Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

277 results about "IPv6" patented technology

Internet Protocol version 6 (IPv6) is the most recent version of the Internet Protocol (IP), the communications protocol that provides an identification and location system for computers on networks and routes traffic across the Internet. IPv6 was developed by the Internet Engineering Task Force (IETF) to deal with the long-anticipated problem of IPv4 address exhaustion. IPv6 is intended to replace IPv4. In December 1998, IPv6 became a Draft Standard for the IETF, who subsequently ratified it as an Internet Standard on 14 July 2017.

Big data driven dynamic resource scheduling method for IPv6 edge computing node

The invention discloses a big data driven dynamic resource scheduling method for an IPv6 edge computing node, and relates to the technical field of edge computing, and the scheduling method comprises the following specific steps: S100, resource data collection and integration: deploying monitoring equipment at the IPv6 edge computing node, collecting computing, network, storage and energy resource data, and transmitting the data to a server; through multi-dimensional resource data acquisition and storage, comprehensive monitoring and quantitative integration of calculation, network, storage and energy resource data are realized, the resource scheduling is more accurate and efficient through the comprehensive data acquisition mode, and through construction of the energy consumption performance model, the performance value can be accurately calculated, and the energy consumption performance is improved. And the model is trained and optimized by using big data, so that the balance of energy consumption and performance in the resource scheduling process is realized, the resource utilization efficiency is improved, the energy consumption cost is reduced, and powerful support is provided for green and sustainable development of edge computing nodes.
Owner:NAT COMPUTER NETWORK & INFORMATION SECURITY MANAGEMENT CENT JIANGXI BRANCH

Computer-implemented methods and systems for improved communications across a blockchain network

The invention resides in a computer-implemented communication method. The method comprises a mechanism for distributing blockchain and / or cryptocurrency-related communications such as alerts, notifications and updates across an electronic network to one or more recipients as efficiently and swiftly as possible. Embodiments may use IPv6 multicast to perform such improved communications. A communication can comprise a code, flag or filter which enables the communication to be targeted at particular recipient(s) and allow multicast group members that have no interest or authorised access to the contents of the communication to ignore it. Thus, improvements are provided in respect of processing resources and time. In some examples, the disclosure can be advantageous for the implementation of a blockchain-related alert key or system which can aid in network responses to emergencies or threats, thus improving the security of the blockchain network.
Owner:NCHAIN LICENSING AG

QUIC Packet Transmission Method and Related Device

A QUIC packet transmission method comprises setting a QUIC header in a next header of an IPV6 extension header, or setting the QUIC header inside an IPV6 extension header, so that the QUIC packet carries the QUIC header without carrying a UDP header.
Owner:HUAWEI TECH CO LTD

IPv6 network mode adaptive configuration method and system based on RA message

The invention relates to the technical field of IPv6 self-configuration, in particular to an IPv6 network mode self-adaptive configuration method and system based on an RA message. In the method, a finite-state machine establishes a state transition path according to the combination relation of M and O flag bits in an RA message cache set and prefix field content, converts a network mode recognition process into a quantifiable state judgment sequence, and sends the state judgment sequence to the RA message cache set; configuration ambiguity caused by flag bit fluctuation in traditional static judgment is eliminated, pattern recognition under network environment changes has continuity and self-consistency, the classification regression tree constructs a branch judgment path with the duration, the advertisement interval and the prefix consistency of an RA source as characteristic variables, an optimal node is selected through a hierarchical splitting algorithm, and the judgment accuracy is improved. The dynamic mapping of stateful and stateless configuration paths is realized, the misjudgment rate of configuration branches is reduced, and the address allocation delay is optimized, so that the IPv6 self-configuration has a structured decision-making capability and a parameter mapping self-optimization characteristic, and the connection reliability, the address generation speed and the configuration accuracy are improved.
Owner:SHENZHEN TONGKANG CHUANGZHI TECH CO LTD

