Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

310 results about "Secure channel" patented technology

In cryptography, a secure channel is a way of transferring data that is resistant to overhearing and tampering. A confidential channel is a way of transferring data that is resistant to overhearing (i.e., reading the content), but not necessarily resistant to tampering. An authentic channel is a way of transferring data that is resistant to tampering but not necessarily resistant to overhearing.

Federated distributed computational graph platform for advanced biological engineering and analysis

A federated distributed computational system enables secure, privacy-preserving biological data analysis and engineering through interconnected nodes coordinated in a distributed graph architecture. A federation manager allocates resources, manages data flow and lineage, establishes privacy boundaries, and maintains cross-institutional knowledge relationships. Each node contains a processing unit for biological data analysis, privacy preservation protocols for secure multi-party computation, a knowledge graph structure with supporting data stores, and encrypted network connections. The federation manager enforces all computation and data exchange through secure channels while maintaining privacy, security, and contractual boundaries. This architecture enables research institutions to collaborate on complex biological analyses without compromising sensitive data, facilitating breakthrough discoveries through shared computational resources while maintaining strict data privacy and security controls.
Owner:QOMPLX INC

Path planning and hierarchical cooperative control method and system for unmanned aerial vehicle cluster

The invention discloses a path planning and hierarchical cooperative control method and system for an unmanned aerial vehicle cluster. The system comprises a path planning module and a formation motion control module. The method comprises the steps that firstly, an improved RRT * algorithm is adopted by a path planning module, through a multi-strategy heuristic node expansion mechanism fusing target bias and artificial potential field guidance and comprehensively considering path length, channel volume and Z-axis height change, a center path and a three-dimensional safe channel which take into account safety and smoothness are planned for an unmanned aerial vehicle cluster; and then, based on the central path, the formation motion control module adopts a distributed model prediction control framework, designs different optimization targets for a navigator and a follower, and solves an optimal control instruction on line, so that a cluster is guided to complete trajectory tracking, collision avoidance among individuals and self-adaptive formation reconstruction in a secure channel. According to the invention, the navigation problem of the unmanned aerial vehicle cluster in a complex obstacle environment is solved, and the path planning efficiency and the robustness of cooperative control are improved.
Owner:NANJING UNIV OF SCI & TECH

Visualization system capable of synchronously displaying multiple types of data according to time

The invention provides a visualization system capable of synchronously displaying multiple types of data according to time. Comprising a distributed service cluster composed of a micro-service, a user management micro-service, a data transmission micro-service, a data storage management micro-service, a data extraction micro-service, a data visualization display micro-service, a data visualization template management micro-service and a resource monitoring micro-service; the micro-services are packaged in a containerized manner and interact by adopting a lightweight communication protocol, and automatic deployment and dynamic expansion are realized through a container arrangement tool; the system is provided with a basic parameter set with customizable micro-service configuration and a graphical configuration interface which are used for cooperatively generating a system operation environment configuration strategy. The user management micro-service establishes a multi-dimensional authority system based on a role access control model, and records an operation log to realize audit tracking; the data transmission micro-service integrates a plurality of heterogeneous data access modes, carries out transmission process verification and carries out secure channel transmission through the service gateway.
Owner:ZHIHUI LIANDA TECHNOLOGY (BEIJING) CO LTD

Multi-communication group fusion holding method and system of intelligent door lock

The invention discloses a multi-communication group fusion holding method and system for an intelligent door lock, and the method comprises the steps: building an independent multicast tree taking a feature vector as an identifier according to a communication group request initiated by each main control door lock; generating a multicast message containing a target communication group feature vector and a digital signature according to a merging request sent by the first master control door lock; according to feature vectors exchanged by the master control door locks of the two parties through a secure channel, a target master control door lock initiates feature interception registration, and negotiates and establishes a boundary feature tag rewriting rule; and according to the established forwarding path and the rewriting rule, the audio and video streams of the communication groups of the two parties are subjected to feature tag rewriting through the network boundary router, and then bidirectional intercommunication is realized. By utilizing the embodiment of the invention, the dynamic security isolation and seamless fusion of multiple communication groups can be realized, the network load and transmission delay are reduced, meanwhile, the terminal door lock can realize audio and video intercommunication without sensing the network address of the opposite end or changing the configuration, and the expansibility, the security and the user experience of the system are improved.
Owner:DESSMANN CHINA MACHINERY & ELECTRONICS

