FI105739B - Nätanslutbar anordning samt förfarande för dess installation och konfigurering - Google Patents
Nätanslutbar anordning samt förfarande för dess installation och konfigurering Download PDFInfo
- Publication number
- FI105739B FI105739B FI981324A FI981324A FI105739B FI 105739 B FI105739 B FI 105739B FI 981324 A FI981324 A FI 981324A FI 981324 A FI981324 A FI 981324A FI 105739 B FI105739 B FI 105739B
- Authority
- FI
- Finland
- Prior art keywords
- network
- network device
- configuration
- identifier
- packet
- Prior art date
Links
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/04—Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks
- H04L63/0428—Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Computer Hardware Design (AREA)
- Computing Systems (AREA)
- General Engineering & Computer Science (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Data Exchanges In Wide-Area Networks (AREA)
Claims (11)
1. Förfarande för att konfigurera en nätapparat (500, 700) ansluten tili ett nät (502), tili vilket även anslutits en driftstation (507), kännetecknat av att det omfat-tarstegen 25. att frän driftstationen sända ett konfigureringspaket tili en nätapparat (601), - att vid nätapparaten autentisera driftstationen säsom en äkta sändare av konfigure- „ ringspaketet (602), och __ - att dekoda konfigureringsparametrama vilka nämnda konfigureringspaket innehäl- . lit, och att lagra dem säsom konfigureringsparametrar för nätapparaten (603). 30
2. Förfarande enligt patentkrav 1, kännetecknat av att bade driftstationen och nätapparaten har var sin individuella apparatidentifierare (508) för autentisering, och att varje apparatidentifierare har härletts ur en viss krypteringsnyckel. 105739
3. Förfarande enligt patentkrav 2, kännetecknat av att varje apparatidentifierare härletts ur ett visst publikt Diffie-Hellman -värde.
4. Förfarande enligt patentkrav 2, kännetecknat av att det omfattar stegen - att vid diiftstationen i konfigureringspaketet ta med krypteringsnyckeln frän vilken 5 driftstationens apparatidentifierare har bildats, - att vid nätapparaten pä basen av krypteringsnyckeln som extraherats ur det mottagna konfigureringspaketet kalkylera en apparatidentifierare, och - att verifiera att nämnda kalkylerade apparatidentifierare är en giltig identifierare för driftstationen. 10
5. Förfarande enligt patentkrav 4, kännetecknat av att det omfattar steget att vid nätapparaten använda information som utlästs ur ett minne för att verifiera att det mottagna paketet kom frän driftstationen.
6. Förfarande enligt patentkrav 4, kännetecknat av att det omfattar steget att genom användarens växelverkan verifiera att det kalkylerade apparatidentifieraren 15 motsvarar en känd apparatidentifierare för driftstationen.
7. Förfarande enligt patentkrav 4, kännetecknat av att det omfattar steget att ur kryptografiska nycklar härleda en gemensam hemlighet för autentisering och valfri kryptering av efterföljande paket.
8. En nätapparat (500, 700) att anslutas tili ett nät (502) som kräver att vissa 20 konfigureringsparametrar lagras i varje nätapparat som anslutits tili nätet, varvid nätapparaten omfattar v - en fysisk nätanslutning (501, 701) och - ett observationsblock (702) för apparatidentifierare för att läsa apparatidentifierare ur mottagna paket och känna igen paket som avsetts för nätapparaten själv, 25 kännetecknad av att den omfattar ett kalkyleringsblock (705) anordnad - att kalkylera apparatidentifierare ur kryptografiska nycklar som extraherats ur . igenkända paket, och - att jämföra de kalkylerade identifierama med informations som används för att verifiera kända apparatidentifierare för autentisering av sändande parter.
9. En nätapparat enligt patentkrav 8, kännetecknad av att den omfattar ett minne (706) som motstär manipulering för att lagra nämnda lokalt tillhandahällna kända apparatidentifierare. 105739
10. En nätapparat enligt patentkrav 8, kännetecknad av att den omfattar organ (707, 708) för autentisering med användarhjälp av sändande parter pä basen av kalkylerade apparatidentifierare.