System and method to detect and countermeasure RPL attacks in IoT network

A system and a method to detect an attack on an IoT network is disclosed. The IoT network includes interconnection of multiple IoT devices. The method includes receiving, by a network connection device, multiple ICMPv6 network packets from IoT devices and outputting multiple output packets; and matching, by a routing device, a network traffic pattern to attack signatures structured as a taxonomy according to which part of a packet is misused. The taxonomy includes a branch to a data plane attack and a control plane attack, respectively. When an IPv6 RPL packet is detected, the method includes checking for generating, modifying, and replaying attacks by an attacker. When a non-RPL packet is detected, the method includes checking for dropping and leaking packet attacks by the attacker. When the attack is detected, the method includes invoking a solution to the attack. The solution includes mitigation of the attack by the attacker.
Owner:KING FAHD UNIVERSITY OF PETROLEUM AND MINERALS

Low power, high resiliency internet of flying things network

Embodiments of the disclosure relate to a mesh network. The mesh network includes a plurality of drones and a border router. The plurality of drones is configured to communicate with each other and with the border router over a first protocol. The first protocol uses IPV6 mesh connectivity at a first bandwidth. At least one drone of the plurality of drones operates as a router, and at least one drone of the plurality of drones operates as an end device. The router is configured to communicate with the border router and with the end device, and the end device is configured to communicate only with the router. The border router can be configured to communicate with an external network over a second protocol using a second bandwidth, and the second bandwidth can be greater than the first bandwidth.
Owner:UNIV OF NORTHERN IOWA RES FOUND

IPv6 stateless address dynamic planning method and system based on elastic prefix

The invention discloses an IPv6 stateless address dynamic planning method and system based on an elastic prefix, particularly relates to the field of network communication, is used for solving the problems of prefix rigidity and service semantic deficiency in IPv6 stateless address configuration of a railway network, and is implemented by extracting basic prefix information and compressing a service level identifier to generate an elastic sub-prefix bit string. The prefix is ensured to be flexibly embedded into multi-level semantics; fusing the MAC address of the host to construct a temporary interface ID, and enabling the address to have deep association between equipment and service; splicing candidate addresses and broadcasting verification information to collect conflict feedback to realize real-time conflict detection; based on feedback calculation correlation strength and a variation rate index, driving a bit flipping optimization prefix and an interface ID through a support vector machine decision, and forming an iterative adjustment closed loop; and finally, repeatedly verifying and confirming a final address and feeding back the final address to the semantic pool, or rolling back and expanding the prefix so as to solve stubborn conflicts, thereby overcoming the prefix rigidity and semantic deficiency of the traditional mechanism.
Owner:SHENYANG QIANGXIN COMM TECH CO LTD

A Spatial Network Flow Detection Method

The present invention discloses a method for in-flow detection in a spatial network, belonging to the field of communication technologies. The method first receives packets and extracts the Flow Label field in the IPv6 protocol header; then performs node type judgment and sampled packet identification; and then conducts in-flow detection processes for encapsulation nodes, transmission nodes, and decapsulation nodes according to the node types. In the method of the present invention, the compression of in-flow detection data separately compresses the in-band operation, administration, and maintenance option headers and metadata to obtain in-flow detection option headers and metadata, which saves more memory resources; the present invention judges the node types and identifies sampled packets through the Flow Label field in the IPv6 protocol header, which is accurate, efficient, and resource-saving; in addition, a sampling template method is adopted to indicate each node to collect in-flow detection metadata; the in-flow detection option header is added between the UDP / TCP protocol header and the payload of the original packet for transmission to avoid affecting the original packet protocol header.
Owner:NANJING UNIV

Identification method for interface address of IPv6 router

The invention discloses a method for identifying an interface address of an IPv6 router, and belongs to the technical field of network measurement. The method comprises the following steps: acquiring an IPv6 prefix list, and initializing experience information; selecting a current target IPv6 prefix according to the IPv6 prefix list, randomly generating a specific detection target in the current target IPv6 prefix, evaluating the effectiveness of the specific detection target by using experience information, and retaining the effective specific detection target; repeating the operation until the number of specific detection targets reaches a set value; performing stateless online detection according to each specific detection target to obtain a detection result; and updating the experience information, iterating the detection operation until the total quantity of the sent data packets reaches the total detection budget, obtaining the reachable interface address and relative position of the local address based on the detection result in each round of iteration, and completing the interface address identification. According to the invention, the problem that the existing method cannot adaptively allocate detection resources and minimize unnecessary detection is solved.
Owner:ZHONGYUAN ENGINEERING COLLEGE

