WO2004057823A3 - Procede mandataire et systeme permettant de securiser l'administration sans fil d'entites gerees - Google Patents

Procede mandataire et systeme permettant de securiser l'administration sans fil d'entites gerees Download PDF

Info

Publication number
WO2004057823A3
WO2004057823A3 PCT/CA2003/002036 CA0302036W WO2004057823A3 WO 2004057823 A3 WO2004057823 A3 WO 2004057823A3 CA 0302036 W CA0302036 W CA 0302036W WO 2004057823 A3 WO2004057823 A3 WO 2004057823A3
Authority
WO
WIPO (PCT)
Prior art keywords
managed entities
wid
proxy
secure wireless
proxy method
Prior art date
Application number
PCT/CA2003/002036
Other languages
English (en)
Other versions
WO2004057823A2 (fr
Inventor
Kevin Kerstens
Schaick Allan Van
Jim Doree
Original Assignee
Sonic Mobility Inc
Kevin Kerstens
Schaick Allan Van
Jim Doree
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Priority claimed from US10/326,226 external-priority patent/US7454785B2/en
Priority claimed from CA002414830A external-priority patent/CA2414830C/fr
Application filed by Sonic Mobility Inc, Kevin Kerstens, Schaick Allan Van, Jim Doree filed Critical Sonic Mobility Inc
Priority to AU2003289796A priority Critical patent/AU2003289796A1/en
Priority to EP03782045A priority patent/EP1576783A2/fr
Priority to JP2004560973A priority patent/JP4538325B2/ja
Publication of WO2004057823A2 publication Critical patent/WO2004057823A2/fr
Publication of WO2004057823A3 publication Critical patent/WO2004057823A3/fr

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/04Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks
    • H04L63/0428Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload
    • H04L63/0435Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload wherein the sending and receiving network entities apply symmetric encryption, i.e. same key used for encryption and decryption
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/04Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks
    • H04L63/0428Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload
    • H04L63/0464Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload using hop-by-hop encryption, i.e. wherein an intermediate entity decrypts the information and re-encrypts it before forwarding it
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/06Network architectures or network communication protocols for network security for supporting key management in a packet data network
    • H04L63/061Network architectures or network communication protocols for network security for supporting key management in a packet data network for key exchange, e.g. in peer-to-peer networks
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/083Network architectures or network communication protocols for network security for authentication of entities using passwords
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/10Network architectures or network communication protocols for network security for controlling access to devices or network resources
    • H04L63/101Access control lists [ACL]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/01Protocols
    • H04L67/04Protocols specially adapted for terminals or networks with limited capabilities; specially adapted for terminal portability
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/01Protocols
    • H04L67/08Protocols specially adapted for terminal emulation, e.g. Telnet
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/08Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
    • H04L9/0816Key establishment, i.e. cryptographic processes or cryptographic protocols whereby a shared secret becomes available to two or more parties, for subsequent use
    • H04L9/0838Key agreement, i.e. key establishment technique in which a shared key is derived by parties as a function of information contributed by, or associated with, each of these
    • H04L9/0841Key agreement, i.e. key establishment technique in which a shared key is derived by parties as a function of information contributed by, or associated with, each of these involving Diffie-Hellman or related key agreement protocols
    • H04L9/0844Key agreement, i.e. key establishment technique in which a shared key is derived by parties as a function of information contributed by, or associated with, each of these involving Diffie-Hellman or related key agreement protocols with user authentication or key authentication, e.g. ElGamal, MTI, MQV-Menezes-Qu-Vanstone protocol or Diffie-Hellman protocols using implicitly-certified keys
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/08Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
    • H04L9/0861Generation of secret information including derivation or calculation of cryptographic keys or passwords
    • H04L9/0863Generation of secret information including derivation or calculation of cryptographic keys or passwords involving passwords or one-time passwords
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/08Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
    • H04L9/0861Generation of secret information including derivation or calculation of cryptographic keys or passwords
    • H04L9/0866Generation of secret information including derivation or calculation of cryptographic keys or passwords involving user or device identifiers, e.g. serial number, physical or biometrical information, DNA, hand-signature or measurable physical characteristics
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L2209/00Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
    • H04L2209/76Proxy, i.e. using intermediary entity to perform cryptographic operations
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L2209/00Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
    • H04L2209/80Wireless
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L69/00Network arrangements, protocols or services independent of the application payload and not provided for in the other groups of this subclass
    • H04L69/30Definitions, standards or architectural aspects of layered protocol stacks
    • H04L69/32Architecture of open systems interconnection [OSI] 7-layer type protocol stacks, e.g. the interfaces between the data link level and the physical level
    • H04L69/322Intralayer communication protocols among peer entities or protocol data unit [PDU] definitions
    • H04L69/329Intralayer communication protocols among peer entities or protocol data unit [PDU] definitions in the application layer [OSI layer 7]