11. En nätapparat enligt patentkrav 8, kännetecknad av att den omfattar organ 5 (707, 708) för att ur de kryptografiska nycklama härleda en gemensam hemlighet för autentisering och valfri kryptering av efterföljande paket. * J
Priority Applications (3)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
FI981324A FI105739B (sv) | 1998-06-10 | 1998-06-10 | Nätanslutbar anordning samt förfarande för dess installation och konfigurering |
US09/326,003 US6782474B1 (en) | 1998-06-10 | 1999-06-04 | Network connectable device and method for its installation and configuration |
US10/846,614 US20040250072A1 (en) | 1998-06-10 | 2004-05-14 | Network connectable device and method for its installation and configuration |
Applications Claiming Priority (2)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
FI981324 | 1998-06-10 | ||
FI981324A FI105739B (sv) | 1998-06-10 | 1998-06-10 | Nätanslutbar anordning samt förfarande för dess installation och konfigurering |
Publications (3)
Publication Number | Publication Date |
---|---|
FI981324A0 FI981324A0 (sv) | 1998-06-10 |
FI981324A FI981324A (sv) | 1999-12-11 |
FI105739B true FI105739B (sv) | 2000-09-29 |
Family
ID=8551948
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
FI981324A FI105739B (sv) | 1998-06-10 | 1998-06-10 | Nätanslutbar anordning samt förfarande för dess installation och konfigurering |
Country Status (2)
Country | Link |
---|---|
US (2) | US6782474B1 (sv) |
FI (1) | FI105739B (sv) |
Cited By (1)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN100481763C (zh) * | 2002-05-09 | 2009-04-22 | 佳能株式会社 | 匿名公钥生成装置及方法以及公钥证明书发行方法 |
Families Citing this family (79)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CA2402389A1 (en) * | 2000-03-08 | 2002-09-19 | Shuffle Master, Inc. | Computerized gaming system, method and apparatus |
US20010037314A1 (en) * | 2000-03-30 | 2001-11-01 | Ishikawa Mark M. | System, method and apparatus for authenticating the distribution of data |
US6996238B2 (en) * | 2000-10-02 | 2006-02-07 | Sony Corporation | Method for generating and looking-up transaction keys in communication networks |
JP3879388B2 (ja) * | 2000-11-17 | 2007-02-14 | 富士ゼロックス株式会社 | ネットワーク機器管理方法、そのシステム及び管理装置 |
JP4609683B2 (ja) * | 2000-11-30 | 2011-01-12 | ソニー株式会社 | 情報処理装置および方法、並びにプログラム格納媒体 |
US6978301B2 (en) | 2000-12-06 | 2005-12-20 | Intelliden | System and method for configuring a network device |
US8219662B2 (en) | 2000-12-06 | 2012-07-10 | International Business Machines Corporation | Redirecting data generated by network devices |
US7054946B2 (en) * | 2000-12-06 | 2006-05-30 | Intelliden | Dynamic configuration of network devices to enable data transfers |
EP1342343B1 (de) * | 2000-12-23 | 2006-11-08 | Hirschmann Electronics GmbH & Co. KG | Automatische konfiguration von komponenten eines netzwerkes |
US7349957B1 (en) * | 2001-03-01 | 2008-03-25 | Smith Micro Software, Inc. | Network management method and tool |
US7150037B2 (en) * | 2001-03-21 | 2006-12-12 | Intelliden, Inc. | Network configuration manager |
US20020178241A1 (en) * | 2001-04-03 | 2002-11-28 | Par Eriksson | Framework for a dynamic management system |
US7203837B2 (en) * | 2001-04-12 | 2007-04-10 | Microsoft Corporation | Methods and systems for unilateral authentication of messages |
US7089297B1 (en) * | 2001-05-25 | 2006-08-08 | Oracle International Corporation | Mechanism for automatically configuring a network resource |
CN1146270C (zh) * | 2001-06-27 | 2004-04-14 | 华为技术有限公司 | 一种装置自动获取ip地址的方法 |
US20030018758A1 (en) * | 2001-07-13 | 2003-01-23 | Changguan Fan | Generically provisioning an appliance |
US7240102B1 (en) * | 2001-08-03 | 2007-07-03 | Mcafee, Inc. | System and method for providing web browser-based secure remote network appliance configuration in a distributed computing environment |
