CN1833228B - 用于实现远程客户端完整性验证的设备、系统、方法 - Google Patents
用于实现远程客户端完整性验证的设备、系统、方法 Download PDFInfo
- Publication number
- CN1833228B CN1833228B CN200480017647XA CN200480017647A CN1833228B CN 1833228 B CN1833228 B CN 1833228B CN 200480017647X A CN200480017647X A CN 200480017647XA CN 200480017647 A CN200480017647 A CN 200480017647A CN 1833228 B CN1833228 B CN 1833228B
- Authority
- CN
- China
- Prior art keywords
- equipment
- network
- network equipment
- remote network
- gateway
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Expired - Fee Related
Links
Images
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/14—Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
- H04L63/1433—Vulnerability analysis
-
- G—PHYSICS
- G06—COMPUTING; CALCULATING OR COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/50—Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
- G06F21/57—Certifying or maintaining trusted computer platforms, e.g. secure boots or power-downs, version controls, system software checks, secure updates or assessing vulnerabilities
-
- G—PHYSICS
- G06—COMPUTING; CALCULATING OR COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/50—Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
- G06F21/57—Certifying or maintaining trusted computer platforms, e.g. secure boots or power-downs, version controls, system software checks, secure updates or assessing vulnerabilities
- G06F21/577—Assessing vulnerabilities and evaluating computer system security
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/10—Network architectures or network communication protocols for network security for controlling access to devices or network resources
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/16—Implementing security features at a particular protocol layer
- H04L63/166—Implementing security features at a particular protocol layer at the transport layer
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Computer Hardware Design (AREA)
- General Engineering & Computer Science (AREA)
- Software Systems (AREA)
- Theoretical Computer Science (AREA)
- General Physics & Mathematics (AREA)
- Physics & Mathematics (AREA)
- Computing Systems (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Data Exchanges In Wide-Area Networks (AREA)
- Computer And Data Communications (AREA)
Abstract
Description
Claims (49)
Applications Claiming Priority (3)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
US10/606,346 | 2003-06-24 | ||
US10/606,346 US7591017B2 (en) | 2003-06-24 | 2003-06-24 | Apparatus, and method for implementing remote client integrity verification |
PCT/IB2004/002090 WO2004114048A2 (en) | 2003-06-24 | 2004-06-23 | An apparatus, system, method and computer program product for implementing remote client integrity verification |
Publications (2)
Publication Number | Publication Date |
---|---|
CN1833228A CN1833228A (zh) | 2006-09-13 |
CN1833228B true CN1833228B (zh) | 2012-05-02 |
Family
ID=33540039
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN200480017647XA Expired - Fee Related CN1833228B (zh) | 2003-06-24 | 2004-06-23 | 用于实现远程客户端完整性验证的设备、系统、方法 |
Country Status (5)
Country | Link |
---|---|
US (1) | US7591017B2 (zh) |
EP (1) | EP1644832A4 (zh) |
JP (2) | JP2007520763A (zh) |
CN (1) | CN1833228B (zh) |
WO (1) | WO2004114048A2 (zh) |
Families Citing this family (58)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
WO2004021114A2 (en) | 2002-08-27 | 2004-03-11 | Td Security, Inc., Dba Trust Digital, Llc | Enterprise-wide security system for computer devices |
FR2849311B1 (fr) * | 2002-12-18 | 2005-04-15 | France Telecom | Procede de communication entre deux unites, et terminal mettant en oeuvre le procede |
US20050097199A1 (en) | 2003-10-10 | 2005-05-05 | Keith Woodard | Method and system for scanning network devices |
US7752320B2 (en) * | 2003-11-25 | 2010-07-06 | Avaya Inc. | Method and apparatus for content based authentication for network access |
EP2733656A1 (en) * | 2003-12-23 | 2014-05-21 | Trust Digital, LLC | System and method for enforcing a security policy on mobile devices using dynamically generated security profiles |