Method and system for decomposing door lock communication group

The invention discloses a door lock communication group decomposition method and system, and the method comprises the steps: encrypting and issuing a sub-feature vector to a local storage of a corresponding member door lock through a secure channel according to the sub-feature vector generated by a main control door lock and a binding relation between the sub-feature vector and the member door lock; generating a multicast message containing a target subgroup feature vector and a digital signature according to a splitting request sent by a main control door lock; according to the result of querying the local ARP table and the subgroup registry by the multicast router, determining the subgroup to which the door lock connected with each interface belongs, and registering the corresponding sub-feature vector for the corresponding interface in the multicast forwarding table; and according to a detection message sent by each sub-group master control door lock and a confirmation message of a member door lock, the multicast router identifies and removes sub-feature vector registration of an interface which is not associated with an effective door lock, and communication group decomposition is completed. By utilizing the embodiment of the invention, safe, reliable and interface-level refined door lock group decomposition can be realized, and the splitting efficiency and the communication safety are improved.
Owner:DESSMANN CHINA MACHINERY & ELECTRONICS

Server, terminal and security system

Provided in the present application are a server, a terminal and a security system. The server comprises an authentication and key management module, a secure multi-party computation engine and a secure-channel management module, wherein the authentication and key management module is used for performing identity verification on a terminal, generating a first private key corresponding to the terminal and a first public key corresponding to the first private key, and generating a first session key on the basis of a second public key of the terminal and the first private key; the secure multi-party computation engine is used for verifying fingerprint information of the terminal and cooperating with a plurality of terminals to perform identity verification on a server; and the secure-channel management module is used for establishing a secure channel with the terminal, encrypting communication data on the basis of the first session key, and using the secure channel to send the encrypted communication data to the terminal. The solution of the present application can effectively solve the security problem of communication between a terminal and a server, and has the advantages of high flexibility and a low cost.
Owner:TSINGHUA SHENZHEN INTERNATIONAL GRADUATE SCHOOL +1

Messaging layer security (MLS) protocol-based secure channels

Presented herein is a Message Layer Security (MLS)-based secure channel communication arrangement that involves a minimal set of changes to the MLS standard to reduce the redundant overhead in case of two-party (one-to-one or 1:1) communication. These techniques reduce the communication and computation complexity of both devices involved in establishing and supporting the one-to-one secure channel communication. Methods are provided to establish a one-to-one secure channel between a first endpoint and a second endpoint by performing a one-to-one secure channel handshake.
Owner:CISCO TECHNOLOGY INC

Distributed message dynamic response method based on websocket

The invention relates to the technical field of distributed response, in particular to a distributed message dynamic response method based on websocket. The method comprises the following steps: constructing a distributed message service cluster to configure a websocket communication module, message middleware and a client for each service node, and providing a unified service access point to the outside through an Nginx load balancer, so as to automatically register and subscribe a global control theme to the message middleware and form a hierarchical theme subscription structure; when the client initiates a connection request, the connection is distributed and a secure channel is established; the client sends a service request message, packages the service request message into a standardized message format, and associates session information of the client at the same time; and receiving the session message, performing intelligent filtering, generating a response result, and pushing the response result to the client in real time. According to the invention, efficient processing and real-time response of messages in a distributed environment can be realized.
Owner:BEIJING HONGJING CENTURY SOFTWARE CO LTD

Low-power-consumption hardware encryption system based on geological disaster monitoring scene