US8296400B2 (en) | 2001-08-29 | 2012-10-23 | International Business Machines Corporation | System and method for generating a configuration schema |
US7155497B2 (en) * | 2001-09-27 | 2006-12-26 | Hewlett-Packard Development Company, L.P. | Configuring a network parameter to a device |
US20030069949A1 (en) * | 2001-10-04 | 2003-04-10 | Chan Michele W. | Managing distributed network infrastructure services |
US20030074547A1 (en) * | 2001-10-11 | 2003-04-17 | Haines Robert E. | Hardcopy output engine consumable supply management and method |
US20030074268A1 (en) | 2001-10-11 | 2003-04-17 | Haines Robert E. | User and device interactions for web consolidation |
US20030072027A1 (en) * | 2001-10-11 | 2003-04-17 | Haines Robert E. | Unique identifier for customer account and method |
US20030074428A1 (en) * | 2001-10-11 | 2003-04-17 | Haines Robert E. | Device configuration method and apparatus |
US7065562B2 (en) * | 2001-11-26 | 2006-06-20 | Intelliden, Inc. | System and method for generating a representation of a configuration schema |
US20030163570A1 (en) * | 2002-02-26 | 2003-08-28 | Sun Microsystems, Inc. | Command line interface session tool |
US20030212889A1 (en) * | 2002-05-13 | 2003-11-13 | Khieu Andrew K. | Method and system for exchanging data over networks using public key encryption |
US7853983B2 (en) * | 2002-07-29 | 2010-12-14 | Bea Systems, Inc. | Communicating data from a data producer to a data receiver |
US7783043B1 (en) * | 2002-08-05 | 2010-08-24 | Nortel Networks Limited | Secure group communications |
US7366893B2 (en) * | 2002-08-07 | 2008-04-29 | Intelliden, Inc. | Method and apparatus for protecting a network from attack |
US20040030771A1 (en) * | 2002-08-07 | 2004-02-12 | John Strassner | System and method for enabling directory-enabled networking |
US20040028069A1 (en) * | 2002-08-07 | 2004-02-12 | Tindal Glen D. | Event bus with passive queuing and active routing |
US20040054747A1 (en) * | 2002-09-12 | 2004-03-18 | International Business Machines Corporation | Pervasive home network appliance |
JP4185346B2 (ja) * | 2002-10-18 | 2008-11-26 | 株式会社日立製作所 | ストレージ装置及びその構成設定方法 |
US20040078457A1 (en) * | 2002-10-21 | 2004-04-22 | Tindal Glen D. | System and method for managing network-device configurations |
US7284126B2 (en) * | 2002-11-12 | 2007-10-16 | Agilent Technologies, Inc. | Device authentication using pre-configured security keys |
US20040230681A1 (en) * | 2002-12-06 | 2004-11-18 | John Strassner | Apparatus and method for implementing network resources to provision a service using an information model |
US7188161B1 (en) | 2003-02-11 | 2007-03-06 | At&T Corp. | Method for configuring a network element at a customer premise via a mobile data terminal |
US7865577B1 (en) | 2003-02-11 | 2011-01-04 | At&T Intellectual Property Ii, L.P. | Enhanced network elements and a method for configuring the enhanced network element via a trusted configuration device |
US8245032B2 (en) * | 2003-03-27 | 2012-08-14 | Avaya Inc. | Method to authenticate packet payloads |
US20050096795A1 (en) * | 2003-11-04 | 2005-05-05 | Krieter Kenneth J. | Wireless fluid inventory management system |
US7653727B2 (en) * | 2004-03-24 | 2010-01-26 | Intel Corporation | Cooperative embedded agents |
US20050213768A1 (en) * | 2004-03-24 | 2005-09-29 | Durham David M | Shared cryptographic key in networks with an embedded agent |
US8082444B1 (en) * | 2004-03-25 | 2011-12-20 | Verizon Corporate Services Group Inc. | System and method for adding new network devices to an existing network |
US7472177B2 (en) * | 2004-06-23 | 2008-12-30 | Nokia Inc. | System and method for selecting of versions for SNMP communication |