US8154987B2 (en) * | 2004-06-09 | 2012-04-10 | Intel Corporation | Self-isolating and self-healing networked devices |
US8353028B2 (en) | 2004-06-21 | 2013-01-08 | Ebay Inc. | Render engine, and method of using the same, to verify data for access and/or publication via a computer system |
US7526810B2 (en) * | 2004-06-21 | 2009-04-28 | Ebay Inc. | Method and system to verify data received, at a server system, for access and/or publication via the server system |
US7971245B2 (en) * | 2004-06-21 | 2011-06-28 | Ebay Inc. | Method and system to detect externally-referenced malicious data for access and/or publication via a computer system |
CN1703004B (zh) * | 2005-02-28 | 2010-08-25 | 联想(北京)有限公司 | 一种实现网络接入认证的方法 |
WO2006093917A2 (en) | 2005-02-28 | 2006-09-08 | Trust Digital | Mobile data security system and methods |
US10764264B2 (en) * | 2005-07-11 | 2020-09-01 | Avaya Inc. | Technique for authenticating network users |
US7603708B2 (en) * | 2005-07-13 | 2009-10-13 | Microsoft Corporation | Securing network services using network action control lists |
US8434147B2 (en) * | 2005-11-07 | 2013-04-30 | International Business Machines Corporation | Method, system and program product for remotely verifying integrity of a system |
WO2007103818A2 (en) * | 2006-03-02 | 2007-09-13 | Vxv Solutions, Inc. | Methods and apparatus for implementing secure and adaptive proxies |
EP2506184A1 (en) * | 2006-03-29 | 2012-10-03 | The Bank of Tokyo-Mitsubishi UFJ, Ltd. | Apparatus, method, and program for validating user |
WO2008004064A1 (en) * | 2006-06-30 | 2008-01-10 | Network Box Corporation Limited | Proxy server |
US8353048B1 (en) | 2006-07-31 | 2013-01-08 | Sprint Communications Company L.P. | Application digital rights management (DRM) and portability using a mobile device for authentication |
KR100991479B1 (ko) * | 2006-08-31 | 2010-11-04 | 후지쯔 가부시끼가이샤 | 컴퓨터 자원 검증 방법 및 컴퓨터 자원 검증 프로그램을 기록한 컴퓨터 판독 가능한 기록 매체 |
US8259568B2 (en) | 2006-10-23 | 2012-09-04 | Mcafee, Inc. | System and method for controlling mobile device access to a network |
WO2008086567A1 (en) * | 2007-01-18 | 2008-07-24 | Michael Joseph Knight | Interaction process |
CN101335746A (zh) * | 2007-06-29 | 2008-12-31 | 国际商业机器公司 | 保护软件系统的完整性的安全设备和方法及其系统 |
FR2926692B1 (fr) | 2008-01-23 | 2010-02-19 | Airbus France | Procedes et dispositifs pour ameliorer la fiabilite de communication entre un aeronef et un systeme distant |
CN101562558B (zh) * | 2008-04-15 | 2012-04-18 | 华为技术有限公司 | 一种终端等级划分的方法、系统和设备 |
US8156544B2 (en) * | 2008-08-20 | 2012-04-10 | Symbol Technologies, Inc. | System and method for a WPAN firewall |
EP2345205B1 (en) | 2008-11-06 | 2016-04-27 | McAfee, Inc. | Apparatus and method for mediating connections between policy source servers, corporate repositories, and mobile devices |
CN101447992B (zh) * | 2008-12-08 | 2011-04-06 | 西安西电捷通无线网络通信股份有限公司 | 一种基于三元对等鉴别的可信网络连接实现方法 |
CN101989919A (zh) * | 2009-08-06 | 2011-03-23 | 中兴通讯股份有限公司 | 本地诊断和维护软件系统及相应的诊断、维护方法及系统 |
US20110107410A1 (en) * | 2009-11-02 | 2011-05-05 | At&T Intellectual Property I,L.P. | Methods, systems, and computer program products for controlling server access using an authentication server |
US9479509B2 (en) * | 2009-11-06 | 2016-10-25 | Red Hat, Inc. | Unified system for authentication and authorization |
US20110154469A1 (en) * | 2009-12-17 | 2011-06-23 | At&T Intellectual Property Llp | Methods, systems, and computer program products for access control services using source port filtering |
US8590031B2 (en) * | 2009-12-17 | 2013-11-19 | At&T Intellectual Property I, L.P. | Methods, systems, and computer program products for access control services using a transparent firewall in conjunction with an authentication server |
US8935384B2 (en) | 2010-05-06 | 2015-01-13 | Mcafee Inc. | Distributed data revocation using data commands |
KR101453742B1 (ko) | 2010-05-14 | 2014-10-22 | 에스케이플래닛 주식회사 | 웹 어플리케이션 실행을 위한 보안 제공 장치 및 방법 |
RU2446459C1 (ru) * | 2010-07-23 | 2012-03-27 | Закрытое акционерное общество "Лаборатория Касперского" | Система и способ проверки веб-ресурсов на наличие вредоносных компонент |
CN101968838A (zh) * | 2010-09-29 | 2011-02-09 | 北京握奇数据系统有限公司 | 一种浏览器及配置安全浏览器的方法 |