The invention relates to the field of hardware encryption, and discloses a geological disaster monitoring scene-based low-power-consumption hardware encryption system, which comprises a layered architecture module for constructing a terminal sensing layer and a cloud platform layer, generating a three-dimensional risk thermodynamic diagram, and carrying out short-term early warning model and emergency deduction; the encryption and decryption module is used for carrying out multi-dimensional identity verification based on protocol layering and national secret algorithm fusion, carrying out dynamic management and eavesdropping monitoring on a secret key, optimizing a data processing flow, and establishing a secure channel to dynamically negotiate whether encryption or decryption is needed; the key management module is used for implementing a triple binding mechanism, carrying out processing and risk assessment on the monitoring data, and carrying out key backup and recovery by adopting a dynamic key period according to a generated risk level; and the safety protection module is used for performing intelligent management on the power consumption of the system based on the active state of the system, selecting a compression strategy according to the data type by adopting a dynamic compression algorithm, performing safety monitoring on hardware and firmware, performing intrusion monitoring on the system and performing automatic repair.
Owner:中国地质环境监测院(自然资源部地质灾害技术指导中心)

Remote monitoring system based on single-chip microcomputer and control method thereof

The invention belongs to the technical field of single-chip microcomputers, and particularly relates to a remote monitoring system based on a single-chip microcomputer and a control method thereof. The system comprises a single-chip microcomputer, a sensor acquisition unit, a wireless communication unit and an execution mechanism. When a single-chip microcomputer, a sensor acquisition unit and a system are initialized, a wireless communication unit and an execution mechanism are sequentially powered on, after the single-chip microcomputer completes hardware self-inspection, a handshake instruction is sent to the wireless communication unit, a secure channel with a remote control terminal is established, and after handshake is completed, the single-chip microcomputer writes in a unique identity identification code and enters a standby state; the single-chip microcomputer polls the sensor acquisition unit according to a preset sampling period to obtain an original data frame; the remote control terminal analyzes the error correction compressed data block, generates a control instruction according to a threshold strategy and returns the control instruction; the single-chip microcomputer receives the control instruction, then drives the execution mechanism to act, and records an execution state log. The method has the advantages of being high in communication efficiency, high in link fault-tolerant capability and fast in remote control response.
Owner:SHANDONG HUAJIE HYDROGEN ENERGY TECHNOLOGY CO LTD

Battery data chain for multi-stage hybrid encryption of data battery

The invention is suitable for the technical field of battery data transmission encryption, and provides a data battery multi-stage hybrid encrypted battery data link, which comprises a battery management system, a transmission layer security channel and a cloud data processing layer, according to the battery management system, an SM4 hardware encryption chip is integrated at a battery BMS end, and original data such as voltage / temperature and the like are encrypted in real time; the transport layer secure channel dynamically negotiates a session key through an SM2 algorithm, and establishes a secure channel to transmit a ciphertext data packet; the cloud data processing layer generates a hash value for the received data by using SM3, and verifies the data integrity; preferably, the battery management system comprises a data acquisition module, an SM4 hardware encryption chip and an encrypted data packet packaging module. According to the invention, through the SM2 / SM4 / SM3 three-level combination encryption technology, light-weight national-security compliance is realized on the hardware layer, an anti-quantum attack channel is constructed on the transmission layer, the data is ensured to be complete and credible on the cloud layer, and a full-stack security protection system covering'end-management-cloud 'is formed.
Owner:GUANGDONG HAOYIDIAN TECH CO LTD

Cross-industry data sharing method and system using trusted data space

The invention discloses a cross-industry data sharing method and system using a trusted data space, and relates to the technical field of data sharing, and the method comprises the steps: obtaining a cross-industry data dimension relation; obtaining a sharing request, and carrying out dimension migration analysis on the sharing request to obtain a dimension migration path set; according to the dimension migration path set, adaptive reorganization operation is executed on the to-be-shared data, and reorganized shared data is obtained; according to the cross-industry data dimension relationship and the dimension migration path set, performing cross-industry confidence evaluation on the recombined shared data to generate a shared decision result; and performing data sharing on the recombined shared data through a secure channel of the trusted data space. The technical problems that existing cross-industry data sharing is difficult, and data resources are wasted are solved.
Owner:LINGSHU TECH CO LTD

