Integrity authentication method and device for virtual client device

A technology for virtual clients and client devices, applied in the field of integrity authentication methods and devices for virtual client devices, can solve problems such as inability to guarantee the security of virtual CPEs, and achieve the effects of ensuring predictability and improving security

Pending Publication Date: 2022-07-19
CHINA MOBILE COMM LTD RES INST +1
View PDF0 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0005] The embodiment of the present invention provides a virtual client device integrity authentication method and device, which is used to solve the problem that the security of the virtual CPE under the current SD-WAN architecture cannot be guaranteed

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Integrity authentication method and device for virtual client device
  • Integrity authentication method and device for virtual client device
  • Integrity authentication method and device for virtual client device

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0118] The technical solutions in the embodiments of the present invention will be clearly and completely described below with reference to the accompanying drawings in the embodiments of the present invention. Obviously, the described embodiments are part of the embodiments of the present invention, but not all of the embodiments. Based on the embodiments of the present invention, all other embodiments obtained by those of ordinary skill in the art without creative efforts shall fall within the protection scope of the present invention.

[0119] Please refer to figure 1 , Embodiment 1 of the present invention provides an integrity authentication method for a virtual client device, which is executed by an SD-WAN controller, including:

[0120] Step 11: Receive the identity information of the virtual client device created by the physical client device sent by the physical client device, where the identity information is signed by the physical client device using the authenticat...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention provides an integrity authentication method and device for virtual client equipment. The method comprises the following steps: an SD-WAN controller sends an integrity challenge signaling to the virtual client equipment; receiving a first integrity measurement list sent by the virtual client device, wherein the first integrity measurement list is generated by the virtual client device by using the integrity measurement system structure and signed by using the virtual trusted computing chip; performing integrity authentication on the virtual client device according to the first integrity measurement list; if the integrity authentication of the virtual client device is passed, indication information is sent to the virtual client device, and the indication information is used for indicating the credibility of a physical client device where the virtual client device is located. In the invention, the SD-WAN controller performs integrity authentication on the virtual client device, so that the virtual operating system of the virtual client device can be ensured not to be tampered, the predictability of the behavior of the virtual operating system is ensured, and the security of the system is improved.

Description

technical field [0001] Embodiments of the present invention relate to the technical field of information security, and in particular, to an integrity authentication method and device for a virtual client device. Background technique [0002] SD-WAN (Software Defined WAN, Software Defined Wide Area Network) is a service formed by applying SDN (Software Defined Network, Software Defined Network) technology to WAN scenarios. This service is used to connect enterprise networks, data centers, Internet applications and cloud services across a wide geographic area, and is designed to help users reduce WAN expenses (low cost) and increase network connection flexibility. Through the software-defined method, it provides intelligent route selection, convenient deployment, and simple maintenance of WAN. [0003] Customer Premise Equipment (CPE) is the key device of SD-WAN. The device is deployed on the user side to provide users with software-defined virtual WAN services. In the curre...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): G06F9/455G06F21/64
CPCG06F9/45558G06F21/64G06F2009/45587
Inventor 杨朋霖黄静
Owner CHINA MOBILE COMM LTD RES INST
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products