US9111079B2 (en) * | 2010-09-30 | 2015-08-18 | Microsoft Technology Licensing, Llc | Trustworthy device claims as a service |
US9426041B2 (en) * | 2011-05-06 | 2016-08-23 | Skype | Communication system and method |
US8756651B2 (en) * | 2011-09-27 | 2014-06-17 | Amazon Technologies, Inc. | Policy compliance-based secure data access |
CN102882852A (zh) * | 2012-09-03 | 2013-01-16 | 北京神州绿盟信息安全科技股份有限公司 | 安全配置核查系统和方法 |
CN103870750B (zh) | 2012-12-12 | 2018-06-08 | 腾讯科技(武汉)有限公司 | 一种在浏览器中实现设备安全扫描的方法及装置 |
US9065856B2 (en) * | 2013-02-01 | 2015-06-23 | Vidder, Inc. | Securing communication over a network using client system authorization and dynamically assigned proxy servers |
US9729514B2 (en) * | 2013-03-22 | 2017-08-08 | Robert K Lemaster | Method and system of a secure access gateway |
US9535857B2 (en) | 2013-06-25 | 2017-01-03 | Airwatch Llc | Autonomous device interaction |
US8924608B2 (en) * | 2013-06-25 | 2014-12-30 | Airwatch Llc | Peripheral device management |
GB201413836D0 (en) | 2014-08-05 | 2014-09-17 | Arm Ip Ltd | Device security apparatus and methods |
CN105490930A (zh) * | 2014-09-17 | 2016-04-13 | 中兴通讯股份有限公司 | 传感器对码处理方法、装置、网络平台设备及物联网网关 |
CN106209748B (zh) * | 2015-05-08 | 2019-10-01 | 阿里巴巴集团控股有限公司 | 互联网接口的防护方法及装置 |
GB2540965B (en) | 2015-07-31 | 2019-01-30 | Arm Ip Ltd | Secure configuration data storage |
GB2540961B (en) | 2015-07-31 | 2019-09-18 | Arm Ip Ltd | Controlling configuration data storage |
US9762563B2 (en) * | 2015-10-14 | 2017-09-12 | FullArmor Corporation | Resource access system and method |
US10452381B2 (en) * | 2017-04-04 | 2019-10-22 | OpenPath Security Inc. | Fragmented updating of a distributed device using multiple clients |
US10554480B2 (en) | 2017-05-11 | 2020-02-04 | Verizon Patent And Licensing Inc. | Systems and methods for maintaining communication links |
JP6387584B1 (ja) | 2017-12-21 | 2018-09-12 | ゼニット株式会社 | 機密データをインターネットに置かない安全なクラウド |
US11902327B2 (en) * | 2020-01-06 | 2024-02-13 | Microsoft Technology Licensing, Llc | Evaluating a result of enforcement of access control policies instead of enforcing the access control policies |
US11750635B2 (en) * | 2020-07-20 | 2023-09-05 | Google Llc | Minimizing production disruption through a scan rule engine |
US11916902B2 (en) * | 2021-02-25 | 2024-02-27 | Fortinet, Inc. | Systems and methods for using a network access device to secure a network prior to requesting access to the network by the network access device |
US12010517B1 (en) * | 2021-05-10 | 2024-06-11 | Zimperium, Inc. | Dynamic detection for mobile device security |
Citations (6)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US5559800A (en) * | 1994-01-19 | 1996-09-24 | Research In Motion Limited | Remote control of gateway functions in a wireless data communication network |
US6119165A (en) * | 1997-11-17 | 2000-09-12 | Trend Micro, Inc. | Controlled distribution of application programs in a computer network |
CN1269032A (zh) * | 1997-07-30 | 2000-10-04 | 维斯托公司 | 全局地和安全地访问计算机网络中统一信息的系统和方法 |
WO2001078351A2 (en) * | 2000-04-10 | 2001-10-18 | British Telecommunications Public Limited Company | Provision of secure access for telecommunications system |
CN1384639A (zh) * | 2002-06-11 | 2002-12-11 | 华中科技大学 | 分布式网络动态安全保护系统 |
US6550012B1 (en) * | 1998-12-11 | 2003-04-15 | Network Associates, Inc. | Active firewall system and methodology |
Family Cites Families (9)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US5983348A (en) | 1997-09-10 | 1999-11-09 | Trend Micro Incorporated | Computer network malicious code scanner |
JP2000022754A (ja) | 1998-06-26 | 2000-01-21 | Nec Corp | ゲートウェイシステム |
KR100684986B1 (ko) * | 1999-12-31 | 2007-02-22 | 주식회사 잉카인터넷 | 온라인상에서의 실시간 유해 정보 차단 시스템 및 방법 |
US6728886B1 (en) * | 1999-12-01 | 2004-04-27 | Trend Micro Incorporated | Distributed virus scanning arrangements and methods therefor |
US7162649B1 (en) * | 2000-06-30 | 2007-01-09 | Internet Security Systems, Inc. | Method and apparatus for network assessment and authentication |
FI111424B (fi) | 2000-11-15 | 2003-07-15 | Smarttrust Systems Oy | Menetelmä rajapinnan muodostamiseksi |
JP2002366525A (ja) * | 2001-06-12 | 2002-12-20 | Needs Creator Kk | セキュリティポリシー維持システム |
