KR101548552B1 - Tr-069 오브젝트 관리를 위한 모듈 및 연관된 방법 - Google Patents
Tr-069 오브젝트 관리를 위한 모듈 및 연관된 방법 Download PDFInfo
- Publication number
- KR101548552B1 KR101548552B1 KR1020117014969A KR20117014969A KR101548552B1 KR 101548552 B1 KR101548552 B1 KR 101548552B1 KR 1020117014969 A KR1020117014969 A KR 1020117014969A KR 20117014969 A KR20117014969 A KR 20117014969A KR 101548552 B1 KR101548552 B1 KR 101548552B1
- Authority
- KR
- South Korea
- Prior art keywords
- object model
- security
- network entity
- intermediate network
- module
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Expired - Fee Related
Links
Images
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L41/00—Arrangements for maintenance, administration or management of data switching networks, e.g. of packet switching networks
- H04L41/22—Arrangements for maintenance, administration or management of data switching networks, e.g. of packet switching networks comprising specially adapted graphical user interfaces [GUI]
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L12/00—Data switching networks
- H04L12/28—Data switching networks characterised by path configuration, e.g. LAN [Local Area Networks] or WAN [Wide Area Networks]
- H04L12/2854—Wide area networks, e.g. public data networks
- H04L12/2856—Access arrangements, e.g. Internet access
- H04L12/2869—Operational details of access network equipments
- H04L12/287—Remote access server, e.g. BRAS
- H04L12/2876—Handling of subscriber policies
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L12/00—Data switching networks
- H04L12/66—Arrangements for connecting between networks having differing types of switching systems, e.g. gateways
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L41/00—Arrangements for maintenance, administration or management of data switching networks, e.g. of packet switching networks
- H04L41/02—Standardisation; Integration
- H04L41/0213—Standardised network management protocols, e.g. simple network management protocol [SNMP]
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L41/00—Arrangements for maintenance, administration or management of data switching networks, e.g. of packet switching networks
- H04L41/14—Network analysis or design
- H04L41/145—Network analysis or design involving simulating, designing, planning or modelling of a network
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/04—Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks
- H04L63/0428—Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload
- H04L63/0471—Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload applying encryption by an intermediary, e.g. receiving clear information at the intermediary and encrypting the received information at the intermediary before forwarding
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/06—Network architectures or network communication protocols for network security for supporting key management in a packet data network
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/10—Network architectures or network communication protocols for network security for controlling access to devices or network resources
- H04L63/102—Entity profiles
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/16—Implementing security features at a particular protocol layer
