Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

16 results about "Trusted path" patented technology

A trusted path or trusted channel is a mechanism that provides confidence that the user is communicating with what the user intended to communicate with, ensuring that attackers can't intercept or modify whatever information is being communicated.

Switch security protocol interaction method, device and equipment and storage medium

The invention provides a switch security protocol interaction method and device, equipment and a storage medium, and the method comprises the steps: carrying out the protocol type recognition of a received network data frame, and generating first intermediate data according to the recognized protocol type; according to the protocol type identifier of the first intermediate data, converting the format of the network data frame through a protocol mapping rule to generate second intermediate data; determining a security processing strategy corresponding to a preset strategy rule set according to the strategy identification field of the second intermediate data; reconstructing the original content of the second intermediate data into a target data frame conforming to a target protocol format according to a security processing strategy; and according to the security level field and the communication direction of the target data frame, performing path screening through the trusted path list, and determining a target interaction path. According to the scheme, the trusted interaction path can be dynamically screened based on the protocol type and the security level field of the target data frame, and controllable data transmission between switches under security protocol cooperation is realized.
Owner:SHENZHEN SCODENO TECH CO LTD

An intelligent park monitoring method and system based on end-to-end cooperation

ActiveCN120378459BIndividual entry/exit registersTransmissionSensing dataCooperative behavior
The application discloses an intelligent park monitoring method and system based on end-to-end cooperation, and particularly relates to the field of intelligent park monitoring management based on end-to-end cooperation, and comprises the following steps: acquiring a cooperative behavior structure of multi-source synchronous sensing data in an intelligent park, constructing an initial cooperative path set, establishing an end-to-end cooperative behavior chain, extracting a candidate trusted path in the park which meets terminal response synchronization and type cross characteristics; performing disturbance injection on the terminal in the preliminary trusted cooperative chain and extracting disturbance feedback results to generate an elastic response trajectory with quantifiable characteristics. By injecting multiple types of disturbances into the cooperative path and dynamically extracting the response elastic characteristics thereof, combined with behavior generation path inversion and trust recoverability determination, identification of pseudo-consistent cooperative behavior and structural reconstruction of a trusted path are realized, thereby solving the core problem of false cooperative paths being mistakenly identified as real behavior by existing systems, leading to monitoring misjudgment.
Owner:SHENZHEN TIMES HIGH-TECH IND PARK CO LTD

SDN-oriented trusted dynamic routing construction method and system

The invention belongs to the technical field of networks, and particularly relates to an SDN-oriented trusted dynamic routing construction method and system. The method comprises the following steps: constructing a credible control plane by utilizing a credible computing technology for measuring and protecting the integrity of the control plane; a trusted path between a data plane and a control plane is constructed based on a remote attestation technology, and the integrity of routing table information is ensured; routing table rules are updated in an incremental mode, and performance losses caused by remote attestation and encryption and decryption processes are reduced. According to the method, the SDN controller can be protected from being attacked and damaged, modification of flow table rules, flow forgery or initiation of denial of service attacks can be defended, communication links between the SDN controller and each switch in the network can be protected, man-in-the-middle attacks, data tampering or information leakage and the like can be defended, and the VNF with virtualized network functions can be protected. The attack of malicious system software is prevented.
Owner:INSTITUTE OF INFORMATION ENGINEERING CHINESE ACADEMY OF SCIENCES

Artificial intelligence-based network security data analysis system and method

The application discloses an artificial intelligence-based network security data analysis system and method, relates to the technical field of network security, and constructs a structured triple, is mapped into a graph node and an edge, and is stored into a graph database; graph data is extracted from the graph database, a node feature matrix, an adjacency matrix and an edge feature matrix are generated; a node representation vector is trained by using a graph attention mechanism, and a semantic propagation matrix is constructed; a predicted attack path model is obtained; a candidate attack path set is generated; a trusted scoring model is constructed and optimized, high-trust paths with scores exceeding a threshold value are screened; a multilayer perception machine model is constructed, an attack source prediction model is obtained; real-time graph data is acquired, nodes exceeding the threshold value are marked as risk nodes, and are uploaded to a protection system to trigger an alarm and an inspection, and the automation and real-time performance of attack source identification are improved.
Owner:江苏中维智慧工业有限公司

