Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

12 results about "Link encryption" patented technology

Link encryption is an approach to communications security that encrypts and decrypts all traffic at each network routing point (e.g. network switch, or node through which it passes) until arrival at its final destination. This repeated decryption and encryption is necessary to allow the routing information contained in each transmission to be read and employed further to direct the transmission toward its destination, before which it is re-encrypted. This contrasts with end-to-end encryption where internal information, but not the header/routing information, are encrypted by the sender at the point of origin and only decrypted by the intended receiver.

Bluetooth remote trust interaction channel establishment method and device for intelligent machine body

This invention discloses a method and apparatus for establishing a Bluetooth remote trust interaction channel for intelligent devices, relating to the field of Bluetooth communication security technology. The method can be implemented through pure software, pure hardware, firmware, or a combination of both. It includes: entering a Bluetooth discoverable state in response to a master recognition trigger operation and outputting a pairing confirmation credential; completing Bluetooth secure pairing with out-of-band credential verification and exchanging link encryption keys; extracting the terminal device's hardware identity identifier and strongly binding it with the key as a trust anchor point for storage; and exiting the discoverable mode after master recognition is complete, accepting data interaction only from trusted devices. The apparatus includes a Bluetooth pairing module, a trust anchor point management module, and a channel access control module, which are sequentially connected in communication. This invention achieves secure management of the entire lifecycle of Bluetooth pairing and interaction channels, reducing the risk of unauthorized access and unauthorized operations. It has wide adaptability and can cover various implementation scenarios.
Owner:陈立波

An Access Control-Based Unmanned Aerial Vehicle (UAV) Communication Link Encryption System

This invention discloses an access control-based encryption system for UAV communication links, comprising: a link establishment request module for initiating a communication link establishment request; an identity authentication module for performing identity authentication; an access decision module for performing pre-access authorization assessment using an improved UCON+ model; a key authorization module for outputting session key authorization credentials and session key materials to establish the communication link; a link encryption module for performing control operations based on the session key authorization credentials and performing encryption and integrity protection; a status verification module for collecting link status and environmental status and generating obligation execution evidence; a continuous control module for performing continuous authorization assessment during use; and a post-use audit module for performing post-use processing. This invention employs access control-driven link encryption to achieve encryption of UAV communication links.
Owner:BEIJING XIONGFENG TECHNOLOGY CO LTD

Water Conservancy Integrated Database Multi-Source Sensing Automatic Construction System

This invention relates to the field of water resources data technology, specifically disclosing an automatic multi-source sensing construction system for integrated water resources databases. This system includes a multi-source sensing feature calculation module, a data link encryption and encapsulation module, a self-evolving heterogeneous topology reconstruction center module, a spatiotemporal semantic holographic fusion engine module, and a blockchain trust anchoring mechanism module. The invention calculates environmental fluctuation entropy and dynamically solves for the optimal sampling frequency using a logistic function. Based on the principle of electrochemical corrosion, it uses an exponential decay model to adjust the sensor calibration cycle according to real-time soil salinity, achieving adaptive adjustment of the sampling frequency to accurately capture transient features. It also provides automatic compensation for sensor drift in highly corrosive environments, significantly improving the spatiotemporal accuracy and reliability of long-term monitoring data. This overcomes the shortcomings of existing technologies that lack dynamic calibration compensation mechanisms in highly corrosive environments, leading to severe sensor zero-point drift, distortion of long-term monitoring data, and thus misleading decision-making.
Owner:INNER MONGOLIA AGRICULTURAL UNIVERSITY

A link encryption device, system and method with self-load cascading hot standby function

This invention discloses a link encryption device, system, and method with self-loaded cascaded hot standby functionality, relating to the field of network security technology. The device, based on conventional optical communication service interfaces, integrates a physical routing switching module and cascaded redundant interfaces. The physical routing switching module monitors the device status and, when the device is functioning normally, directs service traffic to its local encryption module for encryption before direct output. In the event of a power outage or failure, it automatically switches the physical link, redirecting traffic from the service interfaces to the cascaded redundant interfaces. Through this invention, the primary device acts as a traffic-driving node at the physical media layer in a faulty state, transparently transmitting external traffic to the backup device for encryption, and then transmitting the processed traffic back through the primary device. This invention eliminates the dependence on external load balancers and complex network configurations in dual-machine hot standby networking, achieving high availability under single-node physical access and reducing network construction costs and complexity.
Owner:BEIJING GUOLING TECH CO LTD

