JP5723105B2 - インターフェースアクセス制御に階層型セキュリティを提供する方法および装置 - Google Patents

インターフェースアクセス制御に階層型セキュリティを提供する方法および装置 Download PDF

Info

Publication number
JP5723105B2
JP5723105B2 JP2010092131A JP2010092131A JP5723105B2 JP 5723105 B2 JP5723105 B2 JP 5723105B2 JP 2010092131 A JP2010092131 A JP 2010092131A JP 2010092131 A JP2010092131 A JP 2010092131A JP 5723105 B2 JP5723105 B2 JP 5723105B2
Authority
JP
Japan
Prior art keywords
endpoint
client application
resource
server
access
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
JP2010092131A
Other languages
English (en)
Japanese (ja)
Other versions
JP2010250825A5 (enExample
JP2010250825A (ja
Inventor
アレン ニーツェル リー
アレン ニーツェル リー
ハルバー アッシング ダン
ハルバー アッシング ダン
ケント フーバ ロバート
ケント フーバ ロバート
Original Assignee
フィッシャー−ローズマウント システムズ,インコーポレイテッド
フィッシャー−ローズマウント システムズ,インコーポレイテッド
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by フィッシャー−ローズマウント システムズ,インコーポレイテッド, フィッシャー−ローズマウント システムズ,インコーポレイテッド filed Critical フィッシャー−ローズマウント システムズ,インコーポレイテッド
Publication of JP2010250825A publication Critical patent/JP2010250825A/ja
Publication of JP2010250825A5 publication Critical patent/JP2010250825A5/ja
Application granted granted Critical
Publication of JP5723105B2 publication Critical patent/JP5723105B2/ja
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/10Network architectures or network communication protocols for network security for controlling access to devices or network resources
    • H04L63/105Multiple levels of security
    • GPHYSICS
    • G05CONTROLLING; REGULATING
    • G05BCONTROL OR REGULATING SYSTEMS IN GENERAL; FUNCTIONAL ELEMENTS OF SUCH SYSTEMS; MONITORING OR TESTING ARRANGEMENTS FOR SUCH SYSTEMS OR ELEMENTS
    • G05B19/00Programme-control systems
    • G05B19/02Programme-control systems electric
    • G05B19/418Total factory control, i.e. centrally controlling a plurality of machines, e.g. direct or distributed numerical control [DNC], flexible manufacturing systems [FMS], integrated manufacturing systems [IMS] or computer integrated manufacturing [CIM]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L41/00Arrangements for maintenance, administration or management of data switching networks, e.g. of packet switching networks
    • H04L41/28Restricting access to network management systems or functions, e.g. using authorisation function to access network configuration
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/10Network architectures or network communication protocols for network security for controlling access to devices or network resources

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • General Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Hardware Design (AREA)
  • Computing Systems (AREA)
  • Quality & Reliability (AREA)
  • Manufacturing & Machinery (AREA)
  • Physics & Mathematics (AREA)
  • General Physics & Mathematics (AREA)
  • Automation & Control Theory (AREA)
  • Computer And Data Communications (AREA)
  • Small-Scale Networks (AREA)
  • Storage Device Security (AREA)
  • Mobile Radio Communication Systems (AREA)
JP2010092131A 2009-04-14 2010-04-13 インターフェースアクセス制御に階層型セキュリティを提供する方法および装置 Active JP5723105B2 (ja)

Applications Claiming Priority (4)

Application Number Priority Date Filing Date Title
US16919909P 2009-04-14 2009-04-14
US61/169,199 2009-04-14
US12/637,439 2009-12-14
US12/637,439 US8887242B2 (en) 2009-04-14 2009-12-14 Methods and apparatus to provide layered security for interface access control

Related Child Applications (1)

Application Number Title Priority Date Filing Date
JP2014242890A Division JP5938088B2 (ja) 2009-04-14 2014-12-01 インターフェースアクセス制御に階層型セキュリティを提供する方法および装置

Publications (3)

Publication Number Publication Date
JP2010250825A JP2010250825A (ja) 2010-11-04
JP2010250825A5 JP2010250825A5 (enExample) 2013-05-23
JP5723105B2 true JP5723105B2 (ja) 2015-05-27

Family

ID=42235968

Family Applications (2)

Application Number Title Priority Date Filing Date
JP2010092131A Active JP5723105B2 (ja) 2009-04-14 2010-04-13 インターフェースアクセス制御に階層型セキュリティを提供する方法および装置
JP2014242890A Active JP5938088B2 (ja) 2009-04-14 2014-12-01 インターフェースアクセス制御に階層型セキュリティを提供する方法および装置