- H04L63/168—Implementing security features at a particular protocol layer above the transport layer
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/20—Network architectures or network communication protocols for network security for managing network security; network security policies in general
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L67/00—Network arrangements or protocols for supporting network services or applications
- H04L67/01—Protocols
- H04L67/12—Protocols specially adapted for proprietary or special-purpose networking environments, e.g. medical networks, sensor networks, networks in vehicles or remote metering networks
- H04L67/125—Protocols specially adapted for proprietary or special-purpose networking environments, e.g. medical networks, sensor networks, networks in vehicles or remote metering networks involving control of end-device applications over a network
Landscapes
- Engineering & Computer Science (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Computer Security & Cryptography (AREA)
- Computer Hardware Design (AREA)
- Computing Systems (AREA)
- General Engineering & Computer Science (AREA)
- Human Computer Interaction (AREA)
- Data Exchanges In Wide-Area Networks (AREA)
- Computer And Data Communications (AREA)
- Small-Scale Networks (AREA)
- Telephonic Communication Services (AREA)
Abstract
Description
103: 오브젝트 모델 뷰 104: 보안 정책
105: 가정용 게이트웨이 106: 고객 댁내 장비
107: 연관 수단 108: 보안 구성 모듈
109: 구성된 보안 속성 모듈 110: 통신 모듈
111: 통신 모듈 112: 통신 모듈
113: 명령 수단 114: TR-069 관리 에이전트
Claims (9)
- 장치의 TR-069 오브젝트 모델의 관리에서 이용하기 위한 보안 모듈에 있어서:
상기 장치의 오브젝트 모델 뷰를 보안 정책에 연관시키는 수단; 및
상기 장치의 적어도 부분적 관리가 TR-069 관리 에이전트에서 중간 네트워크 엔티티로 스위칭하도록 최종 사용자의 상기 중간 네트워크 엔티티 상에서 상기 보안 정책의 보안 속성들을 구성하는 수단으로서, 상기 보안 속성들은 상기 장치에 고유한 암호 및 암호 해독 키를 포함하고, 상기 장치의 상기 TR-069 관리 에이전트는 크리덴셜들(credentials)에 기초하여 복수의 파라미터들을 선택하도록 구성된 제 1 뷰 선택기 모듈을 포함하고, 상기 장치는 상기 복수의 파라미터들을 이용하여 상기 오브젝트 모델 뷰를 선택하도록 구성된 제 2 뷰 선택기 모듈을 포함하고, 상기 복수의 파라미터들은 상기 장치와 연관된 상기 오브젝트 모델 뷰를 규정하는, 상기 보안 속성들을 구성하는 수단을 포함하는, 보안 모듈. - 제 1 항에 있어서,
상기 연관시키는 수단은 원격 관리 서버 상에 설치되는, 보안 모듈. - 제 1 항에 있어서,
상기 보안 모듈은 상기 중간 네트워크 엔티티 상에서 상기 보안 속성들을 구성하기 위해 수송 계층 보안/보안 소켓 계층(Transport Layer Security/Secure Sockets Layer) 프로토콜을 이용하는, 보안 모듈. - 제 1 항에 있어서,
상기 보안 모듈은, 상기 구성된 보안 속성들에 기초하고 상기 중간 네트워크 엔티티로 하여금 상기 장치의 상기 연관된 오브젝트 모델 뷰를 제어하는 것을 허용하는 암호화 프로토콜을 이용하여, 상기 장치 및 상기 중간 네트워크 엔티티와 통신하게 하는 명령 수단을 더 포함하는, 보안 모듈. - 제 4 항에 있어서,
상기 암호화 프로토콜은, 암호화된 TR-069 오브젝트 모델 메시지들을 포함하는 몸체 부분 및 상기 보안 정책에 대한 비암호화된 참조를 포함하는 헤더 부분을 갖는 간단한 오브젝트 액세스 프로토콜(Simple Object Access Protocol)에 의해 구현되는, 보안 모듈. - 제 1 항에 있어서,
상기 중간 네트워크 엔티티는 가정용 게이트웨이에 의해 구현되는, 보안 모듈. - 제 1 항에 있어서,
상기 장치는 고객 댁내 장비(customer premises equipment)인, 보안 모듈. - 제 1 항에 있어서,
상기 모듈은 TR-069 관리 프로토콜에 통합되는, 보안 모듈. - 장치의 TR-069 오브젝트 모델의 관리에 이용하기 위한 보안 방법에 있어서:
상기 장치의 오브젝트 모델 뷰를 보안 정책에 연관시키는 단계;
상기 장치의 적어도 부분적 관리가 TR-069 관리 에이전트에서 중간 네트워크 엔티티로 스위칭하도록 최종 사용자의 상기 중간 네트워크 엔티티 상에서 상기 보안 정책의 보안 속성들을 구성하는 단계로서, 상기 보안 속성들은 상기 장치에 고유한 암호 및 암호 해독 키를 포함하는, 상기 보안 속성들을 구성하는 단계;
제 1 뷰 선택기 모듈에 의해, 크리덴셜들에 기초하여 복수의 파라미터들을 선택하는 단계로서, 상기 복수의 파라미터들은 상기 장치와 연관된 상기 오브젝트 모델 뷰를 규정하는, 상기 복수의 파라미터들을 선택하는 단계; 및
상기 제 2 뷰 선택기 모듈에 의해, 상기 복수의 파라미터들을 이용하여 상기 오브젝트 모델 뷰를 선택하는 단계를 포함하는, 보안 방법.
