Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

710results about "Synchronising transmission/receiving encryption devices" patented technology

Digital identity authentication and tracing method based on block chain

The invention belongs to the technical field of block chains, and discloses a block chain-based digital identity authentication and traceability method, which comprises the following steps: acquiring user biological characteristic data, generating a characteristic root value, splitting key shares, and generating a key share set through block chain evidence storage; each distributed node generates an identity private key and an on-chain identity template, and associates the on-chain identity template with a chain identifier to form a multi-chain identity key pool and an on-chain identity template library; dividing a core chain and an edge chain, generating a zero-knowledge proof, generating a cross-chain certificate after verification of the core chain, sending an encryption result to the edge chain, and generating a temporary authority token; writing traceability information into the edge chain, aggregating multi-chain information through cross-chain traceability, and generating a traceability information chain and a cross-chain traceability validity proof; and recording a key use track and identifying a risk behavior, triggering a key limiting mechanism, dynamically updating an identity template permission on the chain, reversely optimizing key related parameters, and forming a closed-loop iterative identity and traceability management link.
Owner:NAT CERTIFICATION TECH (HANGZHOU) CO LTD

Quantum key distribution secure communication system based on quantum mechanics principle

The invention relates to the technical field of quantum communication security, and discloses a quantum key distribution secure communication system based on a quantum mechanics principle. The system comprises a quantum state preparation unit which controls a quantum emission device to output a quantum state sequence containing a preset polarization angle and a phase modulation photon group; a quantum channel feature extraction unit captures channel environment interference parameters and constructs a photon polarization distribution matrix; a quantum communication security evaluation unit receives the matrix, and calculates a channel security coefficient threshold through a quantum bit error rate analyzer; the quantum key dynamic optimization unit generates an optimized key segmentation strategy in combination with a security coefficient threshold and a historical key negotiation record; the quantum key rotation control unit switches quantum state modulation parameters according to a segmentation strategy and a time window; and the quantum node synchronization management unit monitors node clock offset and injects a calibration signal to realize key distribution time slot alignment. The system can dynamically cope with environmental interference, and improves the security and adaptability of quantum key distribution.
Owner:PANZHIHUA UNIV

Distributed node unified identity authentication method and system based on QUIC protocol

The invention relates to a QUIC protocol-based distributed node unified identity authentication method and system, belongs to the technical field of network security, is applied to a client, and comprises the following steps: registering a client domain name identity through a certificate authority, obtaining a client certificate, and pre-storing a server certificate chain; generating a QUIC initial data packet according to the target server domain name identifier and the client certificate, and sending the QUIC initial data packet to the server; receiving a QUIC handshake data packet returned by the server; verifying the legality of the server certificate based on the server certificate chain, and if the server certificate is legal, calculating a pre-master key according to the client DH private key and the server DH public key; deriving a 1-RTT session key based on the pre-master key; generating a signature verification message, and sending the client certificate and the signature verification message to a server; and synchronously using the 1-RTT session key to encrypt the application layer data with the server, and transmitting the data to the server in the 1-RTT encryption space of the QUIC protocol. According to the invention, the reliability of node identities and the confidentiality of data are ensured.
Owner:BEIJING LIUJINSUIYUE TECH CO LTD

Government administration department knowledge base access authority control method based on block chain

The invention discloses a government affair department knowledge base access authority control method based on a block chain, and relates to the technical field of block chains and information security, distributed nodes jointly participate in decision making, the performance bottleneck of a single control point and the single point fault risk are effectively eliminated, and the reliability and stability of a system are remarkably improved; when a plurality of departments need to collaboratively update a strategy, the intelligent contract based on the threshold multi-signature mechanism can automatically execute voting aggregation and a strategy effective process without depending on manual operation of a central administrator, so that the efficiency and the automation level of cross-department collaboration are greatly improved, and the instantaneity and the consistency of strategy change are ensured; the inherent non-tampering and traceable characteristics of the block chain provide powerful auditing guarantee for the whole authority management process; and each policy update request, voting process, final decision and policy version switching are completely recorded on the chain to form a non-repudiated audit clue.
Owner:HANGZHOU CHUANGMING ZHICAI INTELLIGENT TECH CO LTD