Family Applications After (1)

Application Number Title Priority Date Filing Date
JP2014242890A Active JP5938088B2 (ja) 2009-04-14 2014-12-01 インターフェースアクセス制御に階層型セキュリティを提供する方法および装置

Country Status (5)

Country Link
US (1) US8887242B2 (enExample)
EP (1) EP2242230B1 (enExample)
JP (2) JP5723105B2 (enExample)
CN (2) CN106161438B (enExample)
GB (1) GB2469557B (enExample)

Families Citing this family (49)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US9654200B2 (en) 2005-07-18 2017-05-16 Mutualink, Inc. System and method for dynamic wireless aerial mesh network
US9871767B2 (en) * 2005-07-18 2018-01-16 Mutualink, Inc. Enabling ad hoc trusted connections among enclaved communication communities
US8887242B2 (en) 2009-04-14 2014-11-11 Fisher-Rosemount Systems, Inc. Methods and apparatus to provide layered security for interface access control
US20110239109A1 (en) * 2010-03-24 2011-09-29 Mark Nixon Methods and apparatus to display process data
US9122764B2 (en) 2010-03-24 2015-09-01 Fisher-Rosemount Systems, Inc. Methods and apparatus to access process data stored on a server
US8868732B2 (en) 2011-05-31 2014-10-21 General Electric Company Systems and methods for facilitating communication with foundation fieldbus linking devices
US9130853B2 (en) 2011-05-31 2015-09-08 General Electric Company Systems and methods for identifying foundation fieldbus linking devices
US8713166B2 (en) 2011-05-31 2014-04-29 General Electric Company Systems and methods for facilitating communication with foundation fieldbus linking devices
US8769072B2 (en) 2011-05-31 2014-07-01 General Electric Company Systems and methods for identifying foundation fieldbus linking devices
US8762528B2 (en) * 2011-05-31 2014-06-24 General Electric Company Systems and methods for write protecting foundation fieldbus linking devices
US8949350B2 (en) * 2011-08-26 2015-02-03 International Business Machines Corporation Tracking desktop application referrals to content distributed over a network
JP5687239B2 (ja) * 2012-05-15 2015-03-18 株式会社オプティム オペレータ認証機能を備えたオペレータ認証サーバ、オペレータシステム、オペレータ認証方法、及び、プログラム
US9613330B2 (en) * 2012-09-26 2017-04-04 EMC IP Holding Company LLC Identity and access management
US10649424B2 (en) 2013-03-04 2020-05-12 Fisher-Rosemount Systems, Inc. Distributed industrial performance monitoring and analytics
US10649449B2 (en) 2013-03-04 2020-05-12 Fisher-Rosemount Systems, Inc. Distributed industrial performance monitoring and analytics
US10223327B2 (en) 2013-03-14 2019-03-05 Fisher-Rosemount Systems, Inc. Collecting and delivering data to a big data machine in a process control system
US10909137B2 (en) 2014-10-06 2021-02-02 Fisher-Rosemount Systems, Inc. Streaming data for analytics in process control systems
US10866952B2 (en) 2013-03-04 2020-12-15 Fisher-Rosemount Systems, Inc. Source-independent queries in distributed industrial system
US9558220B2 (en) 2013-03-04 2017-01-31 Fisher-Rosemount Systems, Inc. Big data in process control systems
US10386827B2 (en) 2013-03-04 2019-08-20 Fisher-Rosemount Systems, Inc. Distributed industrial performance monitoring and analytics platform
US9665088B2 (en) 2014-01-31 2017-05-30 Fisher-Rosemount Systems, Inc. Managing big data in process control systems
US10678225B2 (en) 2013-03-04 2020-06-09 Fisher-Rosemount Systems, Inc. Data analytic services for distributed industrial performance monitoring