Applications Claiming Priority (2)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| EP08291134.8 | 2008-12-02 | ||
| EP08291134A EP2194688A1 (en) | 2008-12-02 | 2008-12-02 | A module and associated method for TR-069 object management |
Publications (2)
| Publication Number | Publication Date |
|---|---|
| KR20110092333A KR20110092333A (ko) | 2011-08-17 |
| KR101548552B1 true KR101548552B1 (ko) | 2015-09-01 |
Family
ID=40602255
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| KR1020117014969A Expired - Fee Related KR101548552B1 (ko) | 2008-12-02 | 2009-11-24 | Tr-069 오브젝트 관리를 위한 모듈 및 연관된 방법 |
Country Status (6)
| Country | Link |
|---|---|
| US (1) | US8955034B2 (ko) |
| EP (1) | EP2194688A1 (ko) |
| JP (1) | JP5537560B2 (ko) |
| KR (1) | KR101548552B1 (ko) |
| CN (1) | CN101753564B (ko) |
| WO (1) | WO2010063407A1 (ko) |
Families Citing this family (17)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| GB2415065B (en) * | 2004-06-09 | 2009-01-21 | Symbian Software Ltd | A computing device having a multiple process architecture for running plug-in code modules |
| EP2141858B1 (en) * | 2008-06-30 | 2014-11-26 | Alcatel Lucent | Method for managing a communication between a server device and a customer device |
| FR2951343A1 (fr) * | 2009-10-14 | 2011-04-15 | Alcatel Lucent | Gestion de dispositif de communication a travers un reseau de telecommunications |
| US8925039B2 (en) * | 2009-12-14 | 2014-12-30 | At&T Intellectual Property I, L.P. | System and method of selectively applying security measures to data services |
| EP2403216B1 (en) * | 2010-06-30 | 2014-03-05 | Alcatel Lucent | Method for installation of an application |
| EP2403201A1 (en) * | 2010-06-30 | 2012-01-04 | Alcatel Lucent | Method for communicating between customer device and server device |
| CN103116606A (zh) * | 2013-01-17 | 2013-05-22 | 上海斐讯数据通信技术有限公司 | 一种数据存储结构 |
| KR101447858B1 (ko) * | 2013-05-15 | 2014-10-07 | (주)엔텔스 | IPSec 게이트웨이 장치, IPSec 게이트웨이의 패킷 전송 방법 및 네트워크 시스템 |
| WO2014185639A1 (ko) * | 2013-05-15 | 2014-11-20 | 주식회사 엔텔스 | IPSec 게이트웨이 장치, IPSec 게이트웨이의 패킷 전송 방법 및 네트워크 시스템 |
| US10554861B2 (en) | 2015-03-05 | 2020-02-04 | Hewlett-Packard Development Company, L.P. | Method and device for color compensation |
| CN104852813B (zh) * | 2015-04-08 | 2018-02-13 | 烽火通信科技股份有限公司 | 家庭网关设备中tr069参数节点的按需加载方法及系统 |
| US11038923B2 (en) * | 2018-02-16 | 2021-06-15 | Nokia Technologies Oy | Security management in communication systems with security-based architecture using application layer security |
| US11233647B1 (en) * | 2018-04-13 | 2022-01-25 | Hushmesh Inc. | Digital identity authentication system |
| US12483397B1 (en) * | 2018-04-13 | 2025-11-25 | Hushmesh Inc. | Use of cryptographic twins for secure storage and access of entity data |
| US11477072B2 (en) * | 2019-09-17 | 2022-10-18 | OpenVault, LLC | System and method for prescriptive diagnostics and optimization of client networks |
| US20240281236A1 (en) * | 2022-11-29 | 2024-08-22 | Rakuten Mobile, Inc. | Over-the-air service platform support for tr-069 multiple firmware images and serverless environments |
