Control plane device and data plane device based on SDN (Software Defined Network) and authentication method and system based on SDN data plane device
A data plane and control plane technology, applied in the field of communication, can solve complex problems, achieve reliable channels, ensure safety, and simplify operations
- Summary
- Abstract
- Description
- Claims
- Application Information
AI Technical Summary
Problems solved by technology
Method used
Image
Examples
Embodiment 1
[0028] Such as figure 2 Shown, a kind of authentication method based on SDN network data plane equipment, described authentication method comprises:
[0029] First, when the data plane device judges that there is no first permanent certificate, it reads and sends the pre-stored temporary certificate; the first permanent certificate is the permanent certificate of the data plane device;
[0030] Secondly, the control plane device receives and authenticates the temporary certificate, and after passing the authentication, actively sends to the data plane device or cooperates with the data plane device to obtain the first permanent certificate and the first root certificate, and the first permanent certificate and the first root certificate are stored in the RA / CA, and the first root certificate is used to authenticate the control plane device;
[0031] Finally, the data plane device and the control plane device perform mutual authentication based on the first permanent certific...
Embodiment 2
[0034] see image 3As shown, an authentication method based on an SDN network data plane device is mainly used to illustrate that the control plane device actively sends the first The permanent certificate and the first root certificate specifically include: the temporary certificate authentication process, the permanent certificate acquisition process, and the two-way authentication process; wherein, the two-way authentication process is consistent with the existing technology and will not be described in detail; the temporary certificate authentication process includes:
[0035] Step 1: start the data plane device;
[0036] Step 2: Determine whether there is a permanent certificate for the data plane device; if so, go through the normal permanent certificate-based authentication process;
[0037] The third step is to read the temporary certificate if it does not exist; the specific operation includes: burning a temporary certificate (or manufacturer certificate, unified by ...
Embodiment 3
[0046] see Figure 4 As shown, an authentication method based on an SDN network data plane device is mainly used to illustrate that the control plane device cooperates with the data plane device to obtain the first permanent certificate in the process of obtaining the permanent certificate of the data plane device after passing the temporary certificate authentication. The situation of the certificate and the first root certificate specifically includes: the temporary certificate authentication process, the permanent certificate acquisition process, and the two-way authentication process; among them, the two-way authentication process is consistent with the existing technology, and the temporary certificate authentication process is the same as image 3 The shown embodiments are the same and will not be repeated; the permanent certificate acquisition process includes:
[0047] First: the control plane device feeds back the address of RA / CA to the data plane device;
[0048] S...
PUM
Abstract
Description
Claims
Application Information
- R&D Engineer
- R&D Manager
- IP Professional
- Industry Leading Data Capabilities
- Powerful AI technology
- Patent DNA Extraction
Browse by: Latest US Patents, China's latest patents, Technical Efficacy Thesaurus, Application Domain, Technology Topic, Popular Technical Reports.
© 2024 PatSnap. All rights reserved.Legal|Privacy policy|Modern Slavery Act Transparency Statement|Sitemap|About US| Contact US: help@patsnap.com