Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

Security access system of novel power business terminal based on SDP

A power service and secure access technology, applied in transmission systems, digital transmission systems, secure communication devices, etc., can solve problems such as unauthorized access of legal terminals, insufficient security analysis, and embezzlement of legal terminals to ensure security, The effect of saving computing and communication costs and reducing the pressure of computing and communication

Pending Publication Date: 2022-05-27
NORTH CHINA ELECTRIC POWER UNIV (BAODING)
View PDF0 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0004] (1) The traditional border security concept adopts the method of connecting first and then authenticating, so that the service port is open to the outside world, so malicious users or attackers will use network vulnerabilities to launch network attacks;
[0005] (2) Since the border security devices are deployed on the network border, there is a lack of data from the terminal side and the resource side, and there is no linkage between them. The security analysis of threats is not comprehensive enough, and it is easy to cause illegal terminal access and legitimate terminals to be blocked. Misappropriation, malicious unauthorized access to legitimate terminals

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Security access system of novel power business terminal based on SDP

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0031] In order to better understand the present invention, the content of the present invention is further illustrated below in conjunction with the examples, but the content of the present invention is not limited to the following examples.

[0032] like figure 1 As shown, the secure access system of a new type of power service terminal based on SDP includes the following steps:

[0033] step 1:

[0034] When the new power service terminal goes online, it first sends the SPA data packet to the SDP controller, which includes the timestamp and the ciphertext of the device fingerprint, and uses the SM9 algorithm to sign. Device Fingerprint ID IH It consists of subject attributes (MAC address, operating system, port, protocol, service, manufacturer), environmental attributes (online time, IP, access location, business traffic size) and object attributes (department, management personnel, authorization time, authorization level) )constitute. The connection initiating host IH ...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses an SDP-based novel power service terminal security access system, which comprises the following steps of: 1, sending an SPA data packet to an SDP controller, and signing by using an SM9 algorithm; 2, the SDP controller performs signature verification processing on the received SPA data packet, and notifies the terminal to establish TCP connection after the signature verification is passed; 3, after the TCP connection is established, sending access request information; 4, judging whether the terminal completes SPA authorization or not, for the authorized terminal, generating a session identifier IDS by using the random number R1 in the SPA packet of the terminal, and meanwhile, sending identity information IDIH of the access terminal and the session identifier IDS of the access request to the gateway side by the SDP controller; 5, the terminal establishes TCP connection with the port of the corresponding gateway according to the service information ServiceList in the access response data packet, and completes identity authentication; and 6, forming a session key by using the identity information IDIH of the access terminal, and establishing a bidirectional encryption tunnel. According to the method, the attack success rate is obviously reduced, the calculation and communication pressure is obviously reduced, and the communication security is guaranteed.

Description

technical field [0001] The invention relates to an SDP-based safety access system for a new type of power service terminal, belonging to the technical field of safety access of power service terminals. Background technique [0002] With the continuous development of our society, various types of distributed energy resources, electric vehicles, etc. are connected in large quantities, terminals and users are more generalized, network access is diversified, and a large number of business types and heterogeneous business models have formed. The huge business network and the requirement of intelligent interaction make the network boundary more blurred, the ubiquitous connection of massive terminals and the access of various terminals, the self-protection of the terminal, the identification and authentication of the terminal, and the access control of the terminal during business interaction, etc. put forward a greater demand. [0003] At present, the security access system of th...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
IPC IPC(8): H04L9/32H04L9/40H04L67/12H04L67/141H04L69/163
CPCH04L9/3247H04L63/0428H04L63/0876H04L67/12H04L67/141H04L69/163Y04S40/20
Inventor 吴克河张继宇程瑞程伟崔文超
Owner NORTH CHINA ELECTRIC POWER UNIV (BAODING)
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products