Server-level computing power identification gateway

The invention discloses a server-level computing power identification gateway, which relates to the technical field of Internet, and comprises an Agent agent program, a trusted springboard link, a data acquisition module, a computing power identification generation module and a data reporting module, the Agent agent program is deployed on a computing power enterprise intranet server and is responsible for establishing trusted connection with the gateway; and the trusted springboard link is used as a secure channel for data transmission and is responsible for ensuring that the data is not stolen or tampered in a transmission process. The server-level computing power identification gateway is realized through a lightweight Agent agent program deployed by an internal network server of a computing power enterprise, a trusted springboard link is established through SSH key authentication, and other servers authorized by the enterprise are skipped and logged in, so that the security of the gateway is enhanced through the mechanism, and bottom-layer resource data acquisition is realized in combination with an automatic script; and performing data summarization and resource coding on the acquired resource information, converting the resource information into a computing power identifier, and synchronously reporting the computing power identifier to a regional computing power identifier gateway.
Owner:CHINA ACADEMY OF INFORMATION & COMM

Student psychological assessment data sharing method and system based on block chain

The invention relates to the technical field of block chain data sharing, and discloses a student psychological assessment data sharing method and system based on a block chain. The method comprises the following steps: when a user logs in through a browser client, a system triggers a zero-knowledge proof generation process; and the client signs the timestamp and the random number by using a local false identity private key to form a zero-knowledge proof request packet, and submits the zero-knowledge proof request packet to the alliance chain node through a secure channel. And the node calls an identity verification contract to verify the signature, generates a session token containing a role type and a validity period after the signature passes, writes the token in an alliance chain account book in a hash manner and returns the token to the client. The client encrypts and stores the token, and a subsequent data request is carried through an HTTP header; and when it is detected that the token is expired or abnormal, the client automatically re-triggers the zero-knowledge proof process. The method depends on the block chain and zero knowledge proof technology, optimizes identity verification and session management, guarantees data sharing safety, compliance and stability, and is suitable for student psychological assessment data sharing among multiple subjects.
Owner:WUXI ZHENGZE INFORMATION CO LTD

Gas meter information secure transmission method based on response function compensation

The invention relates to the technical field of data transmission, and discloses a gas meter information secure transmission method based on response function compensation, which comprises the following steps: collecting multi-source data and network signal quality information of a gas meter; according to a real-time network environment and physical conditions, data transmission parameters are dynamically adjusted through a response function compensation algorithm, when data transmission in a static time slot fails, a dynamic retransmission time slot is automatically allocated for retransmission, a retransmission frequency threshold value is set, and packet loss caused by channel errors or collision is compensated through a retransmission response function; a multi-layer encryption mechanism is adopted to encrypt transmission data, an optimal transmission channel is intelligently selected according to network conditions, adaptive hybrid communication is performed through star flash short-distance communication or Wi-Fi wide-area transmission, and a response compensation mechanism of multi-dimensional environmental parameters is established based on a signal transmission model; transmitting the encrypted data to a monitoring management platform through a secure channel; therefore, safety early warning decision is realized, and dynamic accurate transmission and active safety protection are realized.
Owner:HUNAN YINTONG TECH CO LTD

Encryption strategy adjustable data multi-layer national secret encryption acquisition and transmission system and encryption strategy adjustable data multi-layer national secret encryption acquisition and transmission method

The invention discloses a data multi-layer national secret encryption acquisition and transmission system and method with an adjustable encryption strategy, and the system comprises a strategy adjustment module which is used for determining the encryption strategy of current data transmission, and the encryption strategy comprises a first encryption strategy and a second encryption strategy; the data acquisition module is used for acquiring data in the monitoring terminal in real time through a sensor and a data interface; the encryption module is used for performing multi-layer encryption processing on the acquired data by adopting SM1, SM2, SM3 and SM4 cryptographic algorithms; the transmission module is used for sending the encrypted data to a data center through a secure channel; and the data center is used for identifying the encryption strategy and decrypting and authenticating the received data. According to the method, data transmission can be carried out by flexibly adopting different strategies, and under the encryption condition, multi-layer encryption processing of the data can be carried out by adopting multiple national cryptographic algorithms, so that the security of data acquisition and transmission is enhanced.
Owner:ZHONGHUITONG ECOLOGICAL TECH (SHANDONG) CO LTD