US9397836B2 (en) * 2014-08-11 2016-07-19 Fisher-Rosemount Systems, Inc. Securing devices to process control systems
US10282676B2 (en) 2014-10-06 2019-05-07 Fisher-Rosemount Systems, Inc. Automatic signal processing-based learning in a process plant
GB2513706B (en) * 2013-03-15 2020-09-23 Fisher Rosemount Systems Inc Method for initiating or resuming a mobile control session in a process plant
CN107885494B (zh) 2013-03-15 2021-09-10 费希尔-罗斯蒙特系统公司 用于分析过程控制数据的方法和计算机系统
GB2513707B (en) * 2013-03-15 2020-07-22 Fisher Rosemount Systems Inc Method for initiating or resuming a mobile control session in a process plant
US10031490B2 (en) 2013-03-15 2018-07-24 Fisher-Rosemount Systems, Inc. Mobile analysis of physical phenomena in a process plant
US10599860B2 (en) * 2014-05-22 2020-03-24 Tata Consultancy Services Limited Accessing enterprise data
US10168691B2 (en) 2014-10-06 2019-01-01 Fisher-Rosemount Systems, Inc. Data pipeline for process control system analytics
EP3761593B1 (en) * 2014-11-14 2023-02-01 Convida Wireless, LLC Permission based resource and service discovery
US10715532B2 (en) * 2015-07-09 2020-07-14 Siemens Aktiengesellschaft Self-defending smart field device and architecture
EP3338408B1 (en) * 2015-11-05 2022-08-17 Hewlett-Packard Development Company, L.P. Local compute resources and access terms
US10503483B2 (en) 2016-02-12 2019-12-10 Fisher-Rosemount Systems, Inc. Rule builder in a process control network
US10540193B2 (en) * 2017-05-09 2020-01-21 Intel Corporation Software-defined microservices
CN110022310B (zh) * 2019-03-15 2021-09-14 北京星网锐捷网络技术有限公司 基于云计算开放网络操作系统的授权方法及装置
CN110827003B (zh) * 2019-11-11 2022-03-29 北京网聘咨询有限公司 基于虚拟化技术的服务器与招聘客户端的整合方法
US11601289B2 (en) * 2020-01-07 2023-03-07 Microsoft Technology Licensing, Llc Securely rotating a server certificate
CN111371803B (zh) * 2020-03-16 2021-04-09 苏州宏云智能科技有限公司 智能家居权限控制方法、装置、智能家居系统及服务器
US12417120B2 (en) 2021-06-16 2025-09-16 Fisher-Rosemount Systems, Inc. Systems and methods for dynamically maintained redundancy and load balancing in software defined control systems for industrial process plants
US12242245B2 (en) 2021-06-16 2025-03-04 Fisher-Rosemount Systems, Inc. Discovery service in a software defined control system
US12314037B2 (en) 2021-06-16 2025-05-27 Fisher-Rosemount Systems, Inc Systems and methods for associating modules in a software defined control system for industrial process plants
US12321154B2 (en) 2021-06-16 2025-06-03 Fisher-Rosemount Systems, Inc. Systems and methods for associating modules in a software defined control system for industrial process plants
US12449789B2 (en) 2021-06-16 2025-10-21 Fisher-Rosemount Systems, Inc. Security services in a software defined control system
US12210329B2 (en) 2021-06-16 2025-01-28 Fisher-Rosemount Systems, Inc. Systems and methods for dynamically maintained redundancy and load balancing in software defined control systems for industrial process plants
CN114726572A (zh) * 2022-02-28 2022-07-08 南京第壹时间信息科技有限公司 互联网设备的访问方法及系统
EP4559138A1 (en) 2022-07-18 2025-05-28 Fisher-Rosemount Systems, Inc. Embedded device identification in process control devices
US12476973B2 (en) 2022-07-18 2025-11-18 Fisher-Rosemount Systems, Inc. Authentication/authorization framework for a process control or automation system
EP4606062A1 (en) * 2022-10-20 2025-08-27 Fisher-Rosemount Systems, Inc. Authentication/authorization framework for a process control or automation system