A trust management method for a fog node in edge computing

ActiveCN116244700BPathPingData set
This invention belongs to the interdisciplinary fields of edge computing, privacy and security, and machine learning. It discloses a trust management method for fog nodes in edge computing. First, it calculates the fog node's trust value based on subjective trust value, indirect trust value, and capability trust value. The Bellman equation is used to solve for the shortest trust path, resulting in an initial dataset containing the three trust attributes of the fog node. This initial dataset is divided into a training set and a test set. The dataset is preprocessed by blurring the distribution range of the trust values. The trust attribute with the largest information gain in the training set is calculated as the splitting attribute. The training set is then divided into several subsets. The partitioning terminates if all fog nodes in a subset belong to the same category or if all candidate attributes of a fog node have been used. After generating a decision tree, a loss function is used to prune the decision tree. This invention demonstrates reliability and effectiveness in detecting malicious nodes and internal attacks.
Owner:NANJING UNIV OF POSTS & TELECOMM

Distributed CA certificate management system based on block chain

The invention relates to the technical field of digital certificate management, in particular to a block chain-based distributed CA certificate management system, which comprises a certificate generation module, a block chain module, an authority control module, an intelligent contract module and an identity authentication module, according to the scheme, by constructing the public cross trust list and the cross-chain trust structure, a CA mutual recognition mechanism between different block chain systems is realized, so that the interoperability of cross-chain operation and the uniformity of identity authentication are effectively improved; a state transition system is introduced to dynamically manage a public cross trust list, flexible joining of new CA nodes and participants is supported, and the method can adapt to a complex multi-chain heterogeneous environment; a hierarchical CA structure design is adopted, a complete certificate chain is constructed, a traceable identity trust path is formed, and the security and reliability of an identity authentication process are ensured in combination with the non-tampering characteristic of a block chain technology and the automatic execution capability of an intelligent contract.
Owner:GUANGXI DIGITAL CERTIFICATION CO LTD

Digital asset cross-platform circulation processing method

The invention relates to a digital asset cross-platform circulation processing method. The method comprises the steps of obtaining digital assets to be circulated and original platform structure description information; whether structure decomposition processing is executed or not is judged according to the structure support capacity of the target platform, if the structure support capacity contains fields or functions incompatible with the target platform, assets are divided into a compatible part and an incompatible part, the compatible part is packaged as standard transfer assets, and the incompatible part generates a delay compensation instruction; for the decomposed assets, state binding snapshots before and after decomposition are generated on an original platform, an irreversible mapping relation is established, and meanwhile, a state commitment lock is started to freeze the original assets; and dynamically evaluating a selectable target platform set based on the network load, trust level and compliance region information of the target platform, and selecting a trusted path to initiate an asset transmission request to the target platform. According to the method, through full-process intelligent analysis of the asset structure, the execution logic and the dependency relationship, safe, controllable and high-precision circulation of cross-platform assets is realized.
Owner:SHANGHAI KANGQIAO DIGITAL TECHNOLOGY CO LTD

An experience inheritance and collective wisdom evolution method and system based on an AI agent social network

This invention discloses a method and system for experience inheritance and collective wisdom evolution based on an AI agent social network, belonging to the field of artificial intelligence knowledge management. The AI ​​agent extracts methodologies accumulated in tasks into structured experience cards containing problem descriptions, solution steps, key insights, preconditions, and effect verification; it employs a four-layer storage architecture to hierarchically manage the visibility of experience; it achieves experience retrieval through a comprehensive ranking based on semantic similarity and superimposed with social trust path factors; it adopts feedback-driven continuous updates to experience quality scores, forming an evolutionary mechanism of survival of the fittest; and it links experience contribution data with credit scores to create sharing incentives.
Owner:YUNNAN DIANCHUANG FUTURE TECHNOLOGY CO LTD

