjunction with an authentication server |
US8935384B2 (en) | 2010-05-06 | 2015-01-13 | Mcafee Inc. | Distributed data revocation using data commands |
KR101453742B1 (ko) | 2010-05-14 | 2014-10-22 | 에스케이플래닛 주식회사 | 웹 어플리케이션 실행을 위한 보안 제공 장치 및 방법 |
US9111079B2 (en) * | 2010-09-30 | 2015-08-18 | Microsoft Technology Licensing, Llc | Trustworthy device claims as a service |
US9426041B2 (en) * | 2011-05-06 | 2016-08-23 | Skype | Communication system and method |
US8756651B2 (en) * | 2011-09-27 | 2014-06-17 | Amazon Technologies, Inc. | Policy compliance-based secure data access |
US9065856B2 (en) * | 2013-02-01 | 2015-06-23 | Vidder, Inc. | Securing communication over a network using client system authorization and dynamically assigned proxy servers |
US9729514B2 (en) * | 2013-03-22 | 2017-08-08 | Robert K Lemaster | Method and system of a secure access gateway |
US9535857B2 (en) | 2013-06-25 | 2017-01-03 | Airwatch Llc | Autonomous device interaction |
US8924608B2 (en) * | 2013-06-25 | 2014-12-30 | Airwatch Llc | Peripheral device management |
GB201413836D0 (en) | 2014-08-05 | 2014-09-17 | Arm Ip Ltd | Device security apparatus and methods |
CN105490930A (zh) * | 2014-09-17 | 2016-04-13 | 中兴通讯股份有限公司 | 传感器对码处理方法、装置、网络平台设备及物联网网关 |
GB2540965B (en) | 2015-07-31 | 2019-01-30 | Arm Ip Ltd | Secure configuration data storage |
GB2540961B (en) | 2015-07-31 | 2019-09-18 | Arm Ip Ltd | Controlling configuration data storage |
US9762563B2 (en) * | 2015-10-14 | 2017-09-12 | FullArmor Corporation | Resource access system and method |
US10452381B2 (en) * | 2017-04-04 | 2019-10-22 | OpenPath Security Inc. | Fragmented updating of a distributed device using multiple clients |
US10554480B2 (en) | 2017-05-11 | 2020-02-04 | Verizon Patent And Licensing Inc. | Systems and methods for maintaining communication links |
JP6387584B1 (ja) | 2017-12-21 | 2018-09-12 | ゼニット株式会社 | 機密データをインターネットに置かない安全なクラウド |
US11902327B2 (en) * | 2020-01-06 | 2024-02-13 | Microsoft Technology Licensing, Llc | Evaluating a result of enforcement of access control policies instead of enforcing the access control policies |
US11750635B2 (en) * | 2020-07-20 | 2023-09-05 | Google Llc | Minimizing production disruption through a scan rule engine |
US11916902B2 (en) * | 2021-02-25 | 2024-02-27 | Fortinet, Inc. | Systems and methods for using a network access device to secure a network prior to requesting access to the network by the network access device |
US12010517B1 (en) * | 2021-05-10 | 2024-06-11 | Zimperium, Inc. | Dynamic detection for mobile device security |
Family Cites Families (15)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US5559800A (en) | 1994-01-19 | 1996-09-24 | Research In Motion Limited | Remote control of gateway functions in a wireless data communication network |
DE69841918D1 (de) * | 1997-07-30 | 2010-11-11 | Visto Corp | System und verfahren zum globalen und sicheren zugriff auf vereinte information in einem rechnernetz |
US5983348A (en) | 1997-09-10 | 1999-11-09 | Trend Micro Incorporated | Computer network malicious code scanner |
US6119165A (en) | 1997-11-17 | 2000-09-12 | Trend Micro, Inc. | Controlled distribution of application programs in a computer network |
JP2000022754A (ja) | 1998-06-26 | 2000-01-21 | Nec Corp | ゲートウェイシステム |
US6550012B1 (en) | 1998-12-11 | 2003-04-15 | Network Associates, Inc. | Active firewall system and methodology |
KR100684986B1 (ko) * | 1999-12-31 | 2007-02-22 | 주식회사 잉카인터넷 | 온라인상에서의 실시간 유해 정보 차단 시스템 및 방법 |
US6728886B1 (en) * | 1999-12-01 | 2004-04-27 | Trend Micro Incorporated | Distributed virus scanning arrangements and methods therefor |
AU2001244362A1 (en) | 2000-04-10 | 2001-10-23 | British Telecommunications Public Limited Company | Provision of secure access for telecommunications system |
US7162649B1 (en) * | 2000-06-30 | 2007-01-09 | Internet Security Systems, Inc. | Method and apparatus for network assessment and authentication |
FI111424B (fi) | 2000-11-15 | 2003-07-15 | Smarttrust Systems Oy | Menetelmä rajapinnan muodostamiseksi |
JP2002366525A (ja) * | 2001-06-12 | 2002-12-20 | Needs Creator Kk | セキュリティポリシー維持システム |
US7058970B2 (en) * | 2002-02-27 | 2006-06-06 | Intel Corporation | On connect security scan and delivery by a network security authority |
ATE254773T1 (de) * | 2002-03-18 | 2003-12-15 | Ubs Ag | Sichere benutzerauthenifizierung über ein kommunikationsnetzwerk |
