JP5723105B2 - インターフェースアクセス制御に階層型セキュリティを提供する方法および装置 - Google Patents

インターフェースアクセス制御に階層型セキュリティを提供する方法および装置 Download PDF

Info

Publication number
JP5723105B2
JP5723105B2 JP2010092131A JP2010092131A JP5723105B2 JP 5723105 B2 JP5723105 B2 JP 5723105B2 JP 2010092131 A JP2010092131 A JP 2010092131A JP 2010092131 A JP2010092131 A JP 2010092131A JP 5723105 B2 JP5723105 B2 JP 5723105B2
Authority
JP
Japan
Prior art keywords
endpoint
client application
resource
server
access
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
JP2010092131A
Other languages
English (en)
Japanese (ja)
Other versions
JP2010250825A (ja
JP2010250825A5 (OSRAM
Inventor
アレン ニーツェル リー
アレン ニーツェル リー
ハルバー アッシング ダン
ハルバー アッシング ダン
ケント フーバ ロバート
ケント フーバ ロバート
Original Assignee
フィッシャー−ローズマウント システムズ,インコーポレイテッド
フィッシャー−ローズマウント システムズ,インコーポレイテッド
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by フィッシャー−ローズマウント システムズ,インコーポレイテッド, フィッシャー−ローズマウント システムズ,インコーポレイテッド filed Critical フィッシャー−ローズマウント システムズ,インコーポレイテッド
Publication of JP2010250825A publication Critical patent/JP2010250825A/ja
Publication of JP2010250825A5 publication Critical patent/JP2010250825A5/ja
Application granted granted Critical
Publication of JP5723105B2 publication Critical patent/JP5723105B2/ja
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/10Network architectures or network communication protocols for network security for controlling access to devices or network resources
    • H04L63/105Multiple levels of security
    • GPHYSICS
    • G05CONTROLLING; REGULATING
    • G05BCONTROL OR REGULATING SYSTEMS IN GENERAL; FUNCTIONAL ELEMENTS OF SUCH SYSTEMS; MONITORING OR TESTING ARRANGEMENTS FOR SUCH SYSTEMS OR ELEMENTS
    • G05B19/00Programme-control systems
    • G05B19/02Programme-control systems electric
    • G05B19/418Total factory control, i.e. centrally controlling a plurality of machines, e.g. direct or distributed numerical control [DNC], flexible manufacturing systems [FMS], integrated manufacturing systems [IMS] or computer integrated manufacturing [CIM]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L41/00Arrangements for maintenance, administration or management of data switching networks, e.g. of packet switching networks
    • H04L41/28Restricting access to network management systems or functions, e.g. using authorisation function to access network configuration
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/10Network architectures or network communication protocols for network security for controlling access to devices or network resources

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • General Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Hardware Design (AREA)
  • Computing Systems (AREA)
  • Quality & Reliability (AREA)
  • Manufacturing & Machinery (AREA)
  • Physics & Mathematics (AREA)
  • General Physics & Mathematics (AREA)
  • Automation & Control Theory (AREA)
  • Computer And Data Communications (AREA)
  • Storage Device Security (AREA)
  • Small-Scale Networks (AREA)
  • Mobile Radio Communication Systems (AREA)
JP2010092131A 2009-04-14 2010-04-13 インターフェースアクセス制御に階層型セキュリティを提供する方法および装置 Active JP5723105B2 (ja)

Applications Claiming Priority (4)

Application Number Priority Date Filing Date Title
US16919909P 2009-04-14 2009-04-14
US61/169,199 2009-04-14
US12/637,439 2009-12-14
US12/637,439 US8887242B2 (en) 2009-04-14 2009-12-14 Methods and apparatus to provide layered security for interface access control

Related Child Applications (1)

Application Number Title Priority Date Filing Date
JP2014242890A Division JP5938088B2 (ja) 2009-04-14 2014-12-01 インターフェースアクセス制御に階層型セキュリティを提供する方法および装置

Publications (3)

Publication Number Publication Date
JP2010250825A JP2010250825A (ja) 2010-11-04
JP2010250825A5 JP2010250825A5 (OSRAM) 2013-05-23
JP5723105B2 true JP5723105B2 (ja) 2015-05-27

Family

ID=42235968

Family Applications (2)

Application Number Title Priority Date Filing Date
JP2010092131A Active JP5723105B2 (ja) 2009-04-14 2010-04-13 インターフェースアクセス制御に階層型セキュリティを提供する方法および装置
JP2014242890A Active JP5938088B2 (ja) 2009-04-14 2014-12-01 インターフェースアクセス制御に階層型セキュリティを提供する方法および装置

