Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

38 results about "Node authentication" patented technology

Digital identity encryption authentication method

The invention relates to the technical field of digital identity authentication, and discloses a digital identity encryption authentication method, which comprises the following steps of: acquiring a user identity information feature data set, and generating a master key library through multi-dimensional encryption preprocessing; extracting fragment verification features of each master key library to determine an authentication rule; and constructing a multi-level authentication chain and a verification node, and obtaining a node authentication state through bidirectional verification. In an effective authentication state, the master key library is subjected to association authentication according to permission levels; and in the invalid authentication state, identifying the abnormal verification node, calculating the authentication offset of the master key library under the abnormal verification node, and reconstructing the path of the abnormal verification node based on the authentication offset until the authentication is completed. Wherein the generation of the master key library relates to encryption, confusion and format standardization of various types of data; fragment verification feature extraction comprises key fragment sorting and the like; the authentication rule is determined based on the dynamic feature priority; and exception processing is combined with historical tracing and offset calculation. According to the method, the authentication security and the dynamic adaptability are improved.
Owner:YIQIBANG (ANHUI) DIGITAL TECHNOLOGY CO LTD

Label authentication method and device, electronic equipment and storage medium

ActiveCN118827115BSecurity arrangementSecuring communicationEngineeringNode authentication
The application provides a label authentication and authorization method and device, electronic equipment and a storage medium. The method comprises the following steps: forming inventory information based on an acquired authentication identifier for a label; sending the inventory information to the label and receiving inventory feedback information sent by the label; wherein the inventory feedback information is formed by superimposing identification information corresponding to the label in a specific part of the inventory information based on the inventory information after the first inventory node is authenticated by the label; the identification information is obtained by restoring the inventory feedback information based on the inventory information, and the identification information is sent to a label management network element for authentication. The application embodiment improves the authentication and authorization security of the label.
Owner:CHINA MOBILE COMM LTD RES INST +1

Cloud server access authentication method, device, equipment and storage medium

The application provides a cloud server access authentication method and device, equipment and a storage medium. The method authenticates a public key of an authentication initiating node on a blockchain network, initiates an authentication request to a node to be authenticated, collects biological feature data of a user corresponding to the node to be authenticated, encrypts the biological feature data, the current time and the public key of the authentication initiating node through a public key of a second storage node, and sends the user identifier of the node to be authenticated to the authentication initiating node through the public key of the authentication initiating node. The authentication initiating node decrypts the encrypted user features through a private key of the authentication initiating node, obtains the user identifier of the node to be authenticated, queries the first storage node through the user identifier of the node to be authenticated, and obtains a storage address. The second storage node determines a feature comparison result according to the encrypted authentication features and the storage address. The authentication initiating node determines an authentication result according to the feature comparison result.
Owner:CHINA UNITED NETWORK COMM GRP CO LTD +2

Differential privacy method for preventing leakage of large model training data

The invention discloses a differential privacy method for preventing leakage of large model training data, and relates to the technical field of artificial intelligence large model security. The method comprises the following steps: step a, N nodes participating in training complete key negotiation through an SM4 symmetric encryption algorithm and generate a unique identity identifier, and only the nodes passing authentication access training; the central server generates a global noise seed and distributes the global noise seed to each authentication node through a TLS1.3 encryption channel. According to the invention, the federation layer solves the problem of distributed training cross-node leakage through node authentication and noise cooperation, and ensures that data between nodes is not reversely deduced; data layer dynamic sensitivity calculation and symbol consistency noise keep sample semantics while privacy is protected, and damage to data value is reduced; the model layer is subjected to gradient clustering noise reduction and dynamic cutting, interference of noise on model training is reduced, full-process and multi-scene comprehensive protection is achieved, and the requirements of sensitive fields such as medical treatment and finance are met.
Owner:NANJING ADVANCED COMPUTING IND DEV CO LTD

Digital identity encryption authentication method

This invention relates to the field of digital identity authentication technology and discloses a digital identity encryption authentication method. The method includes the following steps: acquiring a user identity information feature dataset and generating a master key library through multi-dimensional encryption preprocessing; extracting fragmented verification features from each master key library to determine authentication rules; constructing a multi-level authentication chain and verification nodes, and obtaining the node authentication status through bidirectional verification. In a valid authentication state, the master key library is associated with authentication according to permission levels; in an invalid authentication state, abnormal verification nodes are identified, the authentication offset of their respective master key libraries is calculated, and the abnormal verification node paths are reconstructed based on this until authentication is completed. The master key library generation involves multiple types of data encryption, obfuscation, and format standardization; fragmented verification feature extraction includes key fragment sorting; authentication rule determination is based on dynamic feature priority; and anomaly handling combines historical tracing and offset calculation. This method improves authentication security and dynamic adaptability.
Owner:YIQIBANG (ANHUI) DIGITAL TECHNOLOGY CO LTD