A ste encoding construction method based on proportion philosophy origin and national security encryption system

PendingCN122293406ATimestampAlgorithm
This invention discloses a STE (Spectrum-Tensor-Encoding) encoding construction method and a national security encryption system based on the fundamental principles of proportionality, solving the problems of fixed encryption keys, reproducible encoding, single security levels, and poor chip and AI scenario adaptability in traditional encryption. The technical solution uses the fundamental principles of proportionality as its underlying axiom, defining the golden ratio coefficient α and the fundamental reference P₀ to generate a hierarchical set of fundamental ratio parameters. It combines a unique user identifier with hash operations to generate uncopyable STE encoding primitives, which are then recursively concatenated and checked against CRC to construct multi-level STE encoding. A timestamp and the fundamental ratio are introduced to generate a 128-bit dynamic key, achieving a three-dimensional binding of encoding, key, and time. This invention extends a dedicated encryption instruction set at the chip level and implements weighted encryption and trusted verification of the inference link at the AI ​​large-scale model level. It possesses fundamental uniqueness, dynamic anti-cracking capabilities, hardware-level acceleration, and full-link AI encryption capabilities, supporting national-level information security, vehicle networking, government communications, and large-scale model security deployment. Its security strength and operational efficiency are significantly superior to traditional symmetric / asymmetric encryption systems.
Owner:ZHUHAI GONGZHENG TECHNOLOGY CO LTD

Building fire operation and maintenance data asset management platform based on star flash and national secret

The application provides a building fire-fighting operation and maintenance data asset management platform based on star flash and national secret, comprising: a star flash access gateway, used for connecting with an existing building fire-fighting system, realizing analysis and conversion of heterogeneous fire-fighting protocols and fire-fighting data collection; a star flash self-organizing network communication module, used for establishing a low-delay and high-concurrency star flash wireless self-organizing network; a full-link encryption module, used for performing end-to-end encryption and decryption, integrity hash calculation and digital signature verification on fire-fighting sensing data and control instructions; a device digital identity and storage module, used for generating a digital identity for each fire-fighting device, and hashing and storing key data of the fire-fighting device in a whole life cycle to form a tamper-proof trusted audit chain; and a data asset operation module, used for performing three rights distribution and right confirmation on fire-fighting operation and maintenance data based on dynamic contribution of the fire-fighting device, generating a standardized digital asset certificate, and completing income distribution among multiple subjects based on a smart contract.
Owner:JINGTAI QINGYUAN ENVIRONMENTAL TECH (XIAN) CO LTD

Link-layer communication encryption method and system

The present disclosure relates to a link-layer communication encryption method and system, wherein for communication between service terminals and service systems, a terminal-side link encryption gateway and a service-side link encryption gateway are designed, and on the basis of device authentication, identity authentication and session key agreement are integrally designed and used, thereby implementing security authentication, and also obtaining a session key of an application between the terminal-side link encryption gateway and the service-side link encryption gateway, that is, a lightweight security authentication mechanism is implemented, and a dynamic session key is generated for each accessed service terminal, thereby enhancing the security of data communication and transmission. In the design solution, the communication data of the service terminals at a link layer is encrypted, thereby ensuring that intranet information is concealed, and protecting intranet service systems and devices from attacks; moreover, no real IP and MAC is configured for each gateway, thereby ensuring that a malicious user cannot perform targeted attacks on the gateway.
Owner:XINLIAN TECH (NANJING) CO LTD +1

Intranet and extranet data encryption transmission internet edge gateway

PendingCN122348965ASmart factoryEngineering
The application belongs to the technical field of Internet of Things edge gateway, and discloses an Internet of Things edge gateway for encrypted transmission of internal and external network data, which is applied to equipment monitoring of intelligent buildings, smart construction sites, smart mines and smart factories. In view of the problems of local operation of the existing intelligent system, difficulty in real-time management of VPN and high cost of integrated systems, the hardware part includes a processor, a memory, a solid state disk, a WiFi module, a gigabit RJ45 network port, an RS485 / 232 serial port, a USB interface, an HDMI interface and a VGA interface. The software part includes a collection protocol module, a cache queue module, a data processing module, an encryption module, an offline module and a communication transmission module. The gateway can be adapted to multiple protocol devices, realizes real-time data collection and remote control, ensures security through full-link SM2 / SM3 / SM4 encryption, stores data in case of network interruption, does not need to customize an integrated system, and can realize low-cost remote centralized management of equipment, thereby improving efficiency and reliability.