| US20250068708A1 (en) * | 2023-08-23 | 2025-02-27 | Nokia Solutions And Networks Oy | Management and enforcement of password policies based on regular expressions and device management capabilities |
Citations (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20080216157A1 (en) * | 2005-02-11 | 2008-09-04 | Jarkko Huuhtanen | Method, System and Computer Program Product for Providing Access Policies for Services |
Family Cites Families (4)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN100596069C (zh) * | 2006-08-15 | 2010-03-24 | 中国电信股份有限公司 | 家庭网关中IPSec安全策略的自动配置系统和方法 |
| TWI337818B (en) * | 2007-04-16 | 2011-02-21 | Accton Technology Corp | Network management system and management method thereof |
| EP2026594B1 (en) | 2007-08-14 | 2017-07-12 | Alcatel Lucent | A module and associated method for TR-069 object management |
| US8019767B2 (en) * | 2007-11-12 | 2011-09-13 | International Business Machines Corporation | Correlation-based visualization of service-oriented architecture protocol (SOAP) messages |
-
2008
- 2008-12-02 EP EP08291134A patent/EP2194688A1/en not_active Withdrawn
-
2009
- 2009-11-04 US US12/591,005 patent/US8955034B2/en not_active Expired - Fee Related
- 2009-11-24 WO PCT/EP2009/008428 patent/WO2010063407A1/en not_active Ceased
- 2009-11-24 JP JP2011538876A patent/JP5537560B2/ja not_active Expired - Fee Related
- 2009-11-24 KR KR1020117014969A patent/KR101548552B1/ko not_active Expired - Fee Related
- 2009-11-25 CN CN200910226064.2A patent/CN101753564B/zh not_active Expired - Fee Related
Patent Citations (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20080216157A1 (en) * | 2005-02-11 | 2008-09-04 | Jarkko Huuhtanen | Method, System and Computer Program Product for Providing Access Policies for Services |
Non-Patent Citations (1)
| Title |
|---|
| 비특허문헌 1* |
Also Published As
| Publication number | Publication date |
|---|---|
| CN101753564B (zh) | 2013-09-18 |
| KR20110092333A (ko) | 2011-08-17 |
| JP5537560B2 (ja) | 2014-07-02 |
| JP2012510766A (ja) | 2012-05-10 |
| WO2010063407A1 (en) | 2010-06-10 |
| US20100138895A1 (en) | 2010-06-03 |
| US8955034B2 (en) | 2015-02-10 |
| CN101753564A (zh) | 2010-06-23 |
| EP2194688A1 (en) | 2010-06-09 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| KR101548552B1 (ko) | Tr-069 오브젝트 관리를 위한 모듈 및 연관된 방법 | |
| KR101657705B1 (ko) | 네트워크를 운영하기 위한 방법, 시스템 관리 디바이스, 네트워크 및 이를 위한 컴퓨터 프로그램 | |
| KR101438243B1 (ko) | Sim 기반 인증방법 | |
| CA2592702C (en) | Use of configurations in device with multiple configurations | |
| KR101471826B1 (ko) | Tr―069 오브젝트 관리를 위한 모듈 및 연관된 방법 | |
| KR100654741B1 (ko) | 간이형 네트워크 관리 프로토콜(snmp) 에이전트를 초기화하기 위한 방법 | |
| CN111373702B (zh) | 用于现场总线网络与云之间的数据交换的接口装置 | |
| JP2023529951A (ja) | 安全な通信方法、関連する装置、およびシステム | |
| US20210273926A1 (en) | Method for editing messages by a device on a communication path established between two nodes | |
| Li | Policy-based IPsec management | |
| CN116232570B (zh) | 保护数据流转安全的方法以及数据管理系统 | |
| US11949664B2 (en) | Machine to machine communications | |
| Stusek et al. | A Novel Application of CWMP: An Operator-grade Management Platform for IoT | |
| CN114024664A (zh) | 安全通信方法、相关装置及系统 | |
| CN110995510B (zh) | 一种pol中实现voip业务零配置的管理方法和装置 | |