Relational merkle tree data store for storing product history information

A system including a relational Merkle tree data store including a child node and an additional child node. The child node has a linked parent node of a first Merkle tree, the linked parent node is tagged with a hash of the child node, and the child node and the additional child node are each tagged with an inverse hash of the linked parent node prior to the relational Merkle tree data store receiving a request for a product history of a product. The inverse hash is exclusively a cryptographic hash of the linked parent node, The inverse hash is used to perform a bi-directional traversal of the relational Merkle tree data store to retrieve the product history for the request. The relational Merkle tree data store includes the product history of the product.
Owner:EMTRUTH INC

Unified identity authentication and access control method for power multi-service system based on national secret algorithm

The invention discloses a unified identity authentication and access control method for a power multi-service system based on a national secret algorithm. According to the invention, through systematic deployment of SM2, SM3 and SM4 cryptographic algorithms, a full-link security protection system from identity authentication to authority management is constructed. The unified identity authentication platform adopts a mode of combining a distributed micro-service architecture and a hardware encryption machine, so that the physical security of key storage and operation is guaranteed, and the stability and response speed of the system are improved through a master-slave synchronization mechanism and interface delay control. A multi-source identity information federation acquisition mechanism realizes real-time integration of static attributes and dynamic behavior data, abnormal characteristics of user operation can be accurately captured by combining a risk assessment matrix of an improved LSTM-attention mechanism, and an SM2 bidirectional dynamic authentication protocol is automatically triggered when a risk score exceeds a dynamic threshold. Closed-loop protection of collection-evaluation-authentication-auditing is formed, and security threats such as identity counterfeiting and authority crossing are effectively resisted.
Owner:GUIZHOU WUJIANG HYDROPOWER DEV

Communication method and apparatus

This application relates to the field of communication technologies, and discloses a communication method and apparatus. A first communication apparatus receives capability information, where the capability information indicates that a second communication apparatus supports at least one of encrypting or decrypting a first message. The first communication apparatus encrypts the first message to obtain a second message, and sends the second message with a first timestamp, where the first timestamp indicates the sending time of the second message. According to the foregoing method, the first communication apparatus sends an encrypted message (that is, the second message) and the timestamp when the encrypted message is sent to the second communication apparatus, so that encrypted transmission can be performed on a message (for example, a clock synchronization message) that needs to be stamped, thereby improving security of the message transmission.
Owner:HUAWEI TECH CO LTD

Road traffic safety facility networking communication system

The invention relates to the technical field of road traffic safety and intelligent networking, in particular to a networking communication system for road traffic safety facilities. According to the system, a local traffic digital twinborn model is constructed by edge computing nodes and maintained in a federated synchronization mode; traffic data generated by an edge computing node is packaged in a data container with an embedded hash chain and a digital signature encryption traceability log, so that the integrity, primitiveness and traceability of the data are ensured; the vehicle-mounted terminal submits zero-knowledge proof as a service voucher, and the edge computing node verifies and authorizes the service on the premise of not obtaining the original sensitive data. According to the invention, efficient traffic state synchronization is realized by constructing the federated digital twinborn model, the credibility and safety of data exchange are guaranteed by using the data container, the terminal privacy is protected by means of the zero-knowledge proof technology, and the communication efficiency, the data safety and the privacy protection level of the vehicle-road cooperation system are comprehensively improved.
Owner:JIANGSU POLICE INST +1

Quantum communication system that switches between quantum key distribution (QKD) protocols and associated methods

A quantum communications system includes a communications system. A quantum key distribution (QKD) system is operable with the communications system and includes a transmitter node, a receiver node, and a quantum communications channel coupling the transmitter node and receiver node. The transmitter node transmits to the receiver node a bit stream of optical pulses and includes a plurality of different photon sources, each having associated therewith a respective QKD protocol, and a controller configured to select a given photon source from among the plurality thereof.
Owner:EAGLE TECHNOLOGY LLC