IPv6 traffic prediction system based on machine learning

The invention relates to the technical field of traffic prediction, and discloses an IPv6 traffic prediction system based on machine learning, and the system comprises a traffic collection module which is used for capturing the original traffic data of an IPv6 network interface and carrying out the protocol analysis and traffic classification preprocessing, and obtaining the preprocessed IPv6 traffic data; the multi-dimensional feature extraction module is used for performing multi-modal feature extraction on the preprocessed IPv6 flow data to generate a fusion feature vector; the real-time prediction module is used for inputting the fusion feature vector into a dynamic prediction model to obtain an IPv6 traffic prediction value of a future preset duration; and the dynamic scheduling module is used for pushing the IPv6 traffic prediction value of the future preset duration to a traffic scheduling controller so as to realize dynamic scheduling of network resources. According to the method, the network traffic prediction accuracy and real-time performance are improved, the adaptive capacity to IPv6 traffic mode change is enhanced, and reasonable distribution and efficient utilization of network resources are effectively promoted.
Owner:NAT COMPUTER NETWORK & INFORMATION SECURITY MANAGEMENT CENT JIANGXI BRANCH +1

Data forwarding method and device, network equipment and SRv6 data forwarding system

The embodiment of the invention provides a data forwarding method and device, network equipment and an SRv6 data forwarding system, and relates to the technical field of IPv6 forwarding. The method comprises the following steps: a network device receives a shared key generated and issued by a controller based on network topology information of the SRv6 data forwarding system, encrypts a preset header field of an original message based on the shared key when the shared key is used as a source node of data forwarding, and forwards the encrypted message; when serving as an intermediate node for data forwarding, verifying and re-encrypting a preset header field of the received message based on the shared key, and forwarding; and when the received message is used as a destination node for data forwarding, the preset header field of the received message is verified and decrypted based on the shared key to obtain the original message, so that an attacker is prevented from obtaining path information through a plaintext, and network topology exposure is avoided.
Owner:MAIPU COMM TECH CO LTD

Internet of vehicles security authentication and data encryption transmission system integrated with IPv6 technology

The invention discloses an Internet of Vehicles security certification and data encryption transmission system integrated with an IPv6 (Internet Protocol Version 6) technology. According to the invention, the key strategy can be automatically optimized according to the dynamic environment in the actual operation of the Internet of Vehicles, and the dynamic balance between the security protection and the communication efficiency is realized. The system can intelligently judge the cracking risk faced by a current key by combining real-time data such as a vehicle driving state and network environment characteristics, so as to flexibly adjust the key length and the updating frequency: when the network environment is safe and the vehicle is in a low-risk area, the key service cycle is properly prolonged, and the basic key length is maintained to reduce the communication overhead; when a potential threat is detected or a vehicle enters a complex road section, the secret key security level is automatically improved, and the rotation period is shortened to enhance the protection capability. The system burden cannot be increased due to excessive encryption, potential safety hazards cannot be left due to insufficient protection, and key management better meets the actual requirements of high-speed movement of vehicles and rapid change of scenes in the Internet of Vehicles.
Owner:XIANGTAN TECHNICIAN COLLEGE

Power data network wide area synchronous transmission system based on APN6 intelligent slicing

The invention discloses a power data network wide area synchronous transmission system based on APN6 intelligent slicing, and relates to the technical field of power system communication, the service type of current transmission data is obtained through an identification embedding module, and a structured APN6 identifier is embedded in a Hop-by-Hop option header of an IPv6 extension header; the slice creation module judges whether retransmission is carried out or not according to CRC verification, dynamically creates multi-level slices according to time delay levels, and calculates an optical fiber refraction compensation value according to topological path coding; when the phase compensation module monitors that a line fault or a node is overloaded, different strategies are executed for slices of different levels, and transmission phases of slices around a fault area are adjusted through the signal modulation module; and when the slice capacity expansion module detects that the new energy cluster oscillates, bandwidth directional capacity expansion is executed according to the slice resource elastic scheduling framework. According to the method and the device, the data identification accuracy and the slice resource adaptability are improved.
Owner:CHINA SOUTHERN POWER GRID COMPANY