| Wheeler et al. | Securely Connecting the Unconnected | |
| Schwiderski-Grosche et al. | Towards the secure initialisation of a personal distributed environment | |
| CN118631646A (zh) | 一种基于MQTT的路由器、ONU、网关option60设置方法 | |
| CN118612123A (zh) | 一种基于cwmp的路由器、onu、网关网络流量获取方法 | |
| KR100489216B1 (ko) | 단순 망 관리 프로토콜(snmp)을 이용하는 네트워크관리 시스템 및 그 네트워크 관리 시스템에서의 정보 교환방법 | |
| WO2023238172A1 (ja) | 鍵発行システム、鍵発行方法、およびプログラム | |
| CN121241593A (zh) | 传输信令的方法、传输数据的方法和通信装置 | |
| CN115065516A (zh) | 一种voip设备自定义请求鉴权的方法和装置 | |
| CN116964984A (zh) | 安全密钥管理设备、认证系统、广域网和用于生成会话密钥的方法 | |
| Game | WP1: Requirement Analysis D 1. C:” State of the Art Report” |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| PA0105 | International application |
St.27 status event code: A-0-1-A10-A15-nap-PA0105 |
|
| PG1501 | Laying open of application |
St.27 status event code: A-1-1-Q10-Q12-nap-PG1501 |
|
| R18-X000 | Changes to party contact information recorded |
St.27 status event code: A-3-3-R10-R18-oth-X000 |
|
| A201 | Request for examination | ||
| P11-X000 | Amendment of application requested |
St.27 status event code: A-2-2-P10-P11-nap-X000 |
|
| P13-X000 | Application amended |
St.27 status event code: A-2-2-P10-P13-nap-X000 |
|
| PA0201 | Request for examination |
St.27 status event code: A-1-2-D10-D11-exm-PA0201 |
|
| D13-X000 | Search requested |
St.27 status event code: A-1-2-D10-D13-srh-X000 |
|
| D14-X000 | Search report completed |
St.27 status event code: A-1-2-D10-D14-srh-X000 |
|
| E902 | Notification of reason for refusal | ||
| PE0902 | Notice of grounds for rejection |
St.27 status event code: A-1-2-D10-D21-exm-PE0902 |
|
| P11-X000 | Amendment of application requested |
St.27 status event code: A-2-2-P10-P11-nap-X000 |
|
| P13-X000 | Application amended |
St.27 status event code: A-2-2-P10-P13-nap-X000 |
|
| E701 | Decision to grant or registration of patent right | ||
| PE0701 | Decision of registration |
St.27 status event code: A-1-2-D10-D22-exm-PE0701 |
|
| GRNT | Written decision to grant | ||
| PR0701 | Registration of establishment |
St.27 status event code: A-2-4-F10-F11-exm-PR0701 |
|
| PR1002 | Payment of registration fee |
St.27 status event code: A-2-2-U10-U12-oth-PR1002 Fee payment year number: 1 |
|
| PG1601 | Publication of registration |
St.27 status event code: A-4-4-Q10-Q13-nap-PG1601 |
|
| LAPS | Lapse due to unpaid annual fee | ||
| PC1903 | Unpaid annual fee |
St.27 status event code: A-4-4-U10-U13-oth-PC1903 Not in force date: 20180826 Payment event data comment text: Termination Category : DEFAULT_OF_REGISTRATION_FEE |
|
| R18-X000 | Changes to party contact information recorded |
St.27 status event code: A-5-5-R10-R18-oth-X000 |
|
| PC1903 | Unpaid annual fee |
St.27 status event code: N-4-6-H10-H13-oth-PC1903 Ip right cessation event data comment text: Termination Category : DEFAULT_OF_REGISTRATION_FEE Not in force date: 20180826 |
|
| P22-X000 | Classification modified |
St.27 status event code: A-4-4-P10-P22-nap-X000 |
|
| P22-X000 | Classification modified |
St.27 status event code: A-4-4-P10-P22-nap-X000 |
|
| P22-X000 | Classification modified |
St.27 status event code: A-4-4-P10-P22-nap-X000 |