Family Applications After (1)

Application Number Title Priority Date Filing Date
JP2014242890A Active JP5938088B2 (ja) 2009-04-14 2014-12-01 インターフェースアクセス制御に階層型セキュリティを提供する方法および装置

Country Status (5)

Country Link
US (1) US8887242B2 (OSRAM)
EP (1) EP2242230B1 (OSRAM)
JP (2) JP5723105B2 (OSRAM)
CN (2) CN101867566B (OSRAM)
GB (1) GB2469557B (OSRAM)

Families Citing this family (49)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US9871767B2 (en) * 2005-07-18 2018-01-16 Mutualink, Inc. Enabling ad hoc trusted connections among enclaved communication communities
US9654200B2 (en) 2005-07-18 2017-05-16 Mutualink, Inc. System and method for dynamic wireless aerial mesh network
US8887242B2 (en) 2009-04-14 2014-11-11 Fisher-Rosemount Systems, Inc. Methods and apparatus to provide layered security for interface access control
US9122764B2 (en) 2010-03-24 2015-09-01 Fisher-Rosemount Systems, Inc. Methods and apparatus to access process data stored on a server
US20110239109A1 (en) * 2010-03-24 2011-09-29 Mark Nixon Methods and apparatus to display process data
US9130853B2 (en) 2011-05-31 2015-09-08 General Electric Company Systems and methods for identifying foundation fieldbus linking devices
US8762528B2 (en) * 2011-05-31 2014-06-24 General Electric Company Systems and methods for write protecting foundation fieldbus linking devices
US8769072B2 (en) 2011-05-31 2014-07-01 General Electric Company Systems and methods for identifying foundation fieldbus linking devices
US8868732B2 (en) 2011-05-31 2014-10-21 General Electric Company Systems and methods for facilitating communication with foundation fieldbus linking devices
US8713166B2 (en) 2011-05-31 2014-04-29 General Electric Company Systems and methods for facilitating communication with foundation fieldbus linking devices
US8949350B2 (en) * 2011-08-26 2015-02-03 International Business Machines Corporation Tracking desktop application referrals to content distributed over a network
JP5687239B2 (ja) * 2012-05-15 2015-03-18 株式会社オプティム オペレータ認証機能を備えたオペレータ認証サーバ、オペレータシステム、オペレータ認証方法、及び、プログラム
US9613330B2 (en) * 2012-09-26 2017-04-04 EMC IP Holding Company LLC Identity and access management
US10649449B2 (en) 2013-03-04 2020-05-12 Fisher-Rosemount Systems, Inc. Distributed industrial performance monitoring and analytics
US10909137B2 (en) 2014-10-06 2021-02-02 Fisher-Rosemount Systems, Inc. Streaming data for analytics in process control systems
US9397836B2 (en) * 2014-08-11 2016-07-19 Fisher-Rosemount Systems, Inc. Securing devices to process control systems
US9665088B2 (en) 2014-01-31 2017-05-30 Fisher-Rosemount Systems, Inc. Managing big data in process control systems
US10866952B2 (en) 2013-03-04 2020-12-15 Fisher-Rosemount Systems, Inc. Source-independent queries in distributed industrial system
US10649424B2 (en) 2013-03-04 2020-05-12 Fisher-Rosemount Systems, Inc. Distributed industrial performance monitoring and analytics
US10678225B2 (en) 2013-03-04 2020-06-09 Fisher-Rosemount Systems, Inc. Data analytic services for distributed industrial performance monitoring
US9558220B2 (en) 2013-03-04 2017-01-31 Fisher-Rosemount Systems, Inc. Big data in process control systems
US10282676B2 (en) 2014-10-06 2019-05-07 Fisher-Rosemount Systems, Inc. Automatic signal processing-based learning in a process plant
US10223327B2 (en) 2013-03-14 2019-03-05 Fisher-Rosemount Systems, Inc. Collecting and delivering data to a big data machine in a process control system