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Hardware Design (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Mobile Radio Communication Systems (AREA)
  • Small-Scale Networks (AREA)
  • Computer And Data Communications (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)

Abstract

L'invention concerne un procédé, un système et un appareil servant à empêcher l'utilisation d'un serveur web à sécurité générique lors de la fourniture de services d'administration de réseau à distance en vue de gérer des entités au moyen d'une technologie sans fil. Un dispositif mandataire réel ne fonctionnant pas en tant que serveur Web est utilisé en vue de prétraiter tout le trafic de commande des dispositifs d'entrée sans fil (WID). L'intervention entre le WID et les entités gérées du mandataire isolant les entités gérées du WID, améliorée par codage grâce à un nouveau protocole de messagerie, amélioré lui aussi par un nouveau modèle de sécurité basé sur des clés et des algorithmes multiples prépartagés avec des identificateurs et des mots de passe ne pouvant être transmis, comporte plusieurs largeurs de bande et avantages de sécurité notamment la capacité à délivrer des services TELNET à travers Internet et derrière un pare-feu.
PCT/CA2003/002036 2002-12-19 2003-12-19 Procede mandataire et systeme permettant de securiser l'administration sans fil d'entites gerees WO2004057823A2 (fr)

Priority Applications (3)

Application Number Priority Date Filing Date Title
AU2003289796A AU2003289796A1 (en) 2002-12-19 2003-12-19 Proxy method and system for secure wireless administration of managed entities
EP03782045A EP1576783A2 (fr) 2002-12-19 2003-12-19 Procede mandataire et systeme permettant de securiser l'administration sans fil d'entites gerees
JP2004560973A JP4538325B2 (ja) 2002-12-19 2003-12-19 複数の管理対象エンティティーの安全な無線管理のためのプロキシ方法及びシステム

Applications Claiming Priority (4)

Application Number Priority Date Filing Date Title
US10/326,226 US7454785B2 (en) 2002-12-19 2002-12-19 Proxy method and system for secure wireless administration of managed entities
CA2,414,830 2002-12-19
CA002414830A CA2414830C (fr) 2002-12-19 2002-12-19 Methode et systeme de procuration pour l'administration securisee sans fil des entites gerees
US10/326,226 2002-12-19

Publications (2)

Publication Number Publication Date
WO2004057823A2 WO2004057823A2 (fr) 2004-07-08
WO2004057823A3 true WO2004057823A3 (fr) 2004-09-23

Family

ID=32683244

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CA2003/002036 WO2004057823A2 (fr) 2002-12-19 2003-12-19 Procede mandataire et systeme permettant de securiser l'administration sans fil d'entites gerees

Country Status (4)

Country Link
EP (1) EP1576783A2 (fr)
JP (1) JP4538325B2 (fr)
AU (1) AU2003289796A1 (fr)
WO (1) WO2004057823A2 (fr)