A detachable encryption memory storage and calling system suitable for intelligent terminal

The application discloses a separable encryption memory storage and calling system suitable for intelligent terminals, and relates to the technical field of artificial intelligence and data security; the system comprises six modules of a separable hardware carrier, a heterogeneous dual storage, full-link encryption, cross-terminal adaptation, memory reading and writing scheduling, and hybrid storage expansion, breaks through the limitation of hardware form, realizes complete separation and portable transplantation of memory and the body of the intelligent terminal, adopts a dual storage architecture to guarantee data storage and retrieval efficiency, supports a hybrid mode of local priority + cloud encryption backup, and prevents data leakage by self-holding of a key locally; the patent protects core technical ideas and a full-form hardware adaptation scheme, covers multiple terminals and all scenes, and has safety, flexibility and broad spectrum applicability, effectively solves the pain points of existing intelligent terminal memory technology, and builds an industry core technical barrier.
Owner:王彦

Data at rest encryption for multi-tenant scenarios using a CPU

PendingUS20260214082A1InterposerMultitenancy
This document relates to secure storage techniques that can be employed in a multi-tenant environment. In the disclosed implementations, a host CPU can perform data at rest encryption on data that is written to an SSD via an interposer. By offloading the data at rest encryption from the interposer to the CPU, the complexity and power consumption of the interposer can be reduced. Furthermore, redundant cryptographic operations can be mitigated, because the interposer and CPU do not necessarily perform link encryption on data payloads themselves. Rather, link encryption can be limited to associated command data used to configure transfers of encrypted data payloads.
Owner:MICROSOFT TECHNOLOGY LICENSING LLC

A dual-mode wireless transmission-based screen-machine separation avatar terminal coordination system and method

The application discloses an avatar terminal and a dual-mode wireless transmission cooperation system based on screen-machine separation technology and belongs to the technical field of electronic terminal equipment. The application constructs a three-level linkage architecture of a host terminal, a transmission hub and an avatar terminal, and supports two independent wireless transmission modes in parallel under the same technical system: mode A is a wireless connection based on a dual-frequency special-purpose WiFi, and mode B is a wireless connection based on a 24GHz and 60GHz communication level millimeter wave radar. The two modes share the same set of upper-layer logic, including one-key switching of public and private environments, two-level hierarchical management and control of dispatch master control and speaking master control, automatic queuing and dispatching of slave machine hand-raising speaking requests, cooperation and control of one host machine and N avatar terminals, mixed linkage of one avatar terminal and N avatar terminals and one host machine, single-end online operation and multi-end permission-free visual synchronization, digital twin peer-to-peer mirror bidirectional synchronization, three bidirectional dispatches, namely, dual-agent engine bidirectional dispatch, memory up-and-down bidirectional dispatch and storage hard disk bidirectional dispatch, storage and memory reverse double-nurturing, face recognition unique ID authentication and full-link encryption communication. The application is compatible with all types of hosts, does not require special customized hardware, has a complete structure and can be implemented, the connection protocol is clear and complete, the permission is unique and has no conflict, the transmission hub is universally compatible, the boundary between the public and private environments is clear and the switching is reliable, and the application lays a foundation for full-scene intelligent terminal cooperation in the 6G era.
Owner:SHANGHAI LANSHI CULTURE COMMUNICATION CO LTD

Method and device for realizing centralized transaction communication and data storage security encryption based on domestic chip merchant algorithm, processor and medium

PendingCN122372263AStorage securityExternal application
The application relates to a method for realizing centralized transaction communication and data storage security encryption based on a domestic chip merchant secret algorithm, which comprises a communication link security reinforcement step and a data storage encryption step, and the communication link security reinforcement step specifically comprises the following processing procedures: communication link encryption based on a safe endogenous SDK; and link security reinforcement based on a safe endogenous merchant secret gateway; the data storage encryption step specifically comprises the following processing procedures: application layer safe endogenous encryption; database transparent encryption; and data storage disk encryption. The method, device, processor and computer readable storage medium thereof for realizing centralized transaction communication and data storage security encryption based on the domestic chip merchant secret algorithm integrate the safe endogenous merchant secret algorithm in a CPU internal chip, and external application does not need to excessively care about the adaptation of the underlying hardware, so that the problems of high compatibility cost and high procurement cost of newly-added encryption cards in the current merchant secret application are solved.
Owner:GUOTAI JUNAN SECURITIES CO LTD