WO2009072271A1 - Dhcpクライアントサーバシステム、dhcpクライアント装置、dhcpサーバ装置 - Google Patents

Dhcpクライアントサーバシステム、dhcpクライアント装置、dhcpサーバ装置 Download PDF

Info

Publication number
WO2009072271A1
WO2009072271A1 PCT/JP2008/003564 JP2008003564W WO2009072271A1 WO 2009072271 A1 WO2009072271 A1 WO 2009072271A1 JP 2008003564 W JP2008003564 W JP 2008003564W WO 2009072271 A1 WO2009072271 A1 WO 2009072271A1
Authority
WO
WIPO (PCT)
Prior art keywords
dhcp
retransmission
server
authentication system
client
Prior art date
Application number
PCT/JP2008/003564
Other languages
English (en)
French (fr)
Inventor
Tetsuro Yoshimoto
Hidenori Inouchi
Original Assignee
Hitachi Communication Technologies, Ltd.
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Hitachi Communication Technologies, Ltd. filed Critical Hitachi Communication Technologies, Ltd.
Priority to EP08856058A priority Critical patent/EP2222030A1/en
Priority to JP2009544570A priority patent/JP5185951B2/ja
Priority to CN2008801192020A priority patent/CN101971567A/zh
Priority to US12/734,909 priority patent/US20100241861A1/en
Publication of WO2009072271A1 publication Critical patent/WO2009072271A1/ja

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/14Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L61/00Network arrangements, protocols or services for addressing or naming
    • H04L61/50Address allocation
    • H04L61/5007Internet protocol [IP] addresses
    • H04L61/5014Internet protocol [IP] addresses using dynamic host configuration protocol [DHCP] or bootstrap protocol [BOOTP]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/32Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
    • H04L9/3236Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials using cryptographic hash functions

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Hardware Design (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)
  • Computer And Data Communications (AREA)

Abstract

 従来のDHCP認証方式ではRapid-Commitオプションによる1フェーズ2メッセージのDHCPシーケンスに対応できなかった。また、従来のDHCP認証方式では、リース更新のタイミングで再送攻撃が可能であったり、クライアントとサーバの間で再送検出方式で使う情報が同期を取れなくなった場合にそのことが検出できず、不要なトラフィックが出続けるという問題があった。DHCPクライアント装置内部に、ユーザID、秘密鍵、再送検出方式(RDM)情報を記憶する手段を持つ。DHCPサーバ装置はユーザIDをキーとして秘密鍵とRDM情報を検索可能なDBを内部に持つか、同じ機能を持つ外部DBへのアクセス機構を持つ。
PCT/JP2008/003564 2007-12-05 2008-12-02 Dhcpクライアントサーバシステム、dhcpクライアント装置、dhcpサーバ装置 WO2009072271A1 (ja)

Priority Applications (4)

Application Number Priority Date Filing Date Title
EP08856058A EP2222030A1 (en) 2007-12-05 2008-12-02 Dhcp client server system, dhcp client device and dhcp server device
JP2009544570A JP5185951B2 (ja) 2007-12-05 2008-12-02 Dhcpクライアントサーバシステム、dhcpクライアント装置、dhcpサーバ装置
CN2008801192020A CN101971567A (zh) 2007-12-05 2008-12-02 Dhcp客户端服务器系统、dhcp客户端装置、dhcp服务器装置
US12/734,909 US20100241861A1 (en) 2007-12-05 2008-12-02 Dhcp client server system, dhcp client device and dhcp server device

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
JP2007314148 2007-12-05
JP2007-314148 2007-12-05

Publications (1)

Publication Number Publication Date
WO2009072271A1 true WO2009072271A1 (ja) 2009-06-11

Family

ID=40717453

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/JP2008/003564 WO2009072271A1 (ja) 2007-12-05 2008-12-02 Dhcpクライアントサーバシステム、dhcpクライアント装置、dhcpサーバ装置

Country Status (5)

Country Link
US (1) US20100241861A1 (ja)
EP (1) EP2222030A1 (ja)
JP (1) JP5185951B2 (ja)
CN (1) CN101971567A (ja)
WO (1) WO2009072271A1 (ja)