Methods, devices, and systems for BIER message forwarding

This application provides a method, device, and system for forwarding BIER packets. The method includes: a first network device receiving a BIER packet sent by a second network device. The BIER packet includes an IPv6 header, a BIER header, and a multicast packet. The destination address in the IPv6 header or a first field in the BIER header carries a service identifier, which is used to identify a Virtual Private Network (VPN) instance. The first network device determines a Virtual Private Network (VRF) table based on the service identifier and a first correspondence, whereby the first correspondence includes the correspondence between the service identifier and the VRF table. The first network device then sends a multicast packet to a first User Edge (CE) device listed in the VRF table. The technical solution provided by this application is relatively simple to implement when the egress edge device identifies a VPN instance.
Owner:HUAWEI TECH CO LTD

Method and equipment for realizing IPv6 segment routing network slice forwarding

The invention provides a method and equipment for realizing IPv6 segment routing network slice forwarding. The method comprises the following steps: setting a strict mode in a first SRv6 data message descriptor matched with a strict mode mark table item of a directional access control table; associating the first SRv6 data message matched with the network slice channel mapping table item of the direction access table to the network slice channel of the network slice instance; searching a real next hop out interface in the longest route matching table based on the outer layer destination IP address of the first SRv6 data message; caching the first SRv6 data message in a cache space corresponding to the network slice instance in an outbound buffer; and scheduling the first SRv6 data message to a port queue bound with the network slice channel in the real next hop-out interface.
Owner:NEW H3C TECH CO LTD

Dynamic distributed scanning method and system based on IPv6 geographic tag

The invention discloses a dynamic distributed scanning method and system based on an IPv6 geographic tag, and relates to the technical field of the Internet, and the method comprises the steps: carrying out the region division of an IPv6 seed address through combining with geographic information, obtaining the IPv6 seed addresses of a plurality of geographic regions, constructing an address space tree of each geographic region, determining the change dimension of the address space tree, and carrying out the calculation of the change dimension of the address space tree; generating candidate sub-modes based on the change dimension, and selecting a sub-mode from the candidate sub-modes; generating an address according to the sub-mode, and further obtaining a target address; performing comprehensive evaluation on each sub-mode region based on the seed address density and the network development condition to obtain an initial score, and scanning a target address in each sub-mode region according to the initial score; in the scanning process, the initial score is updated by adopting a score updating mechanism, and scanning is continued based on the updated score. Geographic positions and mechanisms based on IPv6 seed addresses are fused, so that the number of real active addresses is hit to the maximum extent under a limited scanning budget, and the detection efficiency is improved.
Owner:QILU UNIVERSITY OF TECHNOLOGY (SHANDONG ACADEMY OF SCIENCES)

IPv6 side equipment router alias information detection method, device and equipment

The invention relates to an IPv6 side equipment router alias information detection method, device and equipment. According to the method, a public IPv6 router alias address data set is taken as a target, Tracroute detection is carried out on a target address, TCP, UDP and ICMP message packets are sent, a detection host analyzes Tracroute path records of seed alias, the paths which have wide structural similarity but are different only in a single IP hop address in the paths are identified, the paths are marked as candidate alias pairs, and the candidate alias pairs are marked as candidate alias pairs. Meanwhile, a feature set is established for training, so that an alias classification model is established, and whether the target router pair is an alias pair or not is determined. Compared with the prior art, the method has the advantages that the address of the IPv6 router is detected within the Internet range, alias information of the network router is correctly and efficiently classified, and effective technical and data support is provided for network surveying and mapping and network security research.
Owner:NAT UNIV OF DEFENSE TECH

System for authenticating and authorizing access to and accounting for wireless access vehicular environment consumption by client devices