DE102004037801B4 (de) * | 2004-08-03 | 2007-07-26 | Siemens Ag | Verfahren zur sicheren Datenübertragung |
JP2006050267A (ja) * | 2004-08-04 | 2006-02-16 | Matsushita Electric Ind Co Ltd | IPsec通信方法及び通信制御装置並びにネットワークカメラ |
US7664109B2 (en) * | 2004-09-03 | 2010-02-16 | Microsoft Corporation | System and method for distributed streaming of scalable media |
US7509324B2 (en) * | 2004-09-07 | 2009-03-24 | General Electric Company | Apparatus and method for sharing configuration data among a plurality of devices |
US8156207B2 (en) * | 2004-10-08 | 2012-04-10 | Hewlett-Packard Development Company, L.P. | Method and apparatus for remotely configuring network devices |
WO2006071741A2 (en) | 2004-12-23 | 2006-07-06 | Conexant Systems, Inc. | Systems and methods for the connection and remote configuration of wireless clients |
US20060150240A1 (en) * | 2005-01-03 | 2006-07-06 | Jason Robinson | Application-specific network access management system |
US8291063B2 (en) * | 2005-03-04 | 2012-10-16 | Netapp, Inc. | Method and apparatus for communicating between an agent and a remote management module in a processing system |
US8090810B1 (en) * | 2005-03-04 | 2012-01-03 | Netapp, Inc. | Configuring a remote management module in a processing system |
US7853703B1 (en) * | 2005-03-24 | 2010-12-14 | Google, Inc. | Methods and apparatuses for identification of device presence |
US20070033404A1 (en) * | 2005-08-04 | 2007-02-08 | Toshiba Corporation | System and method for the secure recognition of a network device |
US20070039039A1 (en) | 2005-08-10 | 2007-02-15 | Microsoft Corporation | Authorization of device access to network services |
US7958346B2 (en) * | 2005-08-18 | 2011-06-07 | Oracle International Corp. | Multilayered security for systems interacting with configuration items |
US7747566B2 (en) * | 2005-11-23 | 2010-06-29 | Research In Motion Limited | Method and apparatus for synchronizing databases connected by wireless interface |
JP4655951B2 (ja) * | 2006-02-06 | 2011-03-23 | ソニー株式会社 | 情報処理装置、情報記録媒体製造装置、情報記録媒体、および方法、並びにコンピュータ・プログラム |
KR100963196B1 (ko) * | 2006-03-14 | 2010-06-14 | 한국과학기술연구원 | 다중 사용자의 컴퓨팅 환경 자동 인지 및 최적의 정보 교환설정을 위한 지능적인 컴퓨팅 장치 에이전트 시스템 |
US20070234050A1 (en) * | 2006-04-04 | 2007-10-04 | Tomasz Hillar | Communications system and method |
US8964952B2 (en) * | 2006-09-01 | 2015-02-24 | Interactive Intelligence Group, Inc. | System and method for self-configuring sip-capable device |
WO2009112966A2 (en) * | 2008-03-10 | 2009-09-17 | Nds Limited | Key distribution system |
US8711771B2 (en) * | 2009-03-03 | 2014-04-29 | Qualcomm Incorporated | Scalable header extension |
US8838586B2 (en) * | 2010-03-05 | 2014-09-16 | Apple Inc. | Relevancy ranking for map-related search |
JP5311236B2 (ja) * | 2011-03-29 | 2013-10-09 | 横河電機株式会社 | 接続設定情報管理システム |
US8799989B1 (en) * | 2011-12-16 | 2014-08-05 | Google Inc. | Network settings browser synchronization |
US9130837B2 (en) | 2012-05-22 | 2015-09-08 | Cisco Technology, Inc. | System and method for enabling unconfigured devices to join an autonomic network in a secure manner |
US9154308B2 (en) * | 2013-09-27 | 2015-10-06 | Google Inc. | Revocable platform identifiers |
EP2950285B1 (en) | 2014-05-26 | 2016-10-05 | Axis AB | Automatic configuration of a replacement camera |
US10367811B2 (en) | 2017-10-06 | 2019-07-30 | Stealthpath, Inc. | Methods for internet communication security |
US10361859B2 (en) | 2017-10-06 | 2019-07-23 | Stealthpath, Inc. | Methods for internet communication security |
US10374803B2 (en) | 2017-10-06 | 2019-08-06 | Stealthpath, Inc. | Methods for internet communication security |
US10630642B2 (en) | 2017-10-06 | 2020-04-21 | Stealthpath, Inc. | Methods for internet communication security |
US10397186B2 (en) | 2017-10-06 | 2019-08-27 | Stealthpath, Inc. | Methods for internet communication security |