Secure data transmission method for wireless communication system

The invention discloses a secure data transmission method for a wireless communication system, which relates to the technical field of secure data transmission and comprises three steps of key generation and synchronization, physical layer subcarrier encryption and key enhancement and authentication. The method comprises the following steps: firstly, extracting multi-dimensional features through channel detection to generate a dynamic initial key, and setting a trigger condition to realize key synchronization; then, a permutation matrix is generated by using a secret key to perform scrambling encryption on a data subcarrier position, and a receiving end performs descrambling and then performs feedback through CRC verification so as to guarantee data integrity; and finally, quantum noise is introduced to enhance the randomness of the secret key, and zero-knowledge authentication is adopted to verify the identity, so that the security and the anti-attack capability of wireless communication data transmission are effectively improved.
Owner:SHENZHEN XIAOPAN TECHNOLOGY CO LTD

End-cloud collaborative large model secret state operation method and system

The invention discloses an end-cloud collaboration large model secret state operation method and system, the method is applied to an end-cloud collaboration trusted execution environment, and the application-end cloud collaboration trusted execution environment comprises an end-side security access layer and a cloud-side secret calculation layer for deploying a TEE cluster. The method comprises the following steps: terminal equipment negotiates with a cloud side encryption layer through an end side security access layer to generate a session key, and sends a first ciphertext generated based on the session key to a TEE cluster; and receiving a second ciphertext formed by the TEE cluster based on the first ciphertext, and decrypting the second ciphertext to obtain an interaction result. According to the method, large model secret state operation is carried out by utilizing a two-stage framework of an end side security access layer and a cloud side secret calculation layer, and cloud large model service privacy protection is realized. Meanwhile, the trusted execution environment constructed by the TEE and the heterogeneous AI expansion TEE is adopted, so that the large-model secret-state operation can be operated on a multi-architecture server and a multi-type GPU, and the requirements of diversified deployment scenes are met.
Owner:SHENZHEN CONFIDENTIAL COMPUTING TECH CO LTD

Network security verification method and system for distributed communication

The invention relates to the technical field of communication network security, and particularly discloses a distributed communication network security verification method and system, which comprises a two-factor identity authentication module, a dynamic key arrangement and encryption module and a cross-node integrity verification module, and the dynamic key arrangement is respectively connected with the two-factor identity authentication module, the encryption module and the cross-node integrity verification module. Through combination of biological feature anchoring and secure multi-party calculation, on the premise of protecting privacy of original biological data, deep binding of biological features and public keys is realized, and biological uniqueness is given to identity authentication; and dynamic authentication interaction is fused with a timestamp, a biological characteristic entropy value and zero knowledge proof, replay attacks are resisted, 'human-equipment-identity 'consistency is accurately verified, a public key fragment is updated after authentication is passed, an identity trust chain is continuously reinforced, and it is ensured that node identities are true and credible from the source.
Owner:SUZHOU COLLEGE OF INFORMATION TECH

Systems and methods for establishing a secure digital network environment

According to the instant application, there are provided systems and methods to create a quantum secure / resistant secure communication channel (QSR-SCC) for communication between two or more end-points at or within devices, applications, services, APIs, secure communication protocols, etc. In one example of a QSR-SCC, a quantum secure / resistant private network (QSR-PN) extends existing VPN solutions using one time pad (OTP) based keys, augmented handshake mechanisms, and interchangeable ciphers, for example, stream ciphers or block ciphers, for enhancing security associated with the QSR-PN.
Owner:QDS HLDG INC

Internal and external network audio and video secure transmission method and system based on cloud platform

