Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

8 results about "End to end security" patented technology

Defining "End". The traditional definition of an endpoint is a client or server. In this definition end-to-end security starts on the client and ends on the server. Given the multitude of applications running in parallel on an operating system, and given increasing virtualization, this definition is usually no longer precise enough.

Fast joins and low memory usage for end-to-end (E2E)-secure applications using light MLS clients

ActiveUS12641081B2Securing communicationEnd to end securityParallel computing
A user device joins a communication session between the user device and a plurality of devices. The user device and the plurality of devices use a Message Layer Security (MLS) protocol for end-to-end security. The user device identifies a first device of the plurality of devices and obtains a portion of authentication tree information associated with the communication session. The portion being associated with the first device. The user device authenticates the first device based on obtaining the portion of the authentication tree information.
Owner:CISCO TECHNOLOGY INC

Method for establishing end-to-end secure communication of unmanned aerial vehicle under cloud network architecture

ActiveCN117376911Breduce overheadReasonable allocation of resourcesSecure communicationEnd to end security
The application discloses a method for establishing end-to-end secure communication of unmanned aerial vehicle under cloud network architecture, and takes cloud server as a security service center to provide full-process authentication service for unmanned aerial vehicle end system; the cloud server only issues public authentication materials to unmanned aerial vehicles, and session key negotiation and establishment of end-to-end secure communication are realized between unmanned aerial vehicles; the unmanned aerial vehicle end system does not need to store authentication materials of other unmanned aerial vehicles in advance, the cloud server is driven by specific tasks, and specific authentication materials required for key negotiation are issued to unmanned aerial vehicles which need to be securely cooperated according to task requirements. The application only requires that the cloud server and any one of the unmanned aerial vehicles for key negotiation establish a communication connection, and the authentication materials issued by the cloud server can make the unmanned aerial vehicles realize key negotiation and establish an end-to-end secure channel in a specific range; different temporary public keys are used for each request message, which can effectively prevent the harm caused by long-term and short-term secret leakage.
Owner:XIDIAN UNIV

Data processing device and communication method based on open-source honk and star flash communication protocol

PendingCN122372996AEnd to end securityCarrier signal
This invention discloses a data processing device and communication method based on the open-source HarmonyOS and the StarScan communication protocol. The device employs the StarScan protocol, combining physical layer hybrid modulation adaptive switching, improved time-division multiplexing and carrier sense hybrid access, and a simplified protocol stack to achieve microsecond-level end-to-end latency and high anti-interference capability. An end-to-end security system is constructed through device pre-registration, elliptic curve key negotiation, AES-256-GCM encryption, and two-way certificate authentication. Standardized interfaces for multiple types of terminals are implemented with dynamic resource allocation, supporting hot-swapping and improving scalability. The D-S evidence theory is used to fuse verification results from multiple terminals, improving identification accuracy and anti-spoofing capabilities, while reserving emergency bandwidth and implementing priority scheduling to ensure anomaly handling. Automatic device discovery is achieved based on enhanced beacon broadcasting and sliding window detection, combined with improved on-demand distance vector routing for topology optimization, supporting dynamic networking and self-maintenance, reducing deployment and maintenance complexity.
Owner:BEIJING ANSHIHUAYE TECH CO LTD

A bluetooth identity-oriented end-to-end secure communication method and system

The application discloses a kind of end-to-end security communication methods and systems for bluetooth identity identification, method includes the following steps: S1, initialization stage, using LE Secure Connections protocol establishes trusted key negotiation channel, and core key is derived;S2, daily identification stage, through dynamic resolvable private address RPA and encryption verification, prevent replay attack and relay attack;S3, storage stage, utilize hardware encryption engine and partition protection, ensure the physical security of key.The application uses the above-mentioned end-to-end security communication method and system for bluetooth identity identification, realizes end-to-end security coverage, from the initial pairing of mobile phone and equipment, to the dynamic verification of daily communication, to the hardware level protection of core key, forms whole-link closed-loop security system, effectively resists various malicious attacks, adapts high-risk scene such as finance, security, improves the security and reliability of bluetooth identity identification.
Owner:GUIZHOU HUOYANSHAN ELECTRICAL CORP

A verifiable change access control method and system based on SET and two atomic locks

PendingCN122093104AImprove auditabilityImprove certaintyUser identity/authority verificationEnd to end securityClosed loop
This invention relates to the field of computer security technology, specifically to a verifiable change access control method and system based on SET and dual atomic locks. The method includes generating a unique hash identifier for the request intent: intent_hash; constructing and issuing a certificate, which at least includes a secure execution type (SET), an expiration date, a replay protection field, a root of evidence, and a signature; binding the certificate to the intent_hash; performing expiration date checks through fast gating; and performing atomic occupancy operations based on the replay protection key. This verifiable change access control method and system based on SET and dual atomic locks achieves an end-to-end security closed loop, eliminating the possibility of execution bypass; providing industrial-grade consistency and replay protection guarantees through dual atomic operations and dual-channel consistency gating; constructing a self-verifying and tamper-proof chain of evidence, greatly improving auditability; forming a tiered defense-in-depth system, enhancing the overall system's robustness and resistance to censorship; and improving the system's determinism and observability.
Owner:GUANGZHOU GUCE CANGQIONG TECHNOLOGY CO LTD

Method and apparatus for establishing end-to-end security in wireless communication system

ActiveUS12671592B2End to end securityCommunications system
The disclosure relates to a 5G or 6G communication system for supporting a higher data transmission rate. Disclosed is a method of a first terminal in a wireless communication system including transmitting a first request message for information required for establishing security between terminals to a first entity, receiving a first response message including the information required for establishing security between terminals from the first entity in response to the first request message, generating security information for the first terminal, based on the response message, transmitting a second request message including the security information for the first terminal to a relay terminal, establishing security with the relay terminal, receiving a second response message including security information for a second terminal from the relay terminal in response to the second request message, and generating an end-to-end session key between terminals, based on the received security information for the second terminal.
Owner:SAMSUNG ELECTRONICS CO LTD

Method and apparatus for optical service unit encryption transmission

PendingCN122372869AData packEnd to end security
This application provides a method and apparatus for encrypted transmission of optical service units (OSUs). The method includes: acquiring N channels of service data; mapping the N channels of service data to N channels of OSU frames, and mapping the N channels of OSU frames to Optical Transport Network (OTN) frames, wherein the N channels of service data correspond one-to-one with the N channels of OSU frames, the N channels of service data include a first channel of service data, the N channels of OSU frames include a first OSU frame, the payload area of ​​the first OSU frame includes the first channel of service data encrypted according to first encryption information, the overhead area of ​​the first OSU frame includes the first encryption information, and N is an integer greater than 1; and transmitting the OTN frames. This method is used to encrypt OSU frames, achieving end-to-end secure transmission of OSUs.
Owner:HUAWEI TECH CO LTD