US10386827B2 (en) 2013-03-04 2019-08-20 Fisher-Rosemount Systems, Inc. Distributed industrial performance monitoring and analytics platform
US10671028B2 (en) 2013-03-15 2020-06-02 Fisher-Rosemount Systems, Inc. Method and apparatus for managing a work flow in a process plant
JP6595980B2 (ja) 2013-03-15 2019-10-23 フィッシャー−ローズマウント システムズ,インコーポレイテッド コンピュータシステム、及びコンピュータで実装される方法
GB2513706B (en) * 2013-03-15 2020-09-23 Fisher Rosemount Systems Inc Method for initiating or resuming a mobile control session in a process plant
GB2513707B (en) * 2013-03-15 2020-07-22 Fisher Rosemount Systems Inc Method for initiating or resuming a mobile control session in a process plant
US10599860B2 (en) * 2014-05-22 2020-03-24 Tata Consultancy Services Limited Accessing enterprise data
US10168691B2 (en) 2014-10-06 2019-01-01 Fisher-Rosemount Systems, Inc. Data pipeline for process control system analytics
WO2016077713A1 (en) 2014-11-14 2016-05-19 Convida Wireless, Llc Permission based resource and service discovery
EP3320661B1 (en) * 2015-07-09 2022-05-25 Siemens Aktiengesellschaft Automation system with self-defending smart field devices
WO2017078723A1 (en) * 2015-11-05 2017-05-11 Hewlett-Packard Development Company, L.P. Local compute resources and access terms
US10503483B2 (en) 2016-02-12 2019-12-10 Fisher-Rosemount Systems, Inc. Rule builder in a process control network
US10540193B2 (en) * 2017-05-09 2020-01-21 Intel Corporation Software-defined microservices
CN110022310B (zh) * 2019-03-15 2021-09-14 北京星网锐捷网络技术有限公司 基于云计算开放网络操作系统的授权方法及装置
CN110827003B (zh) * 2019-11-11 2022-03-29 北京网聘咨询有限公司 基于虚拟化技术的服务器与招聘客户端的整合方法
US11601289B2 (en) * 2020-01-07 2023-03-07 Microsoft Technology Licensing, Llc Securely rotating a server certificate
CN111371803B (zh) * 2020-03-16 2021-04-09 苏州宏云智能科技有限公司 智能家居权限控制方法、装置、智能家居系统及服务器
US12314037B2 (en) 2021-06-16 2025-05-27 Fisher-Rosemount Systems, Inc Systems and methods for associating modules in a software defined control system for industrial process plants
US12321154B2 (en) 2021-06-16 2025-06-03 Fisher-Rosemount Systems, Inc. Systems and methods for associating modules in a software defined control system for industrial process plants
US12417120B2 (en) 2021-06-16 2025-09-16 Fisher-Rosemount Systems, Inc. Systems and methods for dynamically maintained redundancy and load balancing in software defined control systems for industrial process plants
US12242245B2 (en) 2021-06-16 2025-03-04 Fisher-Rosemount Systems, Inc. Discovery service in a software defined control system
US12449789B2 (en) 2021-06-16 2025-10-21 Fisher-Rosemount Systems, Inc. Security services in a software defined control system
US12210329B2 (en) 2021-06-16 2025-01-28 Fisher-Rosemount Systems, Inc. Systems and methods for dynamically maintained redundancy and load balancing in software defined control systems for industrial process plants
CN114726572A (zh) * 2022-02-28 2022-07-08 南京第壹时间信息科技有限公司 互联网设备的访问方法及系统
US12476973B2 (en) 2022-07-18 2025-11-18 Fisher-Rosemount Systems, Inc. Authentication/authorization framework for a process control or automation system
US20240028014A1 (en) 2022-07-18 2024-01-25 Fisher-Rosemount Systems, Inc. Field Device Digital Twins in Process Control and Automation Systems
CN120642298A (zh) * 2022-10-20 2025-09-12 费舍-柔斯芒特系统股份有限公司 用于过程控制或自动化系统的认证/授权框架