Device communication method and apparatus based on MQTT protocol

The embodiment of the present application provides a kind of based on the equipment communication method and device of MQTT protocol, which is applied to MQTT subject management server, comprising the following steps: receiving the first message reported by controlled node, wherein the first message includes the equipment ID of the controlled node;Corresponding to the random subject of the equipment ID of the controlled node is generated, and the random subject is returned to the controlled node;After authenticating to the control node, the random subject is sent to the control node, so that the control node and controlled node carry out MQTT protocol communication through the random subject.In the present application, the MQTT subject of node communication is managed by MQTT subject management server, and the MQTT subject is randomized, so that malicious network node cannot listen or interfere with node communication, thereby improving the communication security between nodes of MQTT protocol network.
Owner:ZTE CORP

Communication method and communication device

The invention provides a communication method and a communication device. The method is applied to an intermediate node in an environmental Internet of Things (A-IoT) system, and comprises the following steps: sending first information, the first information being used for requesting to authenticate the intermediate node as an excitation source of the A-IoT system; the excitation source is used for providing carrier waves for tags in the A-IoT system. Second information is received, the second information is used for indicating an authentication result, and the authentication result is used for indicating whether the intermediate node serves as an excitation source of the A-IoT system or not. Wherein the intermediate node is also used as a reader-writer in the A-IoT system to communicate with the tag. The invention provides an implementation process of taking intermediate node authentication as a system excitation source, and carrier transmission can be carried out in a multi-subcarrier mode, so that the capability of resisting frequency selective fading of the carrier sent by the excitation source is improved, and the anti-interference capability of the carrier is improved.
Owner:HUAWEI TECH CO LTD

Communication method and communication apparatus

Provided in the present application are a communication method and a communication apparatus. The method is applied to an intermediate node in an ambient Internet of Things (A-IoT) system. The method comprises: sending first information, which is used for requesting authentication performed on an intermediate node to be used as an excitation source of an A-IoT system, wherein the excitation source is used for providing a carrier to a tag in the A-IoT system; and receiving second information, which is used for indicating an authentication result, wherein the authentication result is used for indicating whether the intermediate node is used as the excitation source of the A-IoT system, and the intermediate node is further used as a reader-writer in the A-IoT system to communicate with the tag. The present application provides an implementation process of authenticating an intermediate node to be used as an excitation source of a system, and can also perform carrier transmission in a multi-subcarrier mode, thereby improving the capability, in terms of the resistance against frequency-selective fading, of a carrier sent by the excitation source, and also improving the anti-interference capability of the carrier.
Owner:HUAWEI TECH CO LTD

Cross domain authentication in cloud native environment

Disclosed methods and systems include receiving, by a control panel of a multi-cloud platform, a node authentication token [NAT] corresponding to a compute node in the multi-cloud platform. The compute node may include a token generator that generates the NAT and sends the NAT to the control panel. The control panel may receive the NAT from the compute node via a secure administration connection between the control panel and the compute node. The control panel may then store the NAT in a token mapping database that associates the NAT with the node. The control panel may then perform operations to access the compute node from a conventional web browser. In at least one embodiment, these browser operations may include retrieving mapping information for the compute node from the token mapping database and generating an access uniform resource locator that includes a network address for the compute node and the mapping information.
Owner:DELL PROD LP

Single-node authentication risk detection method and system based on log analysis

The invention provides a single-node authentication risk detection method and system based on log analysis, which can perform real-time analysis based on an actual access log and timely identify a single-node access risk before a fault occurs, thereby effectively avoiding service interruption and improving the reliability of the system. And meanwhile, full-course automatic diagnosis from risk detection to root positioning is realized, the operation and maintenance efficiency is remarkably improved, and the manual troubleshooting cost is reduced. The method supports a plurality of potential fault points such as a plurality of heterogeneous systems, coverage networks, DNS, configurations and the like, can comprehensively monitor and diagnose various faults in a complex environment, is high in applicability, and has good expansibility and adaptability. And a comprehensive risk report and visual display are provided, so that an administrator can quickly understand the system risk condition and timely take effective measures for processing. In addition, the user can customize a risk judgment rule and a diagnosis strategy according to own requirements, and personalized operation and maintenance requirements of different enterprises are met.
Owner:BEIJING YOUTEJIE INFORMATION TECH