US7058970B2 (en) * | 2002-02-27 | 2006-06-06 | Intel Corporation | On connect security scan and delivery by a network security authority |
ATE254773T1 (de) * | 2002-03-18 | 2003-12-15 | Ubs Ag | Sichere benutzerauthenifizierung über ein kommunikationsnetzwerk |
-
2003
- 2003-06-24 US US10/606,346 patent/US7591017B2/en active Active
-
2004
- 2004-06-23 CN CN200480017647XA patent/CN1833228B/zh not_active Expired - Fee Related
- 2004-06-23 JP JP2006515301A patent/JP2007520763A/ja active Pending
- 2004-06-23 WO PCT/IB2004/002090 patent/WO2004114048A2/en active Application Filing
- 2004-06-23 EP EP04737137A patent/EP1644832A4/en not_active Withdrawn
-
2010
- 2010-10-12 JP JP2010229481A patent/JP2011044167A/ja active Pending
Patent Citations (6)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US5559800A (en) * | 1994-01-19 | 1996-09-24 | Research In Motion Limited | Remote control of gateway functions in a wireless data communication network |
CN1269032A (zh) * | 1997-07-30 | 2000-10-04 | 维斯托公司 | 全局地和安全地访问计算机网络中统一信息的系统和方法 |
US6119165A (en) * | 1997-11-17 | 2000-09-12 | Trend Micro, Inc. | Controlled distribution of application programs in a computer network |
US6550012B1 (en) * | 1998-12-11 | 2003-04-15 | Network Associates, Inc. | Active firewall system and methodology |
WO2001078351A2 (en) * | 2000-04-10 | 2001-10-18 | British Telecommunications Public Limited Company | Provision of secure access for telecommunications system |
CN1384639A (zh) * | 2002-06-11 | 2002-12-11 | 华中科技大学 | 分布式网络动态安全保护系统 |
Non-Patent Citations (1)
Title |
---|
全文. |
Also Published As
Publication number | Publication date |
---|---|
EP1644832A4 (en) | 2012-01-25 |
EP1644832A2 (en) | 2006-04-12 |
US20040268145A1 (en) | 2004-12-30 |
WO2004114048A2 (en) | 2004-12-29 |
CN1833228A (zh) | 2006-09-13 |
US7591017B2 (en) | 2009-09-15 |
WO2004114048A3 (en) | 2005-06-16 |
JP2007520763A (ja) | 2007-07-26 |
JP2011044167A (ja) | 2011-03-03 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
CN1833228B (zh) | 用于实现远程客户端完整性验证的设备、系统、方法 | |
US10313350B2 (en) | Remote access to resources over a network | |
RU2446459C1 (ru) | Система и способ проверки веб-ресурсов на наличие вредоносных компонент | |
US7532882B2 (en) | Method and system for automatically configuring access control | |
AU2002252371B2 (en) | Application layer security method and system | |
US7454508B2 (en) | Consent mechanism for online entities | |
US7827590B2 (en) | Controlling access to a set of resources in a network | |
US8255973B2 (en) | Provisioning remote computers for accessing resources | |
US7428746B2 (en) | System and method for secure network connectivity | |
US7882555B2 (en) | Application layer security method and system | |
CN100437530C (zh) | 安全访问带有客户端接收的专用网的方法 | |
US7934101B2 (en) | Dynamically mitigating a noncompliant password | |
AU2002252371A1 (en) | Application layer security method and system | |
MXPA03005450A (es) | Personalizacion y notificacion de controles paternales. | |
US8429721B1 (en) | Method and system for performing a security check | |
CA2498317C (en) | Method and system for automatically configuring access control | |
CN116720166A (zh) | 用户管理方法、装置、终端设备及存储介质 |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
C06 | Publication | ||
PB01 | Publication | ||
C10 | Entry into substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
C14 | Grant of patent or utility model | ||
GR01 | Patent grant | ||
TR01 | Transfer of patent right |
Effective date of registration: 20140217 Address after: Espoo, Finland Patentee after: NOKIA Corp. Address before: Texas, USA Patentee before: NOKIA Corp. |
|
TR01 | Transfer of patent right | ||
C41 | Transfer of patent application or patent right or utility model | ||
TR01 | Transfer of patent right |
Effective date of registration: 20160118 Address after: Espoo, Finland Patentee after: NOKIA TECHNOLOGIES OY Address before: Espoo, Finland Patentee before: NOKIA Corp. |
|
CF01 | Termination of patent right due to non-payment of annual fee |
Granted publication date: 20120502 |
|
CF01 | Termination of patent right due to non-payment of annual fee |