Method for integrating quantum encryption communication into law enforcement recorder

The invention provides a method for integrating quantum encryption communication into a law enforcement recorder, and the quantum encryption communication law enforcement recorder provides a password service calling interface for a terminal application through a terminal software development kit (SDK). Application programs of the mobile terminal and various Internet of Things terminals establish a security channel of a security medium and a quantum security service platform through a standard API interface program of a terminal software development kit (SDK), and identity authentication is carried out on a quantum security service mobile engine. The functions of high-definition video recording, audio capturing, data storage, remote transmission and the like of a traditional law enforcement recorder are combined, and meanwhile the quantum encryption communication technology is integrated, so that confidentiality, integrity and non-tampering performance of law enforcement data are ensured. The quantum security TF card is embedded in the terminal equipment through the password service platform, and a small amount of keys are updated, so that equipment upgrading is completed with lower cost, quantum secure communication is realized, and the security level of data transmission is remarkably improved.
Owner:ANHUI GUODUN QUANTUM CLOUD DATA TECH CO LTD

Risk management and control method for cross-domain interaction of power data

The invention discloses a risk management and control method for cross-domain interaction of power data. The method comprises the following steps: deploying a pre-trained sensitive information identification model at a data exit gateway to identify a sensitive information type and a risk level; dynamically matching a desensitization strategy according to the risk level, and executing hierarchical desensitization operation; performing attribute-based encryption operation on a core field of the desensitized data, wherein an access attribute of a receiver is defined by a logic combination of a role attribute and a domain attribute; data are transmitted through a cross-domain secure channel based on a block chain, and decryption can be performed only when and only when a private key binding attribute set of a receiving party meets a logic combination access strategy predefined by a sender. According to the method disclosed by the invention, the risk of sensitive information leakage in cross-domain interaction of the power data is solved, hierarchical protection, dynamic access control and transmission integrity verification of the sensitive data are realized, and the security of data sharing of the power system is remarkably improved.
Owner:NANYANG POWER SUPPLY COMPANY OF STATE GRID HENAN ELECTRIC POWER

Debugging Microservices in Trusted Execution Environments

Trusted execution environment microservice debugging is provided. A debug operation is performed on a microservice running in the trusted execution environment utilizing a debugger server within a trusted execution environment based on a set of microservice debug messages received from a client device of a user. A microservice debug result of performing the debug operation on the microservice running in the trusted execution environment is sent to a debugger client within a privilege separation container outside the trusted execution environment via a secure channel between a privilege separation secure channel client within the trusted execution environment and a privilege separation secure channel server within the privilege separation container outside the trusted execution environment utilizing the debugger server. The microservice debug result of performing the debug operation on the microservice running in the trusted execution environment is sent to the client device of the user utilizing the debugger client.
Owner:INTERNATIONAL BUSINESS MACHINE CORPORATION

Cloud instance privacy security enhancement method based on security channel dynamic measurement

The invention discloses a cloud instance privacy security enhancement method based on security channel dynamic measurement, and the method comprises the steps: building a secure and credible communication channel through a secure communication client, and connecting the communication channel to a local user side through the Internet; a local user side deploys a TPCM secure communication module which is responsible for secure communication with the multi-cloud service rental instance. And the trusted software base is responsible for maintaining a measurement strategy and performing measurement judgment and control when a user process runs in the cloud service lease instance. The system specifically comprises a judgment mechanism module, a control mechanism module, a measurement mechanism module and a credible reference library. On the premise that infrastructures of cloud service providers are not trusted, in order to achieve safety and credibility of user remote cloud service lease instance data and application during operation and privacy protection of users, a measurement agent and a safety communication client are deployed in a cloud service lease instance; meanwhile, the tenant can perform deep monitoring on the process in the cloud instance, and it is ensured that sensitive information such as a monitoring strategy and reference data is not exposed to a cloud service provider.
Owner:BEIJING UNIV OF TECH