A blockchain-based trusted access method for digital identity in multi-domain embedded devices

ActiveCN119766412BUser identity/authority verificationDigital identityEmbedded security
This application provides a blockchain-based cross-domain distributed digital identity trusted management method, relating to the field of embedded security technology. By combining centralized and traceable blockchain technology with the needs of multi-domain embedded device node certificate management, a multi-domain node authentication architecture is studied. Based on lightweight remote identity authentication node trusted access technology, trusted digital identity authentication for multi-domain users in a distributed environment is realized, achieving the goal of supporting fully controllable distributed digital identity secure access.
Owner:XIAN AVIATION COMPUTING TECH RES INST OF AVIATION IND CORP OF CHINA

A blockchain-based data processing method, device, equipment and computer storage medium

Embodiments of the present application provide a kind of data processing method, device and equipment based on blockchain and computer storage medium, it is related to data processing field, to realize the accurate tracing of data on blockchain.The method comprises: first target access node sends data transmission request to data node, after the authentication of target access node passes, allow first target access node and data node carry out data transmission, and generate the access record of first target access node, first target access node is any node in multiple access nodes;According to the access record of multiple second target access nodes, determine the space stamp information of multiple data transmitted, second target access node is the access node of first target access node for completing data transmission;Based on space stamp information, trace multiple data.
Owner:CHINA MOBILE INFORMATION TECHNOLOGY CO LTD +2

An identity authentication method and device, an electronic device, and a storage medium

Embodiments of the present application provide an identity authentication method and device, electronic equipment and readable storage medium, the method comprises: obtaining the identity check request initiated by the client to be authenticated user; the identity check request carries key information; the key information is split into a plurality of first key fragments and sent to a plurality of second servers for checking; the identity check result of the identity check request is determined according to the key check result returned by each second server; the key check result is determined according to the user authentication point coordinate, the reference authentication point coordinate and the node authentication point coordinate; the user authentication point coordinate is composed of the first key fragment; the reference authentication point coordinate and the node authentication point coordinate are pre-allocated by the second server as an authentication node. By using the above method, the authentication of multiple authentication servers is required to pass the final identity check, which enhances the security of identity check.
Owner:CHINA TELECOM CORP LTD

Firmware configuration method and system of retimer chip, electronic device, and medium

A firmware configuration method and system of a Retimer chip, an electronic device, and a medium are provided in the disclosure. The firmware configuration method of the Retimer chip includes: acquiring a storage in-place signal and a storage node authentication signal; causing a BMC to write corresponding firmware configuration to the Retimer chip based on the storage in-place signal and the storage node authentication signal; and changing CPU configuration and a communication link of a storage node based on the storage in-place signal, so that the CPU configuration and the communication link are adapted to the firmware configuration of the Retimer chip.
Owner:CELESTICA TECH CONSULTANCY SHANGHAI

Control plane techniques for substrate managed containers

Techniques discussed herein include providing a cloud computing environment in which applications are deployed using virtual-machine-based virtualization with a static pool of computing nodes (e.g., substrate nodes, overlay nodes) and container-based virtualization with a dynamic pool of computing nodes (e.g., nodes managed by a container orchestration platform). The control plane functionality may be invoked by a deployment orchestrator (e.g., using a client of the container orchestration platform). In some embodiments, the control plane may include a set of applications that are configured to communicate with core services for certificate generation and rotation, namespace and quota management, metric monitoring and alarming, node authentication, and cluster membership management.
Owner:ORACLE INT CORP

Modbus protocol security enhancement method and system in unicast communication scenario

The application provides a Modbus protocol security enhancement method and system in a unicast communication scenario, and relates to the technical field of industrial control networks. The method comprises the following steps: a first cipher text and a second cipher text are shared between a master node and a slave node; the master node generates a first message authentication code according to the second cipher text, a preset key and a first random number, and sends a first message to the slave node by using a target function code; the slave node authenticates the identity of the master node according to the first message authentication code, the first cipher text, the preset key and a second random number; when the slave node successfully authenticates the identity of the master node, the slave node generates a second message authentication code according to the first cipher text, the preset key and the second random number, and sends a second message to the master node by using the target function code; and the master node authenticates the identity of the slave node according to the second message authentication code, the second cipher text, the preset key and the first random number. In this way, the effectiveness of the identities of the two communication parties can be ensured, and the integrity and confidentiality of data in the transmission process can be ensured.
Owner:XIDIAN UNIV