Family Cites Families (32)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US5764915A (en) * 1996-03-08 1998-06-09 International Business Machines Corporation Object-oriented communication interface for network protocol access using the selected newly created protocol interface object and newly created protocol layer objects in the protocol stack
US5978850A (en) * 1997-07-02 1999-11-02 National Instruments Corporation System and method for accessing parameters in a fieldbus network using a tag parameters interface
US6715082B1 (en) * 1999-01-14 2004-03-30 Cisco Technology, Inc. Security server token caching
US7035850B2 (en) * 2000-03-22 2006-04-25 Hitachi, Ltd. Access control system
US6850979B1 (en) * 2000-05-09 2005-02-01 Sun Microsystems, Inc. Message gates in a distributed computing environment
WO2002008870A2 (en) * 2000-07-26 2002-01-31 David Dickenson Distributive access controller
US6986040B1 (en) 2000-11-03 2006-01-10 Citrix Systems, Inc. System and method of exploiting the security of a secure communication channel to secure a non-secure communication channel
US8073967B2 (en) * 2002-04-15 2011-12-06 Fisher-Rosemount Systems, Inc. Web services-based communications for use with process control systems
JP2002366415A (ja) 2001-06-06 2002-12-20 Nippon Telegr & Teleph Corp <Ntt> リダイレクトシステムおよびリダイレクト装置
JP2003023676A (ja) 2001-07-10 2003-01-24 Hitachi Ltd 遠隔操作システム
US20030061515A1 (en) 2001-09-27 2003-03-27 Timothy Kindberg Capability-enabled uniform resource locator for secure web exporting and method of using same
JP2003140704A (ja) 2001-11-06 2003-05-16 Yamatake Sangyo Systems Co Ltd プロセス制御装置
JP4040886B2 (ja) * 2002-02-15 2008-01-30 三菱電機株式会社 コンテンツ管理システムおよびコンテンツ管理方法
JP3751584B2 (ja) * 2002-08-05 2006-03-01 株式会社デジタル 制御用表示装置、および、そのプログラムが記録された記録媒体、並びに、制御システム
JP2004127172A (ja) 2002-10-07 2004-04-22 Matsushita Electric Ind Co Ltd コンテンツ閲覧制限装置、コンテンツ閲覧制限方法およびコンテンツ閲覧制限プログラム
US7143288B2 (en) * 2002-10-16 2006-11-28 Vormetric, Inc. Secure file system server architecture and methods
US7237109B2 (en) 2003-01-28 2007-06-26 Fisher- Rosemount Systems, Inc. Integrated security in a process plant having a process control system and a safety system
US7502323B2 (en) * 2003-05-28 2009-03-10 Schneider Electric Industries Sas Access control system for automation equipment
US20050160161A1 (en) 2003-12-29 2005-07-21 Nokia, Inc. System and method for managing a proxy request over a secure network using inherited security attributes
JP2007536634A (ja) * 2004-05-04 2007-12-13 フィッシャー−ローズマウント・システムズ・インコーポレーテッド プロセス制御システムのためのサービス指向型アーキテクチャ
DE502005004396D1 (de) * 2005-04-22 2008-07-24 Trumpf Laser Gmbh & Co Kg Vorrichtung für sicheren Fernzugriff
US9871767B2 (en) * 2005-07-18 2018-01-16 Mutualink, Inc. Enabling ad hoc trusted connections among enclaved communication communities
US20070143827A1 (en) * 2005-12-21 2007-06-21 Fiberlink Methods and systems for intelligently controlling access to computing resources
US8380979B2 (en) * 2005-12-22 2013-02-19 At&T Intellectual Property I, L.P. Methods, systems, and computer program products for invoking trust-controlled services via application programming interfaces (APIs) respectively associated therewith
US20070219908A1 (en) * 2006-03-02 2007-09-20 Yahoo! Inc. Providing syndicated media to authorized users
JP2007323340A (ja) 2006-05-31 2007-12-13 Toshiba Corp アカウントリンクシステム,アカウントリンク用コンピュータ,およびアカウントリンク方法
US8290949B2 (en) * 2006-07-24 2012-10-16 International Business Machines Corporation Resource name reconciliation in a configuration database
JP4935274B2 (ja) 2006-09-27 2012-05-23 大日本印刷株式会社 サーバ及びプログラム
US7950045B2 (en) * 2006-12-13 2011-05-24 Cellco Partnership Techniques for managing security in next generation communication networks
US8141143B2 (en) * 2007-05-31 2012-03-20 Imera Systems, Inc. Method and system for providing remote access to resources in a secure data center over a network
US7996896B2 (en) * 2007-10-19 2011-08-09 Trend Micro Incorporated System for regulating host security configuration
US8887242B2 (en) 2009-04-14 2014-11-11 Fisher-Rosemount Systems, Inc. Methods and apparatus to provide layered security for interface access control