Cited By (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JP2011024005A (ja) * 2009-07-16 2011-02-03 Nippon Telegr & Teleph Corp <Ntt> サーバ装置、クライアント装置、通信システム、通信制御方法およびプログラム
EP2398219A1 (en) * 2010-06-17 2011-12-21 Brother Kogyo Kabushiki Kaisha Communication device configured to be connected to both a public switched telephone network and an IP network
JP2013504236A (ja) * 2009-09-02 2013-02-04 アルカテル−ルーセント 無線通信ネットワーク内の通知
CN103324711A (zh) * 2013-06-19 2013-09-25 天津汉柏信息技术有限公司 Dhcp租约文件的存储方法
KR101584986B1 (ko) 2015-06-24 2016-01-13 주식회사 엘지유플러스 네트워크 접속 인증 방법
CN116321129A (zh) * 2023-03-23 2023-06-23 广东电力交易中心有限责任公司 一种轻量级的基于动态密钥的电力交易专网通信加密方法

Families Citing this family (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US9521108B2 (en) 2011-03-29 2016-12-13 Intel Corporation Techniques enabling efficient synchronized authenticated network access
US20150237003A1 (en) * 2014-02-18 2015-08-20 Benu Networks, Inc. Computerized techniques for network address assignment
CN104954317B (zh) * 2014-03-25 2018-11-13 国基电子(上海)有限公司 配置网络参数的方法、服务器及客户端
KR101683013B1 (ko) * 2015-08-17 2016-12-06 주식회사 케이티 Dhcp 옵션 60, 61 및 82를 이용한 ip 주소 할당 방법 및 이를 위한 시스템
CN105721496A (zh) * 2016-03-31 2016-06-29 中国人民解放军国防科学技术大学 一种轻量级地址自动分配协议安全认证方法
CN105959282A (zh) * 2016-04-28 2016-09-21 杭州迪普科技有限公司 Dhcp攻击的防护方法及装置
US10764287B2 (en) * 2017-08-02 2020-09-01 American Megatrends International, Llc Secure default user account for embedded systems
US10862912B2 (en) * 2018-03-23 2020-12-08 Juniper Networks, Inc. Tracking host threats in a network and enforcing threat policy actions for the host threats

Citations (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JP2006115033A (ja) 2004-10-13 2006-04-27 Nippon Telegr & Teleph Corp <Ntt> ユーザー情報の自動設定システムおよび自動設定方法

Family Cites Families (12)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
DE19742681C2 (de) * 1997-09-26 2003-03-06 Ericsson Telefon Ab L M GPRS-Teilnehmerauswahl von mehreren Internet-Dienstanbietern
US6826690B1 (en) * 1999-11-08 2004-11-30 International Business Machines Corporation Using device certificates for automated authentication of communicating devices
US6823454B1 (en) * 1999-11-08 2004-11-23 International Business Machines Corporation Using device certificates to authenticate servers before automatic address assignment
US6971005B1 (en) * 2001-02-20 2005-11-29 At&T Corp. Mobile host using a virtual single account client and server system for network access and management
US7069433B1 (en) * 2001-02-20 2006-06-27 At&T Corp. Mobile host using a virtual single account client and server system for network access and management
US7313606B2 (en) * 2001-11-27 2007-12-25 The Directv Group, Inc. System and method for automatic configuration of a bi-directional IP communication device
CN100499453C (zh) * 2004-07-29 2009-06-10 华为技术有限公司 一种客户端认证的方法
US8126145B1 (en) * 2005-05-04 2012-02-28 Marvell International Ltd. Enhanced association for access points
US7496057B2 (en) * 2005-08-10 2009-02-24 Cisco Technology, Inc. Methods and apparatus for optimizations in 3GPP2 networks using mobile IPv6
JP2007258986A (ja) * 2006-03-22 2007-10-04 Toshiba Corp 通信装置、通信方法および通信プログラム
CN101035135A (zh) * 2007-04-27 2007-09-12 清华大学 适用于无/弱本地存储客户端系统的数字证书系统
US8055800B1 (en) * 2007-06-29 2011-11-08 Extreme Networks, Inc. Enforcing host routing settings on a network device

Patent Citations (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JP2006115033A (ja) 2004-10-13 2006-04-27 Nippon Telegr & Teleph Corp <Ntt> ユーザー情報の自動設定システムおよび自動設定方法