Unmanned aerial vehicle node authentication system based on block chain

The invention provides an unmanned aerial vehicle node authentication system based on a block chain, and the system comprises an initialization module which is used for carrying out the initialization of a block chain network, deploying a block chain node and a smart contract, and providing a basis for the identity authentication, safety communication and tracking of an unmanned aerial vehicle cluster; the identity authentication module is used for verifying the identity of the unmanned aerial vehicle and realizing the right confirmation uploading of the unmanned aerial vehicle; the communication module is used for information communication between the unmanned aerial vehicles; and the tracking and tracing module is used for managing and tracking each member, behavior and operation history in the unmanned aerial vehicle cluster so as to realize monitoring, management and tracking of the unmanned aerial vehicle cluster. According to the invention, the decentralization and tampering-free characteristics of the block chain are utilized, key data such as identity information and communication records of the unmanned aerial vehicle node are stored on the chain in a block form, identity tampering and counterfeiting are effectively prevented, the anti-attack ability of the system is enhanced, the single-point fault risk is reduced, and security authentication and data encryption transmission of the unmanned aerial vehicle node are realized.
Owner:NANJING UNIV OF SCI & TECH

Intelligent power grid equipment trust management and authentication method and system based on block chain

PendingCN121842190ASecuring communicationConfidentialityIdentity theft
The invention discloses an intelligent power grid equipment trust management and authentication method and system based on a block chain, and aims to prevent identity embezzlement and disguise in a distributed electric energy network. According to the identification and authentication model, the authentication of the node is improved by using the digital certificate, the use safety of the power grid can be remarkably improved, the validity of the node can be easily verified through the Merkle tree architecture by using the intelligent power grid equipment identification and authentication model of the Merkle tree architecture, and when new equipment is added to the block chain, the new equipment can be identified and authenticated through the Merkle tree architecture. The communication with a control center can be started; the privacy and data of all participants are protected, the block chain technology can provide a distributed and decentralized security system to ensure the integrity and confidentiality of transactions, the block chain can serve as a trusted transaction platform, energy of different energy sources is exchanged between smart power grids, real-time pricing is achieved, and the transaction efficiency is improved. And simpler and more convenient energy trade can be realized, and the market is freer and more fair.
Owner:HANGZHOU LIANGAN TECH CO LTD

Non-inductive passing identity authentication method, system and equipment based on edge computing

The invention discloses a non-inductive passing identity authentication method, system and device based on edge computing, and relates to the technical field of identity authentication, the method comprises the following steps: when a target user approaches an access control system and an authentication distance is satisfied, generating a non-inductive authentication instruction; a power supply switching circuit is connected to control sensing equipment at the same frequency, and sensing is triggered and a sensing vector sequence is determined according to the non-inductive authentication instruction; the first edge node executes posture authentication of real-time micro-dynamic characteristics, the second edge node executes electrode sensing authentication based on derived session key carriers, zero-knowledge proof is generated through consensus decision, and passage management is carried out on the access control system. The technical problems that active sensing and operation are needed in traditional access control authentication, single-node authentication safety is insufficient, and repeated authentication efficiency is low during multi-access-control continuous passing are solved, and the technical effects of non-inductive passing, high-safety authentication and efficient passing control are achieved.
Owner:AOFEIJIUTONG INTELLIGENT TECHNOLOGY (SHANGHAI) CO LTD

Blockchain node authentication method, system, device and storage medium

The application provides a kind of alliance chain node authentication method, system, equipment and storage medium, to solve the security problems caused by the single node authentication mode of existing node cannot be found in time that node is maliciously controlled;In the present application, the legality of digital signature is verified according to identity authentication request;If the digital signature is legal, the identity authentication request is decrypted using the pre-stored dynamic token to obtain the identification information of the node;According to the identification information, the safety of the node is verified, and the verification result information of the safety verification is recorded to determine whether the node is safe;If the node is safe, the identity authentication of the node is completed according to the identification information;The node identity is verified by data signature and dynamic token in the present application, and the safety of the node is verified according to the identification information, the dynamic token and real-time safety verification are combined to establish a mixed mode of node authentication, to find out whether the node is safe in time, and to minimize the loss caused by the unsafe node.
Owner:SF TECH CO LTD