US10375019B2 (en) | 2017-10-06 | 2019-08-06 | Stealthpath, Inc. | Methods for internet communication security |
CN110276191A (zh) * | 2019-05-06 | 2019-09-24 | 阿里巴巴集团控股有限公司 | 一种设备配置方法、装置及电子设备 |
US11558423B2 (en) | 2019-09-27 | 2023-01-17 | Stealthpath, Inc. | Methods for zero trust security with high quality of service |
Family Cites Families (6)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US6424717B1 (en) * | 1995-04-03 | 2002-07-23 | Scientific-Atlanta, Inc. | Encryption devices for use in a conditional access system |
JP3688830B2 (ja) * | 1995-11-30 | 2005-08-31 | 株式会社東芝 | パケット転送方法及びパケット処理装置 |
DE69635264T2 (de) * | 1995-12-08 | 2006-07-20 | Nippon Telegraph And Telephone Corp. | Verfahren und Vorrichtung zur Kommunikation mit Paketverschlüsselung |
JP2001508627A (ja) * | 1997-01-03 | 2001-06-26 | フォートレス テクノロジーズ インコーポレイテッド | 改良されたネットワークセキュリティ装置 |
US6101255A (en) * | 1997-04-30 | 2000-08-08 | Motorola, Inc. | Programmable cryptographic processing system and method |
US6154839A (en) * | 1998-04-23 | 2000-11-28 | Vpnet Technologies, Inc. | Translating packet addresses based upon a user identifier |
-
1998
- 1998-06-10 FI FI981324A patent/FI105739B/sv not_active IP Right Cessation
-
1999
- 1999-06-04 US US09/326,003 patent/US6782474B1/en not_active Expired - Lifetime
-
2004
- 2004-05-14 US US10/846,614 patent/US20040250072A1/en not_active Abandoned
Cited By (1)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN100481763C (zh) * | 2002-05-09 | 2009-04-22 | 佳能株式会社 | 匿名公钥生成装置及方法以及公钥证明书发行方法 |
Also Published As
Publication number | Publication date |
---|---|
US20040250072A1 (en) | 2004-12-09 |
US6782474B1 (en) | 2004-08-24 |
FI981324A (sv) | 1999-12-11 |
FI981324A0 (sv) | 1998-06-10 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
FI105739B (sv) | Nätanslutbar anordning samt förfarande för dess installation och konfigurering | |
Tschofenig et al. | Transport layer security (tls)/datagram transport layer security (dtls) profiles for the internet of things | |
EP1036460B1 (en) | A method for packet authentication in the presence of network address translations and protocol conversions | |
CN103188351B (zh) | IPv6环境下IPSec VPN通信业务处理方法与系统 | |
CN103975552B (zh) | 经由经认证的路由器的数据交换 | |
US7171685B2 (en) | Standard format specification for automatically configuring IP security tunnels | |
US8379638B2 (en) | Security encapsulation of ethernet frames | |
US8098823B2 (en) | Multi-key cryptographically generated address | |
EP2043296A1 (en) | Relay device | |
JP2004295891A (ja) | パケットペイロードを認証する方法 | |
JPH09214556A (ja) | パケット転送方法、パケット処理装置、パケット暗号化方法、パケット復号化方法及びパケット暗号処理方法 | |
EP1639780B1 (en) | Security for protocol traversal | |
CN113904809B (zh) | 一种通信方法、装置、电子设备及存储介质 | |
US7243368B2 (en) | Access control system and method for a networked computer system | |
Fossati | RFC 7925: Transport Layer Security (TLS)/Datagram Transport Layer Security (DTLS) Profiles for the Internet of Things | |
US20040243837A1 (en) | Process and communication equipment for encrypting e-mail traffic between mail domains of the internet | |
US20080104693A1 (en) | Transporting keys between security protocols | |
CN113810173A (zh) | 一种校验应用信息的方法、报文处理方法及装置 | |
CN101115055B (zh) | 通信网络中报告隧道数据包中各级错误的装置及方法 | |
Cisco | Introduction to Cisco IPsec Technology | |
Cisco | Introduction to Cisco IPsec Technology | |
AU2010245117A1 (en) | Method and apparatus for secure packet transmission | |
RU2517405C2 (ru) | Способ обеспечения сопоставлений безопасности для зашифрованных пакетных данных | |
KR100450774B1 (ko) | NAT 기능을 갖는 사설망에서 IPSec을 이용한종단과 종단 간의 private 정보 전송 방법 및 이를이용한 보안 서비스 방법 | |
CN116074038B (zh) | 一种用于IPv6数据安全传输的网关系统及方法 |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
MM | Patent lapsed |