Also Published As

Publication number Publication date
CN101867566B (zh) 2016-08-03
GB201005809D0 (en) 2010-05-26
EP2242230A3 (en) 2012-03-07
EP2242230B1 (en) 2017-02-22
JP2010250825A (ja) 2010-11-04
CN106161438B (zh) 2019-07-12
EP2242230A2 (en) 2010-10-20
CN106161438A (zh) 2016-11-23
GB2469557B (en) 2014-10-01
JP2015097091A (ja) 2015-05-21
JP5938088B2 (ja) 2016-06-22
US20100263025A1 (en) 2010-10-14
CN101867566A (zh) 2010-10-20
GB2469557A (en) 2010-10-20
US8887242B2 (en) 2014-11-11

Similar Documents

Publication Publication Date Title
JP5938088B2 (ja) インターフェースアクセス制御に階層型セキュリティを提供する方法および装置
JP7011709B2 (ja) 単一の産業ネットワーク上の多テナント・データアクセスを可能にすること
US9639678B2 (en) Identity risk score generation and implementation
JP6431037B2 (ja) ネットワーク接続時に安全なアプリケーションを識別するためのシステム及び方法
US12413557B2 (en) Trusted execution environment for service mesh
US20090193503A1 (en) Network access control
KR20200098561A (ko) 연결된 엔드포인트 장치의 가입 및 등록을 위한 장치 식별 시스템 및 방법, 그리고 블록 체인 서비스
US20150046971A1 (en) Method and system for access control in cloud computing service
US20080127322A1 (en) Solicited remote control in an interactive management system
US8272043B2 (en) Firewall control system
US20210099414A1 (en) In-line detection of algorithmically generated domains
US20140033272A1 (en) Evaluating a security stack in repsonse to a request to access a service
KR102741305B1 (ko) 공유 폴더의 파일 암복호화 권한 제어 시스템 및 방법
US20250028845A1 (en) Secret Replacement for Web Browsers
US20250211582A1 (en) Method for carrying out an authorization process for a client application
WO2025152315A1 (zh) 一种权限管理的方法、装置、设备和存储介质
Dodson Capability-based access control for cyber physical systems
US20120324569A1 (en) Rule compilation in a firewall
Akyol et al. Transaction-based building controls framework, Volume 2: Platform descriptive model and requirements
US12500880B2 (en) System for controlling network access and method thereof
US20240340274A1 (en) System for controlling network access and method thereof
Huang et al. Agentic AI Identity Security
US20250267132A1 (en) Data security measures for cybersecurity threats
US20250279193A1 (en) Treatment devices with anti-tampering, security, and transparency features
Aggarwal et al. Security approaches for mobile multi-agent system

Legal Events

Date Code Title Description
A521 Request for written amendment filed

Free format text: JAPANESE INTERMEDIATE CODE: A523

Effective date: 20130405

A621 Written request for application examination

Free format text: JAPANESE INTERMEDIATE CODE: A621

Effective date: 20130405

A977 Report on retrieval

Free format text: JAPANESE INTERMEDIATE CODE: A971007

Effective date: 20140213

A131 Notification of reasons for refusal

Free format text: JAPANESE INTERMEDIATE CODE: A131

Effective date: 20140401

A521 Request for written amendment filed

Free format text: JAPANESE INTERMEDIATE CODE: A523

Effective date: 20140623

A02 Decision of refusal

Free format text: JAPANESE INTERMEDIATE CODE: A02

Effective date: 20140729

A521 Request for written amendment filed

Free format text: JAPANESE INTERMEDIATE CODE: A523

Effective date: 20141201

A911 Transfer to examiner for re-examination before appeal (zenchi)

Free format text: JAPANESE INTERMEDIATE CODE: A911

Effective date: 20141208

TRDD Decision of grant or rejection written
A01 Written decision to grant a patent or to grant a registration (utility model)

Free format text: JAPANESE INTERMEDIATE CODE: A01

Effective date: 20150303

A61 First payment of annual fees (during grant procedure)

Free format text: JAPANESE INTERMEDIATE CODE: A61

Effective date: 20150327

R150 Certificate of patent or registration of utility model

Ref document number: 5723105

Country of ref document: JP

Free format text: JAPANESE INTERMEDIATE CODE: R150

R250 Receipt of annual fees

Free format text: JAPANESE INTERMEDIATE CODE: R250

R250 Receipt of annual fees

Free format text: JAPANESE INTERMEDIATE CODE: R250

R250 Receipt of annual fees

Free format text: JAPANESE INTERMEDIATE CODE: R250

R250 Receipt of annual fees

Free format text: JAPANESE INTERMEDIATE CODE: R250

R250 Receipt of annual fees

Free format text: JAPANESE INTERMEDIATE CODE: R250

R250 Receipt of annual fees

Free format text: JAPANESE INTERMEDIATE CODE: R250

R250 Receipt of annual fees

Free format text: JAPANESE INTERMEDIATE CODE: R250

R250 Receipt of annual fees

Free format text: JAPANESE INTERMEDIATE CODE: R250