Network node authentication method and device, server and storage medium

The invention relates to the technical field of servers, and discloses a network node authentication method and device, a server and a storage medium, the method is applied to the server, and the method comprises the following steps: broadcasting a natural language question; information returned by the network node is received, the network node determines the information based on a first answer text, and the first answer text is an answer text of a big language model deployed in the network node to answer the natural language question; answering the natural language question through a large language model deployed in the server to obtain a second answer text; encoding the second answer text through a vector encoding model deployed in the server to obtain a semantic vector corresponding to the second answer text; determining similarity based on the information and the semantic vector; if the similarity is greater than or equal to a first similarity threshold, authenticating the network node; and if the similarity is smaller than a first similarity threshold, refusing to authenticate the network node. According to the invention, the authentication efficiency of the network node is improved.
Owner:SHENZHEN XGRIDS-INNOVATION CO LTD

Cross-domain authentication in cloud native environment

The disclosed methods and systems include receiving, by a control panel of a multi-cloud platform, a node authentication token [NAT] corresponding to a compute node in the multi-cloud platform. The compute node may include a token generator that generates the NAT and sends the NAT to the control panel. The control panel may receive the NAT from the compute node via a security management connection between the control panel and the compute node. The control panel may then store the NAT in a token mapping database that associates the NAT with the node. The control panel may then perform operations to access the compute node from a conventional web browser. In at least one embodiment, these browser operations may include retrieving mapping information for the compute node from the token mapping database, and generating an access uniform resource locator that includes a network address for the compute node and the mapping information.
Owner:DELL PROD LP

Radio access network node authentication using radio resource control signal messages

A radio access network node and user equipment may be configured with a private key and a complementary public key, respectively, for determining whether a radio resource control signal connection setup message received at the user equipment is received from a legal node or from a false base station. The user equipment may request, based on the connection setup message, an on-demand digital signature from a node that broadcasts the connection setup message. In response to the request, the node may send, via the on-demand system information message, an on-demand digital signature generated based on the connection setup message and the private key. The user equipment may determine a local digital signature based on the connection setup message and the public key. The user device may perform a connection setup action based on whether the local digital signature matches the on-demand digital signature.
Owner:DELL PROD LP

A Virtual Private Network Transmission Security Method and System

This invention relates to the field of network security technology and proposes a method and system for secure transmission in Virtual Private Networks (VPNs). The method includes: dynamically fragmenting the transmitted data of the VPN into unequal lengths to obtain fragmented data sequences; performing multi-path parallel routing optimization on the fragmented data sequences based on multi-dimensional traffic characteristics to obtain preferred transmission paths; quantifying the risks of the preferred transmission paths and performing hierarchical differentiated encryption on the fragmented data sequences to obtain encrypted data fragments; performing cross-link segmented logical isolation on the preferred transmission paths based on the encrypted data fragments to obtain virtual isolated transmission channels, and performing node authentication to obtain trusted isolated transmission channels; performing segmented transmission on the encrypted data fragments based on the trusted isolated transmission channels to obtain receiving-end data fragments; and verifying and reassembling the receiving-end data fragments to obtain restored data, thereby achieving secure transmission. This invention can improve the security of VPN transmission.
Owner:TIANJIN PARKNAI TECH CO LTD

Message authentication system for a vehicle network based on a security proxy node

A message authentication system for a vehicle network includes a private communication system including one or more private nodes in electronic communication with one another. The message authentication system also includes a public communication system including a plurality of public nodes in electronic communication with one another. The plurality of public nodes includes a security proxy node and one or more receiving nodes. The security proxy node authenticates one or more unique messages transmitted by a private node of the private communication system to the one or more receiving nodes of the public communication system.
Owner:GM GLOBAL TECHNOLOGY OPERATIONS LLC

Inventory chain node authentication method and device, electronic equipment and storage medium