CN1160899C (zh) * | 2002-06-11 | 2004-08-04 | 华中科技大学 | 分布式网络动态安全保护系统 |
-
2003
- 2003-06-24 US US10/606,346 patent/US7591017B2/en active Active
-
2004
- 2004-06-23 CN CN200480017647XA patent/CN1833228B/zh not_active Expired - Fee Related
- 2004-06-23 JP JP2006515301A patent/JP2007520763A/ja active Pending
- 2004-06-23 WO PCT/IB2004/002090 patent/WO2004114048A2/en active Application Filing
- 2004-06-23 EP EP04737137A patent/EP1644832A4/en not_active Withdrawn
-
2010
- 2010-10-12 JP JP2010229481A patent/JP2011044167A/ja active Pending
Cited By (12)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN101562558B (zh) * | 2008-04-15 | 2012-04-18 | 华为技术有限公司 | 一种终端等级划分的方法、系统和设备 |
CN101989919A (zh) * | 2009-08-06 | 2011-03-23 | 中兴通讯股份有限公司 | 本地诊断和维护软件系统及相应的诊断、维护方法及系统 |
CN102147842A (zh) * | 2010-07-23 | 2011-08-10 | 卡巴斯基实验室封闭式股份公司 | 防御网络资源上的恶意软件 |
CN102147842B (zh) * | 2010-07-23 | 2014-12-10 | 卡巴斯基实验室封闭式股份公司 | 用于对网络资源进行预定恶意软件扫描的系统和方法 |
CN101968838A (zh) * | 2010-09-29 | 2011-02-09 | 北京握奇数据系统有限公司 | 一种浏览器及配置安全浏览器的方法 |
CN102882852A (zh) * | 2012-09-03 | 2013-01-16 | 北京神州绿盟信息安全科技股份有限公司 | 安全配置核查系统和方法 |
CN103870750A (zh) * | 2012-12-12 | 2014-06-18 | 腾讯科技(武汉)有限公司 | 一种在浏览器中实现设备安全扫描的方法及装置 |
WO2014090072A1 (en) * | 2012-12-12 | 2014-06-19 | Tencent Technology (Shenzhen) Company Limited | Method and apparatus enabling browsers to perform security scan of devices |
CN103870750B (zh) * | 2012-12-12 | 2018-06-08 | 腾讯科技(武汉)有限公司 | 一种在浏览器中实现设备安全扫描的方法及装置 |
US10205741B2 (en) | 2012-12-12 | 2019-02-12 | Tencent Technology (Shenzhen) Company Limited | Method and apparatus enabling browsers to perform security scan of devices |
CN106209748A (zh) * | 2015-05-08 | 2016-12-07 | 阿里巴巴集团控股有限公司 | 互联网接口的防护方法及装置 |
CN106209748B (zh) * | 2015-05-08 | 2019-10-01 | 阿里巴巴集团控股有限公司 | 互联网接口的防护方法及装置 |
Also Published As
Publication number | Publication date |
---|---|
EP1644832A4 (en) | 2012-01-25 |
EP1644832A2 (en) | 2006-04-12 |
US20040268145A1 (en) | 2004-12-30 |
WO2004114048A2 (en) | 2004-12-29 |
US7591017B2 (en) | 2009-09-15 |
WO2004114048A3 (en) | 2005-06-16 |
JP2007520763A (ja) | 2007-07-26 |
CN1833228B (zh) | 2012-05-02 |
JP2011044167A (ja) | 2011-03-03 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
CN1833228B (zh) | 用于实现远程客户端完整性验证的设备、系统、方法 | |
AU2002252371B2 (en) | Application layer security method and system | |
RU2446459C1 (ru) | Система и способ проверки веб-ресурсов на наличие вредоносных компонент | |
US7882555B2 (en) | Application layer security method and system | |
US7934101B2 (en) | Dynamically mitigating a noncompliant password | |
US9860274B2 (en) | Policy management | |
US8170352B2 (en) | String searching facility | |
AU2002252371A1 (en) | Application layer security method and system | |
JP4979683B2 (ja) | 分散型ディレクトリ中でのグループ・メンバーシップを伴うアクセス許可のための方法およびシステム | |
US8429721B1 (en) | Method and system for performing a security check | |
KR20070103502A (ko) | 통신 제어 장치 | |
CN1809060A (zh) | 通过隐私代理实现隐私通告、同意和首选项的方法和系统 | |
JP2009151751A (ja) | 承認済みファイルと信頼されたドメインのデータベースを作成及び更新する方法及びシステム | |
US20080256634A1 (en) | Target data detection in a streaming environment | |
US8042153B2 (en) | Reducing overhead associated with distributed password policy enforcement operations | |
US20080244711A1 (en) | System and Method for Specifying Access to Resources in a Mobile Code System | |
CN1822590A (zh) | 保护轻量级目录访问协议的通信 | |
EP2045997B1 (en) | Identity-based address normalization | |
CN1808992A (zh) | 安全管理服务系统及其执行方法 | |
CN116720166A (zh) | 用户管理方法、装置、终端设备及存储介质 |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
C06 | Publication | ||
PB01 | Publication | ||
C10 | Entry into substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
C14 | Grant of patent or utility model | ||
GR01 | Patent grant | ||
TR01 | Transfer of patent right | ||
TR01 | Transfer of patent right |
Effective date of registration: 20140217 Address after: Espoo, Finland Patentee after: NOKIA Corp. Address before: Texas, USA Patentee before: NOKIA Corp. |
|
C41 | Transfer of patent application or patent right or utility model | ||
TR01 | Transfer of patent right |
Effective date of registration: 20160118 Address after: Espoo, Finland Patentee after: NOKIA TECHNOLOGIES OY Address before: Espoo, Finland Patentee before: NOKIA Corp. |
|
CF01 | Termination of patent right due to non-payment of annual fee | ||
CF01 | Termination of patent right due to non-payment of annual fee |
Granted publication date: 20120502 |