Families Citing this family (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20090279477A1 (en) * 2005-08-30 2009-11-12 Ntt Docomo, Inc. Mobile station, wireless access network apparatus, and mobile communication system
GB2436417B (en) * 2006-03-22 2008-02-20 Nec Technologies Radio access bearer transfer
CN106789615A (zh) * 2017-02-04 2017-05-31 重庆优启科技有限公司 一种提高web处理并发请求的方法及使用其的服务站
CN111193586B (zh) * 2018-11-14 2023-01-13 中国移动通信有限公司研究院 一种信息处理方法、分组传送网设备及量子密钥设备

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
EP0898216A2 (fr) * 1997-08-22 1999-02-24 Compaq Computer Corporation Procédé de communication sécurisée de télécommandes dans un réseau d'ordinateurs
WO2001091400A2 (fr) * 2000-05-19 2001-11-29 Ztango, Inc. Systeme et interface utilisateur destines a la gestion des utilisateurs et des services sur un reseau de communication sans fil
GB2367709A (en) * 2000-10-07 2002-04-10 Complementary Tech Ltd Communications with remote embedded applications
WO2002079983A2 (fr) * 2001-03-29 2002-10-10 Soma Networks, Inc. Systeme et procede de gestion de dispositifs a distance dans un reseau
US20020193131A1 (en) * 2001-06-18 2002-12-19 International Business Machines Corporation Mobile wireless management of servers and other resources

Family Cites Families (9)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US5892905A (en) * 1996-12-23 1999-04-06 International Business Machines Corporation Computer apparatus and method for providing a common user interface for software applications accessed via the world-wide web
JP3929186B2 (ja) * 1998-09-18 2007-06-13 三菱電機株式会社 クライアント/サーバシステム
JP2000236348A (ja) * 1999-02-16 2000-08-29 Telecommunication Advancement Organization Of Japan インターネットプロトコルを用いた遠隔機器の管理システム
JP2000285061A (ja) * 1999-03-31 2000-10-13 Nec Corp プロキシアクセス制御システム
US6349336B1 (en) * 1999-04-26 2002-02-19 Hewlett-Packard Company Agent/proxy connection control across a firewall
JP2002094573A (ja) * 2000-09-14 2002-03-29 Shikoku Electric Power Co Inc 機器の運用・管理システム
US6748215B1 (en) * 2000-09-29 2004-06-08 Qualcomm, Incorporated Method and apparatus for performing a candidate frequency search in a wireless communication system
US8812666B2 (en) * 2001-01-29 2014-08-19 Da Capital Fund Limited Liability Company Remote proxy server agent
JP2002312311A (ja) * 2001-04-11 2002-10-25 Hitachi Ltd サービス連携システム

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
EP0898216A2 (fr) * 1997-08-22 1999-02-24 Compaq Computer Corporation Procédé de communication sécurisée de télécommandes dans un réseau d'ordinateurs
WO2001091400A2 (fr) * 2000-05-19 2001-11-29 Ztango, Inc. Systeme et interface utilisateur destines a la gestion des utilisateurs et des services sur un reseau de communication sans fil
GB2367709A (en) * 2000-10-07 2002-04-10 Complementary Tech Ltd Communications with remote embedded applications
WO2002079983A2 (fr) * 2001-03-29 2002-10-10 Soma Networks, Inc. Systeme et procede de gestion de dispositifs a distance dans un reseau
US20020193131A1 (en) * 2001-06-18 2002-12-19 International Business Machines Corporation Mobile wireless management of servers and other resources

Also Published As

Publication number Publication date
JP4538325B2 (ja) 2010-09-08
EP1576783A2 (fr) 2005-09-21
AU2003289796A1 (en) 2004-07-14
JP2006512806A (ja) 2006-04-13
WO2004057823A2 (fr) 2004-07-08