ActiveCN121544180ADigital data protectionHardware monitoringNode authenticationDatabase
The invention provides an inventory chain node authentication method and device, electronic equipment and a storage medium, and relates to the technical field of warehouse management, and the method comprises the steps: obtaining the inventory state information of each storage location in a current warehouse; constructing a virtual logic chain for all articles in the current inventory system based on the inventory state information; calculating and generating a current inventory integrity digest value based on the logic chain relation data, and comparing the current inventory integrity digest value with a pre-stored historical inventory integrity digest value to obtain a comparison result; performing cross validation based on the logic chain relation data and the storage location physical state obtained in real time to obtain a stock state verification result; and in response to inconsistency of the comparison results or abnormal indication of the inventory state verification result, executing an alarm and logic chain self-repairing operation. In the mode, real-time, active and automatic authentication and abnormity alarm of the inventory state are realized by constructing a dynamic virtual logic chain and a cross validation mechanism, and the safety level and traceability of the warehouse are remarkably improved.
Owner:RUIXI (SUZHOU) INTELLIGENT TECH CO LTD

Inventory chain node authentication method and device, electronic equipment and storage medium

ActiveCN121544180BDigital data protectionHardware monitoringNode authenticationDatabase
The application provides a kind of inventory chain node authentication method, device, electronic equipment and storage medium, related warehouse management technical field, method includes: obtaining the inventory state information of each location in current warehouse;Based on inventory state information, a virtual logical chain is constructed for all items in the current inventory system;Based on the logical chain relationship data, a current inventory integrity digest value is calculated and generated, and compared with the pre-stored historical inventory integrity digest value to obtain a comparison result;Based on the logical chain relationship data and the real-time acquired location physical state, cross-validation is carried out to obtain the inventory state verification result;In response to inconsistent comparison results or inventory state verification results indicating abnormalities, alarm and logical chain self-repair operations are performed.In this way, by constructing a dynamic virtual logical chain and a cross-validation mechanism, real-time, proactive and automated authentication and abnormal alarm of inventory state are achieved, significantly improving the safety level and traceability of the warehouse.
Owner:RUIXI (SUZHOU) INTELLIGENT TECH CO LTD

Multi-node data synchronization method

The invention relates to the technical field of block chains, in particular to a multi-node data synchronization method, which comprises the following steps of: 1, configuring and initializing nodes, and determining a master node and a slave node; 2, performing node authentication and network connection; step 3, a data synchronization triggering mechanism, which comprises real-time / timed triggering and event broadcasting and distribution; 4, data transmission and processing, wherein the data transmission and processing comprise parallel processing and fragmentation processing; 5, guaranteeing data consistency and exception handling and fault tolerance; and step 6, performing security and authority management and monitoring alarm. According to the method, through node configuration and initialization, determination of a master node and a slave node and increment of a synchronization strategy, only a change part (such as a file difference block and a database Binlog) is transmitted, the network load is reduced, and then data consistency and exception handling and fault tolerance are guaranteed, so that the method can adapt to multi-node synchronization systems in different scenes; the efficiency, the reliability and the safety are balanced.
Owner:CHINESE PEOPLES LIBERATION ARMY UNIT 63610

Node authentication method and device, network equipment, storage medium and program product

A node authentication method and apparatus, a network device, a storage medium and a program product, the method comprising: authenticating a first connector according to a received first registration request sent by the first connector to obtain authentication information; the authentication information comprises identity information, service information and an authentication certificate of the first connector; and sending the authentication information to the second node. According to the node authentication method, the connector connected with the first node is registered in the first node, the authentication information of the first connector is reported to the second node, and the registration authentication information of the first connector is inquired from the second node through the third node. And after confirming that the first connector is correctly registered to the first node, communicating an interaction path between the connector on the third node and the first connector. The problem that a data circulation scheme in the prior art cannot realize circulation among different sub-domains is solved.
Owner:CHINA MOBILE COMM LTD RES INST +1

An internet of things encryption method and system combined with a distributed trust mechanism

The application discloses an Internet of Things encryption method and system combined with a distributed trust mechanism, relates to the technical field of information security, and comprises the following steps: establishing a trust initial node set, performing physical layer security authentication on an Internet of Things core node by using a physically unclonable feature, generating a unique node identity key, and registering as a trust node in a distributed ledger. The application introduces a trust initial node authentication mechanism based on PUF, ensures the authenticity and unforgeability of the trust root in the cold start stage of the Internet of Things, designs a trust-enhanced consensus mechanism, realizes dynamic trust evaluation and consensus confirmation of newly connected devices, and guarantees the safe expansion of the trust chain. A trust value-driven key dynamic distribution and update mechanism is proposed, the key permission and life cycle are flexibly controlled according to the trust value, the low-trust node is prevented from being hidden or attacked, and the anti-attack capability and security stability of the system in the cold start and running processes are significantly improved.
Owner:刘慧