The invention relates to the technical field of audio and video transmission, in particular to an internal and external network audio and video secure transmission method and system based on a cloud platform. By combining the load balancing technology with the real-time load state and the audio and video stream characteristics of the cloud platform, the encrypted traffic can be dynamically distributed to a plurality of back-end servers, and the calculation overhead in the encryption process can be effectively reduced through selection of the lightweight asymmetric encryption algorithm and the optimized key exchange process; in a handshake stage, by optimizing a key negotiation process and adjusting a key exchange process according to segmentation characteristics, the execution efficiency of a protocol is further improved, and by dynamically adjusting the execution opportunity of encryption operation, it is ensured that the encryption operation is executed at a proper opportunity, and the encryption efficiency is improved. By monitoring and adjusting the load distribution strategy and the encryption parameters in real time, the system operation mode can be dynamically adjusted according to the distortion degree and the transmission state of the audio and video streams, and the distortion degree of the audio and video streams is effectively reduced.
Owner:HANGZHOU XUNCHUAN TECHNOLOGY CO LTD

Authenticated health credential access methods and apparatus

A method for a system includes receiving with a first transceiver of an identity reader device, an ephemeral ID from a first smart device, outputting with the first transceiver, identity reader data to the first smart device, wherein the identity reader data comprises a first identifier and a challenge, receiving with the first transceiver, responsive data from the first smart device, wherein the responsive data comprises token data and contact tracing status of the first smart device, determining in a processor of the identity reader device, whether the first smart device is authorized in response to the ephemeral ID or the token data, and the contact tracing status, and directing with the processor, a peripheral device coupled to the identity reader device to perform a user-perceptible action in response to the processor determining that the first smart device is authorized.
Owner:OURARING INC

Aggregation regulation and control method and system for multiple virtual power plants

The invention discloses an aggregation regulation and control method and system for multiple virtual power plants, and relates to the technical field of intelligent power grid regulation and control, and the method comprises the steps: enabling a trust anchor to synchronize a link health abstract and preset a safe operation envelope and an autonomous rule when the communication is normal; after link disconnection is detected, an autonomous mode is immediately switched to generate power setting; during the autonomous period, recording power deviation and events and generating a hash track; after the link is recovered, two-way identity verification is completed through quantum key handshake, then a fingerprint set and sparse differences are uploaded, and latest global constraints are received; an aggregation composer reconstructs a system model based on a constraint relaxation matrix and a compensation weight vector, generates an optimized power instruction, smoothly replaces an autonomous instruction with a slip coefficient, recursively allocates spare capacity, and finally realizes the transition from autonomous smooth transition to unified scheduling of each virtual power plant; the method gives consideration to toughness, integrity, fairness and safety, and significantly and integrally improves the distributed energy regulation and control reliability and recovery efficiency.
Owner:JIANGSU RUIZHI POLYMER TECH CO LTD

Lightweight low-delay quantum key distribution method and system adaptive to electric power scene

The invention discloses a lightweight low-delay quantum key distribution method and system adaptive to an electric power scene, and belongs to the technical field of quantum communication and electric power communication crossing. The method comprises the steps cooperatively executed by a sending end and a receiving end: the sending end determines a basis vector based on a pre-associated quantum fingerprint sequence and a timestamp, sends a key through polarization-phase two-dimensional coding, generates a selection mark and executes privacy amplification; and a receiving end synchronizes a timestamp to determine a basis vector, compares the basis vector with the quantum fingerprint to complete authentication, decodes through an integrated module, performs collaborative error correction and executes privacy amplification. The system comprises functional modules of a sending end and a receiving end, is integrated on a miniaturized board card, and supports common-fiber transmission and protocol conversion. According to the method, the problems of high time delay, high deployment cost and poor adaptability of the traditional QKD are solved, the end-to-end time delay is reduced to 14 microseconds, the deployment cost is reduced by more than 60%, the requirements of high safety, low time delay and lightweight deployment of a power system are met, and the method is suitable for key services such as power dispatching and relay protection.
Owner:CHINA ELECTRIC POWER RESEARCH INSTITUTE CO LTD

