会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 6. 发明授权
    • Packet processing device and mobile computer with reduced packet processing overhead
    • 分组处理设备和移动计算机具有减少的分组处理开销
    • US06240514B1
    • 2001-05-29
    • US08954631
    • 1997-10-20
    • Atsushi InoueMasahiro IshiyamaAtsushi FukumotoYoshiyuki TsudaAtsushi ShimboToshio Okamoto
    • Atsushi InoueMasahiro IshiyamaAtsushi FukumotoYoshiyuki TsudaAtsushi ShimboToshio Okamoto
    • H04L900
    • H04W12/02H04L9/0822H04L63/0464H04L63/123H04L2209/80H04L2463/062H04W12/10H04W88/04
    • A packet processing and packet transfer scheme capable of reducing the packet processing overhead by eliminating a need to decrypt and re-encrypt the entire packet at a time of relaying encrypted packets. In a packet processing device for relaying encrypted packets, a packet transferred to the packet processing device is received, where the packet has a packet processing key to be used in a prescribed packet processing with respect to a data portion of the packet, and the packet processing key is encrypted by using a first master key shared between a last device that applied a cipher communication related processing to the packet and the packet processing device. Then, the packet processing key in the received packet is decrypted, without carrying out the prescribed packet processing with respect to the data portion of the packet, and the decrypted packet processing key is re-encrypted by using a second master key shared between a next device to apply the cipher communication related processing to the packet and the packet processing device. Then, the packet with the re-encrypted packet processing key encoded therein is transmitted toward a destination of the received packet.
    • 一种分组处理和分组传输方案,其能够通过在中继加密的分组时消除对整个分组的解密和重新加密的需要来减少分组处理开销。 在用于中继加密分组的分组处理装置中,接收到传送到分组处理装置的分组,其中分组具有关于分组的数据部分的规定分组处理中使用的分组处理密钥,并且分组 处理密钥通过使用应用与分组的密码通信相关处理的最后设备与分组处理设备之间共享的第一主密钥进行加密。 然后,对接收到的分组中的分组处理密钥进行解密,而不对分组的数据部分执行规定的分组处理,并且通过使用下一个共享的第二主密钥来重新加密解密的分组处理密钥 将密码通信相关处理应用于分组和分组处理设备。 然后,将其中编码的重新加密的分组处理密钥的分组发送到接收分组的目的地。
    • 7. 发明授权
    • Packet authentication and packet encryption/decryption scheme for security gateway
    • 安全网关的分组认证和分组加密/解密方案
    • US06185680B2
    • 2001-02-06
    • US09537517
    • 2000-03-29
    • Atsushi ShimboAtsushi InqueMasahiro IshiyamaToshio Okamoto
    • Atsushi ShimboAtsushi InqueMasahiro IshiyamaToshio Okamoto
    • G06F124
    • H04L63/0428H04L63/12H04L63/164
    • A packet authentication and packet encryption/decryption scheme for a security gateway suitable for a hierarchically organized network system and a mobile computing environment. For the packet authentication, in addition to the end-to-end authentication at the destination side packet processing device, the link-by-link authentication at each intermediate packet processing device in the packet transfer route is used. For the packet encryption/decryption, each packet processing device determines whether or not to encrypt/decrypt the packet according to: an information on the computers which are directly managed by this packet processing device; or the encryption information and the signature information provided in the packet; or the encryption information, the signature information, and the encryption/decryption level information provided in the packer.
    • 适用于分层组织的网络系统和移动计算环境的安全网关的分组认证和分组加密/解密方案。 对于分组认证,除了目的端分组处理设备的端到端认证之外,还使用分组传送路由中的每个中间分组处理设备的逐链路认证。 对于分组加密/解密,每个分组处理设备根据由该分组处理设备直接管理的计算机上的信息来确定是否对分组进行加密/解密; 或提供在分组中的加密信息和签名信息; 或加密信息,签名信息和提供在打包机中的加密/解密级别信息。
    • 9. 发明授权
    • Packet authentication and packet encryption/decryption scheme for
security gateway
    • 安全网关的分组认证和分组加密/解密方案
    • US6092191A
    • 2000-07-18
    • US758479
    • 1996-11-29
    • Atsushi ShimboAtsushi InoueMasahiro IshiyamaToshio Okamoto
    • Atsushi ShimboAtsushi InoueMasahiro IshiyamaToshio Okamoto
    • H04L9/32G06F1/24G06F13/00G09C1/00H04L9/00H04L12/66H04L12/70
    • H04L63/0428H04L63/12H04L63/164
    • A packet authentication and packet encryption/decryption scheme for a security gateway suitable for a hierarchically organized network system and a mobile computing environment. For the packet authentication, in addition to the end-to-end authentication at the destination side packet processing device, the link-by-link authentication at each intermediate packet processing device in the packet transfer route is used. The link-to-link authentication data being inspected by intermediate nodes and end-to-end data (different from link-to-link data) being inspected by destination node but not being inspected by intermediate nodes. For the packet encryption/decryption, each packet processing device determines whether or not to encrypt/decrypt the packet according to: an information on the computers which are directly managed by this packet processing device; or the encryption information and the signature information provided in the packet; or the encryption information, the signature information, and the encryption/decryption level information provided in the packer.
    • 适用于分层组织的网络系统和移动计算环境的安全网关的分组认证和分组加密/解密方案。 对于分组认证,除了目的端分组处理设备的端到端认证之外,还使用分组传送路由中的每个中间分组处理设备的逐链路认证。 由中间节点检查的链路到链路认证数据和目的节点检查但不被中间节点检查的端到端数据(不同于链路到链路数据)。 对于分组加密/解密,每个分组处理设备根据由该分组处理设备直接管理的计算机上的信息来确定是否对分组进行加密/解密; 或提供在分组中的加密信息和签名信息; 或加密信息,签名信息和提供在打包机中的加密/解密级别信息。