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
PARK S.; KIM P.; B. VOLZ, RAPID COMMIT OPTION FOR THE DYNAMIC HOST CONFIGURATION PROTOCOL VERSION 4 (DHCPV4), March 2005 (2005-03-01)

Cited By (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JP2011024005A (ja) * 2009-07-16 2011-02-03 Nippon Telegr & Teleph Corp <Ntt> サーバ装置、クライアント装置、通信システム、通信制御方法およびプログラム
JP2013504236A (ja) * 2009-09-02 2013-02-04 アルカテル−ルーセント 無線通信ネットワーク内の通知
EP2398219A1 (en) * 2010-06-17 2011-12-21 Brother Kogyo Kabushiki Kaisha Communication device configured to be connected to both a public switched telephone network and an IP network
US8824654B2 (en) 2010-06-17 2014-09-02 Brother Kogyo Kabushiki Kaisha Communication device
CN103324711A (zh) * 2013-06-19 2013-09-25 天津汉柏信息技术有限公司 Dhcp租约文件的存储方法
KR101584986B1 (ko) 2015-06-24 2016-01-13 주식회사 엘지유플러스 네트워크 접속 인증 방법
CN116321129A (zh) * 2023-03-23 2023-06-23 广东电力交易中心有限责任公司 一种轻量级的基于动态密钥的电力交易专网通信加密方法
CN116321129B (zh) * 2023-03-23 2024-03-29 广东电力交易中心有限责任公司 一种轻量级的基于动态密钥的电力交易专网通信加密方法

Also Published As

Publication number Publication date
JP5185951B2 (ja) 2013-04-17
EP2222030A1 (en) 2010-08-25
US20100241861A1 (en) 2010-09-23
JPWO2009072271A1 (ja) 2011-04-21
CN101971567A (zh) 2011-02-09

Similar Documents

Publication Publication Date Title
WO2009072271A1 (ja) Dhcpクライアントサーバシステム、dhcpクライアント装置、dhcpサーバ装置
WO2010011731A3 (en) Methods and systems for secure key entry via communication networks
WO2016006520A1 (ja) 検知装置、検知方法及び検知プログラム
WO2008026060A3 (en) Method, system and device for synchronizing between server and mobile device
WO2007027290A3 (en) Method and apparatus for user authentication
WO2008069080A3 (en) Management apparatus and method thereof
WO2005070155A3 (en) Avoiding server storage of client state
WO2007149977A3 (en) Location-based security, privacy, access control and monitoring system
WO2009122295A3 (en) Method for monitoring the unauthorized use of a device
WO2007033338A3 (en) Networked information indexing and search apparatus and method
WO2006078572A3 (en) Asymmetric crypto-graphy with rolling key security
WO2008016800A3 (en) Method and apparatus for selecting an appropriate authentication method on a client
WO2008127447A3 (en) Authentication delegation based on re-verification of cryptographic evidence
WO2009122297A3 (en) System for monitoring the unauthorized use of a device
WO2009122293A3 (en) System for monitoring the unauthorized use of a device
WO2008051325A3 (en) Communicating additional information in a dns update response by requesting deletion of a specific record
WO2009042915A3 (en) Whitelist and blacklist identification data
WO2009073637A3 (en) Systems and methods for personal information management and contact picture synchronization and distribution
EP1729499A3 (en) Management of physical security credentials at a multifunction device
WO2006000989A8 (en) Renewable and private biometrics
WO2009045317A3 (en) Method for authenticating mobile units attached to a femtocell in communication with a secure core network such as an ims
WO2005069101A3 (en) Method and system for establishing a trust framework based on smart key devices
WO2008030526A3 (en) Systems and methods for obtaining network access
WO2006091396A3 (en) Payload layer security for file transfer
WO2009008003A3 (en) Method and system for restricting access of one or more users to a service

Legal Events

Date Code Title Description
WWE Wipo information: entry into national phase

Ref document number: 200880119202.0

Country of ref document: CN

121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 08856058

Country of ref document: EP

Kind code of ref document: A1

WWE Wipo information: entry into national phase

Ref document number: 2009544570

Country of ref document: JP

WWE Wipo information: entry into national phase

Ref document number: 12734909

Country of ref document: US

Ref document number: 2008856058

Country of ref document: EP

NENP Non-entry into the national phase

Ref country code: DE