Key exchange system, hub apparatus, QKD apparatus, method, and program

A key exchange system according to an aspect of the present disclosure includes: a plurality of quantum key distribution (QKD) apparatuses that executes a quantum key distribution protocol including at least error correction; and a plurality of hub apparatuses that performs encrypted communication with each other, in which each of the hub apparatuses includes a key generation unit configured to generate an encryption key for performing the encrypted communication with another hub apparatus based on information received from a corresponding one of the QKD apparatuses, and each of the QKD apparatuses includes a QKD processing unit configured to execute the quantum key distribution protocol with another QKD apparatus and generate a correction key from a ciphertext of random number information, and a first transmission unit configured to transmit information representing a result of basis reconciliation in the quantum key distribution protocol to a corresponding one of the hub apparatuses.
Owner:NT T INC

Supply chain collaboration platform based on hybrid block chain architecture and data intercommunication method

The invention discloses a supply chain collaboration platform based on a hybrid block chain architecture and a data intercommunication method, and relates to the field of data processing. In the system, an edge computing device preprocesses original data; preprocessing the data, encrypting the preprocessed data based on an SM2 cryptographic algorithm, and finally uploading the encrypted data to a block chain network; the block chain network is based on a mixed block chain architecture of an alliance chain layer and a light node synchronization layer, and performs data chaining by adopting a PBFT consensus mechanism; data storage is carried out by adopting encryption fragmentation and a distributed redundancy storage mechanism; meanwhile, data desensitization processing and authority level-to-level management are carried out by adopting a cryptographic algorithm; the block chain network embeds the AI demand prediction model into a smart contract, and dynamically adjusts a production plan and logistics scheduling; the scheduling optimization module feeds back an optimized scheduling result to the smart contract based on a multi-objective optimization and closed-loop feedback mechanism; according to the invention, the whole-process data uploading and dynamic optimization of the supply chain can be realized.
Owner:TIANJIN UNIV

Systems, methods, and apparatuses for secure hybrid based communications

Systems, methods, and apparatuses for securing a communication network are provided. Transmitting a first signal including encoding a first timestamp, a first identifier, and a message authentication component. Obtaining a message signal comprising one or more service variables associated and an encrypted unique identifier. Authenticating the encrypted unique identifier based on a comparison of the encrypted unique identifier against a plurality of stored unique identifiers in a lookup table. Generating a second signal comprising an encoding of a subset of the service variables, the encrypted unique identifier, and a second timestamp. Transmitting the second signal to each remote receiver in a subset of the plurality of remote receivers.
Owner:E RADIO USA

Reconfigurable quantum communication route synchronization system for urban trunk network

The invention discloses an urban trunk network-oriented reconfigurable quantum communication route synchronization system, which relates to the technical field of quantum communication and comprises a quantum channel state sensing module, a clock offset prediction and registration module, a reconfigurable route planning engine, an entangled state registration and regulation module, a synchronization instruction scheduling module and an optimization module. According to the system, de-coherence time, entanglement fidelity and synchronous offset risk of a quantum link are sensed in real time, a quantum link feasibility scoring graph is generated in combination with a graph neural network, and an optimal entanglement forwarding path is output according to the quantum link feasibility scoring graph; meanwhile, the width and rhythm of a transmission window are dynamically adjusted based on task priorities and network loads, and cross-node high-precision synchronization and resource coordination are achieved; a routing and synchronization strategy can be continuously optimized by introducing a communication performance evaluation model and a feedback learning mechanism; according to the invention, the stability of the quantum communication system in a complex urban network environment is significantly improved.
Owner:CHINA NAT INST OF STANDARDIZATION

Dynamic encryption and security level adaptive adjustment method for flight data

The invention discloses a dynamic encryption and security level adaptive adjustment method for flight data, particularly relates to the field of data security, and is used for solving the security and integrity problems of the flight data in an unstable network environment. According to the method, the mass of random seeds is quantified in real time in the mixing process, incremental seeds are added once the dispersion is reduced, and weak random source transmission is blocked; the historical track continuously provides threshold correction, so that the secret key updating rhythm and the link fluctuation are kept at the same frequency; a new secret key with sufficient safety margin is output by depending on a structured spin mixing and real-time source supplementing mechanism, and a secret key material keeps double characteristics of high discretization and high independence, so that randomness attenuation caused by packet missing, retransmission or node out-of-step is avoided; meanwhile, security level adjustment logic is deeply coupled with a key generation process, so that adaptive balance of encryption strength and operation load is realized, and the flight data is enabled to maintain collaborative excellent performance of confidentiality, integrity and real-time performance in a complex environment.
Owner:CHANGZHOU JIANGNAN GENERAL AVIATION CO LTD

