Patents
Literature
Hiro is an intelligent assistant for R&D personnel, combined with Patent DNA, to facilitate innovative research.
Hiro

47 results about "Security Parameter Index" patented technology

The Security Parameter Index (SPI) is an identification tag added to the header while using IPsec for tunneling the IP traffic. This tag helps the kernel discern between two traffic streams where different encryption rules and algorithms may be in use.

Method and system for distributed network address translation with network security features

A method and system for distributed network address translation with security features. The method and system allow Internet Protocol security protocol (“IPsec”) to be used with distributed network address translation. The distributed network address translation is accomplished with IPsec by mapping a local Internet Protocol (“IP”) address of a given local network device and a IPsec Security Parameter Index (“SPI”) associated with an inbound IPsec Security Association (“SA”) that terminates at the local network device. A router allocates locally unique security values that are used as the IPsec SPIs. A router used for distributed network address translation is used as a local certificate authority that may vouch for identities of local network devices, allowing local network devices to bind a public key to a security name space that combines a global IP address for the router with a set of locally unique port numbers used for distributed network address translation. The router issues security certificates and may itself be authenticated by a higher certificate authority. Using a security certificate, a local network device may initiate and be a termination point of an IPsec security association to virtually any other network device on an IP network like the Internet or an intranet. The method and system may also allow distributed network address translation with security features to be used with Mobile IP or other protocols in the Internet Protocol suite.
Owner:HEWLETT-PACKARD ENTERPRISE DEV LP

Method for Network Access, Related Network and Computer Program Product Therefor

A method of providing access of a mobile terminal to an IP network includes establishing a security association between the mobile terminal and a first security gateway of a first router in said plurality of routers. The mobile terminal is provided access to the IP network via the first router, and the data exchanged between the mobile terminal and the first router is encapsulated by using the security association. The security association is made available to at least one second router having a second security gateway. The mobile terminal is provided access to the IP network via said the second router, and data exchanged between the mobile terminal and the second router is encapsulated by using the same security association. Establishing the security association includes assigning a Security Parameter Index that identifies univocally the first security gateway and the security association. Making the security association available to the second router includes making available to the second router the Security Parameter Index. The second router may thus have access to the security association either by requesting it from the first router or by identifying it in a set of security associations sent from the first router to a set of routers candidate to become the second router as result of the mobility of the mobile terminal.
Owner:TELECOM ITALIA SPA

Industrial internet security situation evaluation method based on multiple attributes

The invention relates to an industrial internet security situation evaluation method based on multiple attributes. The method comprises the steps of constructing target industrial internet related software and hardware; monitoring and analyzing the network flow of the international Internet gateway; taking the Web asset set of each target region as a target to obtain a security threat index of theWeb assets of the target region; obtaining hardware of a target area and security threat indexes of related systems by taking a set of the hardware of each area and the related systems as a target, and obtaining comprehensive security threat evaluation indexes of all the target areas according to the number of scanning times of an industrial internet related protocol port of each target area. Theinvention provides an industrial internet security situation evaluation method based on multiple attributes in the technical scheme. The problems that the weight coefficient is unreasonable and the decision accuracy and reliability are slightly poor due to the fact that the existing industrial internet security situation evaluation technology bureau is limited to objective evaluation or subjective evaluation are effectively solved, and the level and accuracy of industrial internet security situation evaluation are effectively improved.
Owner:NAT COMP NETWORK & INFORMATION SECURITY MANAGEMENT CENT
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products