Family Cites Families (32)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US5764915A (en) 1996-03-08 1998-06-09 International Business Machines Corporation Object-oriented communication interface for network protocol access using the selected newly created protocol interface object and newly created protocol layer objects in the protocol stack
US5978850A (en) 1997-07-02 1999-11-02 National Instruments Corporation System and method for accessing parameters in a fieldbus network using a tag parameters interface
US6715082B1 (en) 1999-01-14 2004-03-30 Cisco Technology, Inc. Security server token caching
US7035850B2 (en) * 2000-03-22 2006-04-25 Hitachi, Ltd. Access control system
US6850979B1 (en) 2000-05-09 2005-02-01 Sun Microsystems, Inc. Message gates in a distributed computing environment
US7725558B2 (en) * 2000-07-26 2010-05-25 David Dickenson Distributive access controller
US6986040B1 (en) 2000-11-03 2006-01-10 Citrix Systems, Inc. System and method of exploiting the security of a secure communication channel to secure a non-secure communication channel
US8073967B2 (en) * 2002-04-15 2011-12-06 Fisher-Rosemount Systems, Inc. Web services-based communications for use with process control systems
JP2002366415A (ja) 2001-06-06 2002-12-20 Nippon Telegr & Teleph Corp <Ntt> リダイレクトシステムおよびリダイレクト装置
JP2003023676A (ja) 2001-07-10 2003-01-24 Hitachi Ltd 遠隔操作システム
US20030061515A1 (en) 2001-09-27 2003-03-27 Timothy Kindberg Capability-enabled uniform resource locator for secure web exporting and method of using same
JP2003140704A (ja) 2001-11-06 2003-05-16 Yamatake Sangyo Systems Co Ltd プロセス制御装置
JP4040886B2 (ja) * 2002-02-15 2008-01-30 三菱電機株式会社 コンテンツ管理システムおよびコンテンツ管理方法
JP3751584B2 (ja) * 2002-08-05 2006-03-01 株式会社デジタル 制御用表示装置、および、そのプログラムが記録された記録媒体、並びに、制御システム
JP2004127172A (ja) 2002-10-07 2004-04-22 Matsushita Electric Ind Co Ltd コンテンツ閲覧制限装置、コンテンツ閲覧制限方法およびコンテンツ閲覧制限プログラム
US7143288B2 (en) * 2002-10-16 2006-11-28 Vormetric, Inc. Secure file system server architecture and methods
US7237109B2 (en) 2003-01-28 2007-06-26 Fisher- Rosemount Systems, Inc. Integrated security in a process plant having a process control system and a safety system
US7502323B2 (en) * 2003-05-28 2009-03-10 Schneider Electric Industries Sas Access control system for automation equipment
US20050160161A1 (en) 2003-12-29 2005-07-21 Nokia, Inc. System and method for managing a proxy request over a secure network using inherited security attributes
JP2007536634A (ja) * 2004-05-04 2007-12-13 フィッシャー−ローズマウント・システムズ・インコーポレーテッド プロセス制御システムのためのサービス指向型アーキテクチャ
ATE398305T1 (de) * 2005-04-22 2008-07-15 Trumpf Laser Gmbh & Co Kg Vorrichtung für sicheren fernzugriff
US9871767B2 (en) * 2005-07-18 2018-01-16 Mutualink, Inc. Enabling ad hoc trusted connections among enclaved communication communities
US20070143827A1 (en) 2005-12-21 2007-06-21 Fiberlink Methods and systems for intelligently controlling access to computing resources
US8380979B2 (en) * 2005-12-22 2013-02-19 At&T Intellectual Property I, L.P. Methods, systems, and computer program products for invoking trust-controlled services via application programming interfaces (APIs) respectively associated therewith
US20070219908A1 (en) * 2006-03-02 2007-09-20 Yahoo! Inc. Providing syndicated media to authorized users
JP2007323340A (ja) 2006-05-31 2007-12-13 Toshiba Corp アカウントリンクシステム,アカウントリンク用コンピュータ,およびアカウントリンク方法
US8290949B2 (en) * 2006-07-24 2012-10-16 International Business Machines Corporation Resource name reconciliation in a configuration database
JP4935274B2 (ja) 2006-09-27 2012-05-23 大日本印刷株式会社 サーバ及びプログラム
US7950045B2 (en) * 2006-12-13 2011-05-24 Cellco Partnership Techniques for managing security in next generation communication networks
US8141143B2 (en) 2007-05-31 2012-03-20 Imera Systems, Inc. Method and system for providing remote access to resources in a secure data center over a network
US7996896B2 (en) * 2007-10-19 2011-08-09 Trend Micro Incorporated System for regulating host security configuration
US8887242B2 (en) 2009-04-14 2014-11-11 Fisher-Rosemount Systems, Inc. Methods and apparatus to provide layered security for interface access control