System and method for multi-PHY based MACsec over secure tunnels

In an embodiment, a method includes receiving a data packet and generating an optimized security tag based on a standard security tag by replacing an 8-byte optional secure channel identifier (SCI) of the standard security tag with 32 most significant bits of a 4 packet number, a 2-byte MAC Security Entities (SecY) engine identifier, and a 2-byte short SCI. The method further includes encrypting the data packet and transmitting the encrypted data packet comprising the optimized security tag to an electronic device.
Owner:CISCO TECHNOLOGY INC

Application certificate provisioning process using connected vehicle

An example operation includes one or more of establishing a secure channel between a host platform and a vehicle based on a transport layer security (TLS) handshake between the host platform and the vehicle, downloading an authorization code to the vehicle through the secure channel between the host platform and the vehicle, receiving the authorization code from a mobile application installed on a mobile device, generating a mobile application certificate for the mobile device and transmitting the mobile application certificate to the mobile application on the mobile device, and establishing a secure connection between the host platform and the mobile application on the mobile device based on the mobile application certificate.
Owner:TOYOTA MOTOR NORTH AMERICA INC +1

Lightweight identity authentication and data security interaction method, system and equipment for protecting measurement and control device and medium

The invention discloses a lightweight identity authentication and data security interaction method, system, equipment and medium for a protection measurement and control device, and relates to the technical field of power system information security. The method comprises the steps that the protection measurement and control device and an edge gateway carry out bidirectional identity authentication based on a preset shared master key and random numbers generated by the protection measurement and control device and the edge gateway; after the authentication succeeds, the two parties derive a session key of the communication based on the random number; between the protection measurement and control device and the edge gateway, service data is encrypted by using a session key, an integrity check code is generated, and a security data message is constructed for transmission; the receiver performs integrity verification and decryption on the security data message to obtain plaintext data; and receiving a key updating instruction from the cloud based on the secure channel, and performing secure updating on a preset shared master key. According to the invention, a mechanism of combining the pre-shared master key with the dynamic session key is adopted, so that the complex certificate chain verification overhead of a PKI system is avoided.
Owner:GUIZHOU POWER GRID CO LTD

System and Method for Multi-PHY based MACsec over Secure Tunnels

In an embodiment, a method includes receiving a data packet and generating an optimized security tag based on a standard security tag by replacing an 8-byte optional secure channel identifier (SCI) of the standard security tag with 32 most significant bits of a 4 packet number, a 2-byte MAC Security Entities (SecY) engine identifier, and a 2-byte short SCI. The method further includes encrypting the data packet and transmitting the encrypted data packet comprising the optimized security tag to an electronic device.
Owner:CISCO TECHNOLOGY INC

OTA upgrading method based on dynamic security and credibility verification and related equipment

The invention relates to the technical field of vehicles, in particular to an OTA upgrading method and related equipment based on dynamic security and credibility verification, and the method comprises the steps: a cloud end obtains an original upgrading package, dynamically fragments the original upgrading package, and outputs an upgrading file; a secure channel is established between the vehicle end and the cloud end, and the upgrade file is downloaded through the secure channel and temporarily stored; the vehicle end triggers TEE intervention, credibility verification is carried out on the upgrade file, and after verification is passed, fragmented data is decrypted and recombined into a complete upgrade package; installing the recombined upgrade package to a vehicle end, and triggering a rollback process based on backup mirror image hash verification when the installation fails; according to the invention, the safety and reliability of vehicle OTA upgrading can be improved.
Owner:CHINA FAW CO LTD

Systems and methods for sharing network resources for concurrent I / O operations