Layered compression and encrypted storage method and system of airborne high-speed image, electronic equipment and storage medium

The invention provides an airborne high-speed image hierarchical compression and encrypted storage method and system, electronic equipment and a storage medium, and relates to the technical field of airborne image processing and data security storage. The method comprises the following steps: acquiring an airborne high-speed image sequence, synchronously monitoring surface pneumatic pressure pulsation data of an aircraft, converting the surface pneumatic pressure pulsation data into a deformable mirror surface group curvature control signal, adjusting mirror surface deformation parameters to compensate optical path wavefront distortion, and generating a stable image; air vortex characteristics are extracted to calculate an intensity distribution diagram, turbulence levels are divided, and corresponding compression strategies are adopted; extracting vortex phase features of each level to generate a dynamic key, and encrypting the layered compressed data stream; according to the invention, layered high-efficiency compression and dynamic encryption storage of airborne high-speed images in a turbulent environment can be realized, and data processing effectiveness and storage security are guaranteed.
Owner:WANGAN IFLYTEK INFORMATION TECH (BEIJING) CO LTD

Chaos enhanced credible authentication method based on vehicle-mounted gateway

The invention provides a chaos enhanced credible authentication method based on a vehicle-mounted gateway, and relates to the technical field of credible authentication, and the method comprises the following steps: generating a chaos sequence by using improved Tent chaos mapping; dynamically disturbing a round constant CK of an SM4 encryption algorithm by using the chaos sequence to generate a confused round key; synchronously updating a session key between the vehicle-mounted gateway and the ECU based on a cellular automaton and a chaotic mapping mechanism; identity authentication is executed through a bidirectional challenge-response mechanism; the vehicle-mounted gateway sends an encrypted challenge frame containing a random number R1 to the ECU; after decryption, the ECU generates a response frame by using a SipHash function and returns the response frame, and meanwhile, sends a reverse challenge frame containing a random number R2; and the vehicle-mounted gateway verifies the response frame and then generates a reverse response frame, and the two parties update the session key after the ECU passes the verification. According to the method, the anti-attack capability can be remarkably improved, the method can efficiently adapt to an embedded environment, and meanwhile the system reliability can be effectively enhanced.
Owner:CHENGDU CHUANGKESHENG ELECTRONIC TECH CO LTD

Method and device for dynamically configuring fusion strategy of virtual service system

The invention discloses a method and device for dynamically configuring a fusion strategy of a virtual service system, and relates to the technical field of computer software development, and the method comprises the steps: independently configuring basic information, fusion strategy attributes containing a plurality of fusion authentication access strategies and HTTP connection metadata for each to-be-fused service system, generating service application configuration information; a fusion account is created, account fusion binding management is executed in combination with a preset account binding management configuration strategy, and a binding record is generated; a fusion account is maintained by adopting a preset three-level cache binding rule; executing configuration data standardization processing and persistent storage; obtaining configuration change information, and synchronously updating the permission metadata; in the virtual login authentication process, executing cross-system authority authentication and session maintenance between the virtual service system and the to-be-fused service system according to the authentication access strategy type and a preset three-level maintenance rule; according to the invention, the problems of high fragmentation of authority management and system islanding of multiple service systems are solved.
Owner:BEIJING CAPITEK

Intelligent check-in management platform without license

The invention discloses an intelligent non-certified check-in management platform, and particularly relates to the technical field of data analysis, which comprises multi-modal data acquisition, spatial topological relation verification, ownership chained derivation and intelligent decision routing. According to the invention, the verification model is established by using an intelligent algorithm, abnormal behaviors or risk areas are accurately identified, the processing flow is optimized by combining decision routing, the defect of insufficient identity verification precision is effectively solved, the check-in process is ensured to be safe and reliable, the evidence storage system is established based on the block chain technology, non-tampering tracing of check-in records is realized, and the check-in efficiency is improved. The authority change is automatically processed through the intelligent contract, the manual intervention requirement is reduced, the check-in efficiency is remarkably improved, the safety dispute risk is reduced, and closed-loop credible technical support is provided for accommodation management.
Owner:景安大数据科技有限公司