Also Published As

Publication number Publication date
EP2242230B1 (en) 2017-02-22
CN101867566A (zh) 2010-10-20
JP2010250825A (ja) 2010-11-04
GB2469557A (en) 2010-10-20
GB2469557B (en) 2014-10-01
EP2242230A2 (en) 2010-10-20
US20100263025A1 (en) 2010-10-14
EP2242230A3 (en) 2012-03-07
CN106161438B (zh) 2019-07-12
US8887242B2 (en) 2014-11-11
JP5938088B2 (ja) 2016-06-22
CN101867566B (zh) 2016-08-03
GB201005809D0 (en) 2010-05-26
JP2015097091A (ja) 2015-05-21
CN106161438A (zh) 2016-11-23

Similar Documents

Publication Publication Date Title
JP5938088B2 (ja) インターフェースアクセス制御に階層型セキュリティを提供する方法および装置
JP7011709B2 (ja) 単一の産業ネットワーク上の多テナント・データアクセスを可能にすること
US9639678B2 (en) Identity risk score generation and implementation
JP6431037B2 (ja) ネットワーク接続時に安全なアプリケーションを識別するためのシステム及び方法
US12413557B2 (en) Trusted execution environment for service mesh
US20090193503A1 (en) Network access control
KR20200098561A (ko) 연결된 엔드포인트 장치의 가입 및 등록을 위한 장치 식별 시스템 및 방법, 그리고 블록 체인 서비스
US20150046971A1 (en) Method and system for access control in cloud computing service
US20080127322A1 (en) Solicited remote control in an interactive management system
US20210099414A1 (en) In-line detection of algorithmically generated domains
US9075996B2 (en) Evaluating a security stack in response to a request to access a service
US12500880B2 (en) System for controlling network access and method thereof
KR102741305B1 (ko) 공유 폴더의 파일 암복호화 권한 제어 시스템 및 방법
US20250028845A1 (en) Secret Replacement for Web Browsers
US20250211582A1 (en) Method for carrying out an authorization process for a client application
WO2025152315A1 (zh) 一种权限管理的方法、装置、设备和存储介质
Dodson Capability-based access control for cyber physical systems
KR20200094522A (ko) 블록체인 기술을 이용한 국군 여가문화 컨텐츠 전용 보안 시스템 및 그 구동방법
US20120324569A1 (en) Rule compilation in a firewall
Huang et al. Agentic AI Identity Security
US20250267132A1 (en) Data security measures for cybersecurity threats
US20250279193A1 (en) Treatment devices with anti-tampering, security, and transparency features
Aggarwal et al. Security approaches for mobile multi-agent system
CN116566742A (zh) 一种数据中心的安全访问控制方法及系统
CN115408097A (zh) Docker容器管控方法及系统

Legal Events

Date Code Title Description
A521 Request for written amendment filed

Free format text: JAPANESE INTERMEDIATE CODE: A523

Effective date: 20130405

A621 Written request for application examination

Free format text: JAPANESE INTERMEDIATE CODE: A621

Effective date: 20130405

A977 Report on retrieval

Free format text: JAPANESE INTERMEDIATE CODE: A971007

Effective date: 20140213

A131 Notification of reasons for refusal

Free format text: JAPANESE INTERMEDIATE CODE: A131

Effective date: 20140401

A521 Request for written amendment filed

Free format text: JAPANESE INTERMEDIATE CODE: A523

Effective date: 20140623

A02 Decision of refusal

Free format text: JAPANESE INTERMEDIATE CODE: A02

Effective date: 20140729

A521 Request for written amendment filed

Free format text: JAPANESE INTERMEDIATE CODE: A523

Effective date: 20141201

A911 Transfer to examiner for re-examination before appeal (zenchi)

Free format text: JAPANESE INTERMEDIATE CODE: A911

Effective date: 20141208

TRDD Decision of grant or rejection written
A01 Written decision to grant a patent or to grant a registration (utility model)

Free format text: JAPANESE INTERMEDIATE CODE: A01

Effective date: 20150303

A61 First payment of annual fees (during grant procedure)

Free format text: JAPANESE INTERMEDIATE CODE: A61

Effective date: 20150327

R150 Certificate of patent or registration of utility model

Ref document number: 5723105

Country of ref document: JP

Free format text: JAPANESE INTERMEDIATE CODE: R150

R250 Receipt of annual fees

Free format text: JAPANESE INTERMEDIATE CODE: R250

R250 Receipt of annual fees

Free format text: JAPANESE INTERMEDIATE CODE: R250

R250 Receipt of annual fees

Free format text: JAPANESE INTERMEDIATE CODE: R250

R250 Receipt of annual fees

Free format text: JAPANESE INTERMEDIATE CODE: R250

R250 Receipt of annual fees

Free format text: JAPANESE INTERMEDIATE CODE: R250

R250 Receipt of annual fees

Free format text: JAPANESE INTERMEDIATE CODE: R250

R250 Receipt of annual fees

Free format text: JAPANESE INTERMEDIATE CODE: R250

R250 Receipt of annual fees

Free format text: JAPANESE INTERMEDIATE CODE: R250