Systems and methods for sharing secure channel access for the management of multiple computing resources are herein disclosed. According to one embodiment, an Information Handling System (IHS) includes computer-executable instructions to receive a plurality of Input / Output (I / O) requests from the vendor computing device in which the I / O requests are directed to one of the customer computing resources. The instructions may also establish a secure channel between the vendor computing device and the one customer computing resource, and send the first I / O requests to the one customer computing resource through the secure channel.
Owner:DELL PROD LP

Safe closed-loop circulation and physical output control method and system for ultra-large raster image

The invention discloses a secure closed-loop circulation and physical output control method and system for an oversized raster image. The method comprises the following steps: a client adaptively calculates fragmentation granularity according to a network state, fragments an image and encrypts and transmits the image; the server performs secondary encryption and distributed storage on the received data; the preview end constructs a multi-resolution hierarchy based on a viewport mapping technology, only extracts visual slices and superposes watermarks, and transmits the visual slices and the watermarks to a client memory for zero-cache rendering; and the printing end constructs a secure channel bound with a hardware fingerprint, carries out streaming decryption on the data, embeds traceability information, and injects a printing drive in real time. According to the method, the problems of unstable GB-level image transmission and unsmooth preview are solved, and high-efficiency circulation and strict protection of design assets are realized through full-process data non-landing streaming control.
Owner:XINJIANG UNIVERSITY

Authentication of user tags obtaining communication services via I / O user devices performing user terminal emulation as a cloud computing service

A user terminal emulation server establishes a secure channel connection with a first I / O user device using a session identifier and an identifier associated with the first I / O user device to determine a first I / O user device specific key generated from a master key, the first I / O user device specific key and the session identifier being used for secure communication of messages with the first I / O user device. An indication of an I / O user interface capability of the first I / O user device is received through the secure channel connection with the first I / O user device. The user terminal emulation server communicates with the first I / O user device to use the I / O user interface capability to provide at least part of the communication service for a user.
Owner:TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)

Data security transmission method and system for wind power plant

The invention belongs to the field of data transmission of wind power plants, and particularly discloses a secure data transmission method and system for a wind power plant, and the method comprises the steps: firstly obtaining wind speed, wind direction and other wind power plant parameters, grouping the parameters in sequence, mining a data sequence dependency relationship by means of an optimized long-short-term memory network, and extracting a feature vector; associating and integrating the equipment space and the operation relationship into a feature matrix; constructing a multi-dimensional data encryption model based on multiple dimensions of parameters, and encrypting the feature matrix by adopting a dynamic key generation mechanism; and establishing a secure channel to transmit encrypted data through a self-adaptive routing selection strategy based on a link state, and restoring the data by a receiving end by using a corresponding key and a decryption algorithm. The system is composed of a parameter acquisition unit, a data grouping unit and other eight units, all the units work cooperatively, the safety guarantee of the whole process of wind power plant data from acquisition and encryption processing to safe transmission and decryption reduction is achieved, and the data transmission safety and reliability are effectively improved.
Owner:HUANENG RENEWABLES CORP LTD HEBEI BRANCH

Ship loading method based on multi-intelligent optimization algorithm

The invention provides a ship loading method based on a multi-intelligent optimization algorithm, and relates to the technical field of shipping loading optimization, and the method comprises the following steps: S1, stowage request receiving and data preprocessing: receiving a stowage request and carrying out data processing on ship parameters, cargo information and loading rules; s2, deck virtual area division and functional area mapping: dynamically dividing a deck into a plurality of functional sub-areas according to loading rules and cargo attributes; s3, region-level multi-algorithm collaborative loading: for each sub-region, dynamically matching based on region characteristics and cooperatively executing at least two different types of intelligent optimization algorithms to carry out cargo loading; s4, performing global scheme verification and dynamic fine adjustment, including summarizing loading schemes of each sub-region, and performing global weight balance and security channel connectivity verification; and S5, outputting and visualizing a loading result. According to the method, multiple constraint conditions can be automatically processed, the optimization strategy is dynamically matched, and global optimization is realized.
Owner:CNOOC ENERGY LOGISTICS CO LTD +1