Personal anomaly detection methods and apparatus

Methods, systems, and devices for manufacturing of a wearable ring device are described. Generally, the techniques described herein may support a manufacturing process that reduces manufacturing complexities and deformities. For example, a deformable band may be positioned (e.g., by a manufacturing system) through an inner circumference of an inner housing of a wearable ring device. The manufacturing system may stretch the deformable band to create tension across at least a portion of the inner housing member, the tension including at least axial tension across one or more cutouts in the inner housing member. Accordingly, the manufacturing system may inject a fillable material through an opening in the wearable ring device, such that the fillable material fills a cavity between the inner housing member and an outer housing member of the wearable device and fills the one or more cutouts, contacting the deformable band, without further deforming the deformable band.
Owner:OURARING INC

Internet of Things equipment access authentication method and system based on edge computing

The invention discloses an Internet of Things equipment access authentication method and system based on edge computing. The method comprises the following steps: equipment sends an access request, and an edge node analyzes a protocol to generate a feature fingerprint; the cloud executes first-level protocol white list verification and second-level certificate and feature fingerprint verification, matches an authentication strategy according to environmental parameters and issues a token; the edge node executes localized authentication, monitors the state in real time and dynamically adjusts the strategy; and after the authentication is passed, synchronizing information to the cloud to complete registration. The system comprises an equipment access layer, an edge computing layer, an authentication management layer and an interactive interface layer, the edge layer analyzes protocols such as DALI and BACnet, and the management layer constructs a three-dimensional strategy mapping table and supports graphical configuration and machine learning optimization strategy libraries. According to the Internet of Things equipment access authentication method and system based on edge computing, low-delay and high-flexibility access of multi-protocol equipment is achieved, the real-time performance, expansibility and safety are improved, and the method and system are suitable for intelligent buildings, industrial Internet of Things and other scenes.
Owner:ZHONGWANGDAO TECH GRP CO LTD

Quantum key synchronous storage method for QKD

The invention discloses a quantum key synchronous storage method for QKD (quantum key distribution), which belongs to the technical field of digital information transmission, and comprises the following steps of: monitoring a node connection state of a quantum key distribution network, generating a dynamic topological graph, acquiring a key generation rate of a node in the dynamic topological graph, generating a synchronous triggering rule by combining a synchronous period reference value to trigger a key synchronization instruction, and storing the key synchronization instruction. Sending the key synchronization instruction to the target node; receiving a returned key data packet, extracting a key hash value abstract, and performing edge collaborative pre-verification to generate a pre-verification result; executing a key storage operation based on the pre-verification result; and obtaining a key state label in the key data packet, writing the synchronized key into the corresponding physical storage area, and updating the priority mapping relationship of the logic index layer. According to the method, a linkage mechanism of dynamic topology sensing triggering, edge collaborative pre-verification and state self-adaptive storage is adopted, efficient key synchronization can be achieved in a dynamic network, and meanwhile the utilization rate of storage resources and the anti-attack capacity of the system are improved.
Owner:CHINA NAT INST OF STANDARDIZATION

Quantum based system and method of multipoint communications

Some embodiments relate to a communication network comprising at least one receiver system optically coupled to a plurality of transmitter systems for transmission of synchronization signals generated by the at least one receiver system to the plurality of transmitter systems over a unidirectional synchronization channel. The at least one receiver system configured to embed into the synchronization signals thereby generated additional data indicative of an internal time count thereof for synchronization of transmission of data / signals from each one of the plurality of transmitter systems to said at least one receiver system over a sparse data / signals unidirectional communication channel.
Owner:HEQA SECURITY LTD