Similar Documents

Publication Publication Date Title
EP3369234B1 (fr) Établissement d'événement de communication par signalisation sécurisée
US10893076B2 (en) Data compression for communications signalling
WO2006050074A3 (fr) Systeme et procede d'obtention d'un protocole d'authentification de plusieurs certificats
EP3369240B1 (fr) Repli sur protocole pendant une signalisation d'appel
EP3286896B1 (fr) Dispositif de réseau intermédiaire évolutif exploitant une extension de ticket de session ssl
WO2002056569A3 (fr) Dispositif et procede de compression de donnees de telecommunication
WO2002044858A3 (fr) Systeme et procede permettant d'exploiter la securite d'un canal de communication securise pour securiser un canal de communication non securise
CA2467988A1 (fr) Systeme et methode d'etablissement de connexion reseau securitaire, d'un client a un hote de reseau
WO2006036632A3 (fr) Utilisation optimisee de la bande passante pour des donnees de telemesure
WO2002101971A3 (fr) Appareil, systeme et procede pour valider l'integrite des donnees transmises
WO2002101974A8 (fr) Dechiffrabilite ephemere sure
WO2002025962A3 (fr) Messages de protocole map securises pour reseaux de telecommunication
WO2003034774A3 (fr) Procede et dispositif permettant de proteger l'identite et les caracteristiques d'un utilisateur dans un systeme de communication
WO2008078101A3 (fr) Perfectionnements à une sécurité de communications
CA2486690A1 (fr) Association de parametres de securite pour ensemble de protocoles de flux connexes
CN107749863B (zh) 一种信息系统网络安全隔离的方法
CN107493294B (zh) 一种基于非对称加密算法的ocf设备的安全接入与管理控制方法
GB0327185D0 (en) Dynamic configuration of ipsec tunnels
WO2005082040A3 (fr) Procede et systeme destines a fournir des solutions de securite de bout en bout et une acceleration de protocole sur des reseaux par cryptage de couche selective
WO2004107651A8 (fr) Procede, systeme et programme informatique permettant une gestion securisee de dispositifs de reseau
CN110417706B (zh) 一种基于交换机的安全通信方法
WO2004057823A3 (fr) Procede mandataire et systeme permettant de securiser l'administration sans fil d'entites gerees
WO2002041101A3 (fr) Procede et systeme de transmission de donnees a securite renforcee conforme a un protocole de reseau
CN106656493A (zh) 基于量子密钥分发的软件定义网络安全通信方法
CN100428748C (zh) 一种基于双重身份的多方通信方法

Legal Events

Date Code Title Description
AK Designated states

Kind code of ref document: A2

Designated state(s): AE AG AL AM AT AU AZ BA BB BG BR BW BY BZ CA CH CN CO CR CU CZ DE DK DM DZ EC EE EG ES FI GB GD GE GH GM HR HU ID IL IN IS JP KE KG KP KR KZ LC LK LR LS LT LU LV MA MD MG MK MN MW MX MZ NI NO NZ OM PG PH PL PT RO RU SC SD SE SG SK SL SY TJ TM TN TR TT TZ UA UG US UZ VC VN YU ZA ZM ZW

AL Designated countries for regional patents

Kind code of ref document: A2

Designated state(s): BW GH GM KE LS MW MZ SD SL SZ TZ UG ZM ZW AM AZ BY KG KZ MD RU TJ TM AT BE BG CH CY CZ DE DK EE ES FI FR GB GR HU IE IT LU MC NL PT RO SE SI SK TR BF BJ CF CG CI CM GA GN GQ GW ML MR NE SN TD TG

121 Ep: the epo has been informed by wipo that ep was designated in this application
WWE Wipo information: entry into national phase

Ref document number: 169215

Country of ref document: IL

Ref document number: 2004560973

Country of ref document: JP

WWE Wipo information: entry into national phase

Ref document number: 2003782045

Country of ref document: EP

WWP Wipo information: published in national office

Ref document number: 2003782045

Country of ref document: EP