会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 3. 发明申请
    • Pre-authentication of mobile clients by sharing a master key among secured authenticators
    • 通过在安全验证器之间共享主密钥来对移动客户端进行预认证
    • US20050254653A1
    • 2005-11-17
    • US10923208
    • 2004-08-20
    • Alexei PotashnikGajendra ShuklaDaniel WongEmek SadotTimothy Wilson
    • Alexei PotashnikGajendra ShuklaDaniel WongEmek SadotTimothy Wilson
    • H04L9/00H04L9/08H04L9/32H04L12/28H04L29/06
    • H04L9/321H04L9/0844H04L63/062H04L63/08H04L2209/80H04W12/06H04W84/12
    • Systems and methods for pre-authenticating a mobile client in a wireless network. Authenticators in a secured section of the wireless network share a master key generated during an authentication session between a mobile client and an authentication server. The shared master key is not allowed to reside on any devices located outside the secured section of the network. Accordingly, the likelihood that the master key may be hijacked is essentially eliminated. A first session encryption key is derived from the master key and used by the mobile client and a first access point during a first communications session. When the mobile client roams to a second access point, a fast authentication process is performed. The fast authentication process retrieves the shared master key and generates a second session encryption key. A full authentication process between the authentication server and the mobile client is not required. The second session encryption key is used by the mobile client and a second access point during a second communications session.
    • 用于在无线网络中预先认证移动客户端的系统和方法。 在无线网络的安全部分中的认证器共享在移动客户端和认证服务器之间的认证会话期间生成的主密钥。 共享主密钥不允许驻留在位于网络的安全部分之外的任何设备上。 因此,基本上消除了主密钥被劫持的可能性。 第一会话加密密钥从主密钥导出并由移动客户端和第一通信会话期间的第一接入点使用。 当移动客户端漫游到第二接入点时,执行快速认证处理。 快速认证过程检索共享主密钥并生成第二会话加密密钥。 不需要认证服务器和移动客户端之间的完整身份验证过程。 第二会话加密密钥在第二通信会话期间由移动客户端和第二接入点使用。
    • 4. 发明授权
    • Advanced port-based E911 strategy for IP telephony
    • 基于端口的E911高级IP电话策略
    • US07738634B1
    • 2010-06-15
    • US11369692
    • 2006-03-06
    • Emek SadotRajendra A. PanchalMark Hamlen
    • Emek SadotRajendra A. PanchalMark Hamlen
    • H04M11/00
    • H04M11/04H04W4/90H04W76/50
    • An enterprise network includes at least one communication device 208-1, an Open Systems Interconnect (OSI) Layer 2 switch 206, and a corresponding enterprise switch 208. The communication device 208-1 is connected to at least one of an access point 904-1 and a respective port 207-1 of the Layer 2 switch 206. The enterprise network includes a plurality of Emergency Location Information Numbers (ELINs) corresponding to differing segments of the enterprise network. The Layer 2 switch 206 serves at least one of the differing segments. The communication device 208-1 includes a discovery agent 252 operable, when a predetermined first event occurs, to obtain from the Layer 2 switch 206 at least one of an access point identifier, a switch identifier from the Layer 2 switch 206, and a port identifier identifying the respective port 207-1.
    • 企业网络包括至少一个通信设备208-1,开放系统互连(OSI)第2层交换机206和对应的企业交换机208.通信设备208-1连接至接入点904- 第二层交换机206的相应端口207-1。企业网络包括对应于企业网络的不同段的多个紧急位置信息号码(ELIN)。 第二层交换机206服务于不同段中的至少一个。 通信设备208-1包括发现代理252,当预定的第一事件发生时,可从第二层交换机206获得接入点标识符,来自第二层交换机206的交换机标识符和端口 识别相应端口207-1的标识符。
    • 6. 发明申请
    • Advanced port-based E911 strategy for IP telephony
    • 基于端口的E911高级IP电话策略
    • US20060120517A1
    • 2006-06-08
    • US11326702
    • 2006-01-06
    • Sung MoonEmek Sadot
    • Sung MoonEmek Sadot
    • H04M11/04
    • H04M11/04H04W4/90H04W76/50
    • An enterprise network includes at least one communication device 208-1, an Open Systems Interconnect (OSI) Layer 2 switch 206, and a corresponding enterprise switch 208. The communication device 208-1 is connected to at least one of an access point 904-1 and a respective port 207-1 of the Layer 2 switch 206. The enterprise network includes a plurality of Emergency Location Information Numbers (ELINs) corresponding to differing segments of the enterprise network. The Layer 2 switch 206 serves at least one of the differing segments. The communication device 208-1 includes a discovery agent 252 operable, when a predetermined first event occurs, to obtain from the Layer 2 switch 206 at least one of an access point identifier, a switch identifier from the Layer 2 switch 206, and a port identifier identifying the respective port 207-1.
    • 企业网络包括至少一个通信设备208-1,开放系统互连(OSI)第2层交换机206和对应的企业交换机208.通信设备208-1连接到接入点904- 1和二层交换机206的相应端口207-1。企业网络包括对应于企业网络的不同段的多个紧急位置信息号(ELIN)。 第二层交换机206服务于不同段中的至少一个。 通信设备208-1包括发现代理252,当预定的第一事件发生时,可以从第二层交换机206获得接入点标识符,来自第二层交换机206的交换机标识符和端口中的至少一个 识别相应端口207-1的标识符。
    • 8. 发明申请
    • Communicating station-originated data to a target access point via a distribution system
    • 通过分发系统将站发起的数据传送到目标接入点
    • US20070071016A1
    • 2007-03-29
    • US11238924
    • 2005-09-29
    • Emek Sadot
    • Emek Sadot
    • H04L12/56
    • H04L47/10H04L47/12H04L47/14
    • A method and an apparatus are disclosed that mitigate congestion in a backbone network that is associated with a wireless network. The illustrative embodiment of the present invention mitigates the congestion by reducing the occurrences of a bridge data-processing system flooding out pre-authentication-related packets, as well as some other types of packets, on multiple ports of the bridge. In particular, each access point initially advertises its wireless network MAC address to the backbone network, in accordance with the illustrative embodiment, in addition to advertising its backbone network MAC address. Doing so enables each bridge in the backbone network to learn and recognize the wireless network MAC address, which results in the bridge directing the pre-authentication packet to a specific port that corresponds to the target access point.
    • 公开了减轻与无线网络相关联的骨干网络中的拥塞的方法和装置。 本发明的说明性实施例通过减少在桥接器的多个端口上洪泛预认证相关分组以及一些其他类型的分组的桥接数据处理系统的发生来减轻拥塞。 具体地,除了广告其骨干网MAC地址之外,根据说明性实施例,每个接入点最初将其无线网络MAC地址通告给骨干网。 这样做使骨干网络中的每个桥接器能够学习和识别无线网络MAC地址,这导致桥接器将预认证分组引导到与目标接入点相对应的特定端口。