A system and method are disclosed for authenticating and authorizing access to and accounting for consumption of bandwidth for IPv6 connectivity to the Internet over Wireless Access Vehicular Environment (WAVE) service channels by client devices using an Authentication, Authorization and Accounting (AAA) server. The AAA server authenticates and authorizes client devices to access WAVE service channels, and accounts for bandwidth consumption by the client devices using WAVE service channels to access the Internet. The AAA server enables an RSU infrastructure operator to quantify wireless bandwidth consumption by in-vehicle devices using the WAVE Service Channels, on a per-device basis.
Owner:PAXGRID CDN INC

IPv6 power line carrier dual-mode communication method and system

The invention provides an IPv6 power line carrier dual-mode communication method and system, belongs to the field of power line carrier communication, and solves the problems that a power line carrier is extremely sensitive to noise, an HRF is easily interfered by the same frequency, but a real-time intelligent prediction or cooperative avoidance mechanism is lacked. The method comprises the following steps: recording a short-term fluctuation trend of a communication error rate of a high-frequency power line carrier communication channel in past N periods at a link layer of the high-frequency power line carrier communication channel through a channel disturbance memory function; recognizing the degradation state of the current high-frequency power line carrier communication channel in combination with a disturbance spectrum recognition model; and when it is determined that the high-frequency power line carrier communication channel is in the degradation state, executing a preset spectrum parameter rollback strategy, and in the spectrum parameter rollback process, establishing a heterogeneous relay path through a high-frequency wireless communication channel to transmit to-be-confirmed key data.
Owner:ZHONGKE GUOYUAN (LIAONING) ELECTRONIC TECH CO LTD

IPv6 lightweight network equipment surveying and mapping method based on behavior fingerprints and hop count verification

The invention relates to an IPv6 lightweight network equipment surveying and mapping method based on behavior fingerprints and hop count verification. Comprising the following steps: collecting metadata of original traffic in an IPv6 network; selecting a multi-dimensional feature vector from the metadata, processing the multi-dimensional feature vector, and generating a unique and stable fingerprint identifier for each device; sending a detection packet to the target device, calculating a forward path hop count, estimating a return path hop count of a response packet to obtain a reverse path hop count, and detecting the path by comparing the forward path hop count with the reverse path hop count; taking the fingerprint identifier as a topological node, taking a bidirectional path hop count detection value as a topological edge weight between devices, constructing an initial topological skeleton through a minimum spanning tree algorithm, and performing clustering optimization in combination with auxiliary data to obtain a network topological structure; and automatically deducing a hierarchical relationship according to the fingerprint identifier, the node hop count, the connection closeness and the behavior consistency, and generating an interactive logic topological graph for displaying abnormal nodes and associated paths.
Owner:NAT COMPUTER NETWORK & INFORMATION SECURITY MANAGEMENT CENT JIANGXI BRANCH

Packet processing method, device, system, and storage medium

This application provides a packet processing method, a device, a system, and a storage medium. A first network device receives an original packet, generates an IPv6 packet based on the original packet and endpoint group (EPG) information, where the IPv6 packet comprises an IPv6 extension header and the original packet, and the IPv6 extension header comprises the EPG information, and sends the IPv6 packet. A second network device receives the IPv6 packet;obtains the EPG information from the IPv6 extension header, and processes the IPv6 packet according to a group based policy corresponding to the EPG information.
Owner:HUAWEI TECH CO LTD

A multi-level management, multi-functional IPv6 traffic monitoring platform

This invention relates to a multi-level managed IPv6 traffic multi-functional monitoring platform, comprising a data acquisition layer, a regional monitoring layer, a core analysis layer, a control and orchestration layer, and a feedback optimization layer. The data acquisition layer, located at the network edge, is responsible for collecting real-time traffic data and performing preliminary traffic classification and anomaly detection. The regional monitoring layer is distributed across various regions, aggregating edge data to construct a regional traffic feature database, while simultaneously handling local traffic anomalies and executing response strategies. The core analysis layer contains a centralized platform core computing unit that optimizes the global AI model through federated learning and introduces a dual-stream neural network to fuse global and personalized features, providing cross-regional collaborative monitoring and global optimization. The control and orchestration layer provides dynamic resource allocation and policy adjustment, coordinating the operation of global and regional nodes. The feedback optimization layer combines digital twins and reinforcement learning to continuously optimize traffic scheduling and protection strategies.
Owner:NAT COMPUTER NETWORK & INFORMATION SECURITY MANAGEMENT CENT JIANGXI BRANCH

User service charging method, network element and related equipment

The invention provides a user service charging method, a network element and related equipment, and relates to the technical field of communication. The method comprises: receiving user traffic data sent by a user plane network element, the user traffic data being obtained by the user plane network element counting a first service message, the first service message comprising a first IPv6-based segment routing SRv6 segment list; when the charging triggering condition is met, a charging data request is sent to a charging network element through a charging triggering network element, the charging triggering network element is arranged in a session management network element, and the charging data request comprises user flow data. Through the technical means, the problem that the differentiated service based on the SRv6 path cannot be charged in the related technology is solved.
Owner:CHINA TELECOM CORP LTD TECHNOLOGY INNOVATION CENTER +1

Public Cloud-Based Virtual Instance Configuration Method and Cloud Management Platform

This application discloses a public cloud-based virtual instance configuration method and a cloud management platform, to simplify an operation of a tenant, quickly respond to a virtual instance creation requirement and an address management requirement of the tenant, and reduce time costs for the tenant, thereby improving user experience. The method in this application includes: After receiving configuration information that is of a to-be-created virtual instance and that is input by a first tenant, based on the configuration information, the cloud management platform may select a first site from a plurality of sites, select a first physical server from a plurality of physical servers at the first site, create a first virtual instance on the first physical server, and allocate an IPv6-format first network address to the first virtual instance.
Owner:HUAWEI CLOUD COMPUTING TECHNOLOGIES CO LTD

QUIC packet transmission method and related device

This application belongs to the field of network technologies, and provides a QUIC packet transmission method and a related device. In this application, a QUIC header is set in a next header of an IPv6 extension header, or a QUIC header is set inside an IPv6 extension header, so that the QUIC packet carries the QUIC header without carrying a UDP header. Therefore, an encapsulation format of the QUIC packet is simplified, and overheads of transmitting the QUIC packet are reduced.
Owner:HUAWEI TECH CO LTD

Security protection method and device for IPv6 network attack, electronic equipment and medium

The invention provides a security protection method for IPv6 network attacks, and relates to the technical field of Internet security. The method comprises the steps that a backbone network topology structure is built, the backbone network topology structure comprises an access layer router and a core layer router, and the access layer router and the core layer router are communicated in advance; a BGP4 + routing protocol is deployed based on the backbone network topology structure, and the BGP4 + routing protocol is used for enabling routers in the whole network in the backbone network topology structure to achieve BGP4 + routing reachability; an address control routing strategy is configured based on the backbone network topology structure, and the address control routing strategy is configured to be capable of notifying a forbidden target address to the whole network through a BGP4 + routing protocol; and in response to matching of the attack traffic with the target address in the access layer router, blocking the attack traffic to complete security protection. The invention further provides a security protection device for the IPv6 network attack, electronic equipment and a medium.
Owner:CERNET CORP

IPv6 network DDoS attack detection and defense system based on deep learning

The invention relates to the technical field of network security, in particular to an IPv6 network DDoS attack detection and defense system based on deep learning, which comprises a flow monitoring and data acquisition module, a preprocessing and feature extraction module, a deep learning attack detection module, an attack response and decision module and a defense execution and feedback module, the method comprises the following specific steps: S1, monitoring traffic in an IPv6 network in real time through a traffic monitoring and data acquisition module, and capturing traffic characteristics; s2, cleaning and preprocessing the collected original traffic data by a preprocessing and feature extraction module, and extracting key features related to the DDoS attack; according to the IPv6 network DDoS attack detection and defense system based on deep learning, abnormal traffic can be rapidly identified through the deep learning model in the system, timely response can be ensured when a DDoS attack occurs, real-time performance is ensured, a defense strategy can be automatically adjusted through the defense execution and feedback module, manual intervention is not needed, and the intelligent degree of defense is improved.
Owner:NANJING TECH UNIV +1