Private cloud-oriented trusted multi-cluster unified nano-management method and system

The invention discloses a private cloud-oriented trusted multi-cluster unified management method and system. The method comprises the following steps: receiving an access request, verifying a certificate and trusted measurement, and generating clusters, resources and strategy objects; the method comprises the following steps: collecting multi-source data, preprocessing and forming association; constructing a multi-cluster trusted graph to form a multi-cluster trusted graph; constructing a credible path risk assessment module, and generating a node risk label; grapporter model training is improved, and a node risk label is used to supervise a training model; a risk-driven scheduling decision is made, and a cross-cluster service scheduling decision is generated. According to the method, the trusted path risk assessment module is constructed, and the improved Grapher model is combined, so that trusted unified management and security perception scheduling of the private cloud multi-cluster are realized.
Owner:CHONGQING SHOUXUN TECH CO LTD

Real estate registration data exception identification processing method

The invention discloses a real estate registration data exception identification processing method, and particularly relates to the technical field of real estate data management.The method comprises the steps that a field fingerprint database is built by generating field fingerprints, a data credibility weight model is built based on multiple dimension indexes, and a high-risk channel in data propagation is identified by building a trust path diagram; semantic consistency verification is carried out before calling, distributed reverse cleaning operation is executed after initial pollution nodes are backtracked and recognized, finally, a sweep range coefficient is calculated according to pollution propagation characteristics, field control and a cross-system protection strategy are executed according to risk levels, and penetrating recognition and dynamic treatment of pollution data are achieved. According to the method, data tracing is realized through field fingerprints, the data credibility weight model and the trust path diagram are constructed to realize abnormal propagation chain identification, and semantic consistency verification and a distributed reverse cleaning strategy are combined, so that high-precision abnormal identification, pollution blocking and dynamic treatment of real estate registration data are realized, and the credibility and consistency of the whole process of the data are ensured.
Owner:东营金安建设工程有限公司

Trusted path establishment systems, methods, apparatuses, devices, and storage media

ActiveCN119583385BSecuring communicationPathPingNetwork orchestration
This application provides a trusted path establishment system, method, apparatus, device, and storage medium, relating to the field of computer technology. It effectively improves the reliability of trusted paths and ensures the security and privacy of data within the trusted paths. The system includes a network orchestrator, a device verification network element connected to the network orchestrator, and a link management platform. The link management platform is used to obtain the trusted status of the corresponding network links and send the trusted status to the network orchestrator; the trusted status describes the reliability of the network links. The device verification network element is used to obtain the trusted status of the corresponding network devices and send the trusted status to the network orchestrator; the trusted status describes the reliability of the network devices. The network orchestrator receives the trusted status of the links and the trusted status of the devices; based on the trusted status of the links and the trusted status of the devices, it obtains a trusted path topology, which includes at least one trusted path.
Owner:CHINA UNITED NETWORK COMM GRP CO LTD

Trusted path establishment method and apparatus, and storage medium

PCT designated stageWO2025247313A1Securing communicationPathPingEngineering
The present application provides a trusted path establishment method and apparatus, and a storage medium. The trusted path establishment method comprises: sending state request information to a device verification network element (S401), the state request information comprising identification information of a network device; receiving state response information sent by the device verification network element (S403), the state response information comprising a trusted state of the network device; acquiring requirement information for a trusted path (S404); and establishing the trusted path on the basis of the trusted state of the network device and the requirement information for the trusted path (S405).
Owner:CHINA UNITED NETWORK COMM GRP CO LTD

A multi-attribute fusion shortest path verifiable query method and device

This invention belongs to the field of electronic digital data processing technology, specifically relating to a method and apparatus for verifying shortest paths with multi-attribute fusion. The method constructs a compact encrypted index structure to support efficient path segment concatenation and designs a pairing verification mechanism to ensure the verifiability of the results. Without revealing the graph structure or query intent, it achieves secure, efficient, and reliable querying of multi-attribute constrained paths. Through the collaborative design of key mechanisms such as structured indexing, fusion encryption, path verification, and attribute optimization, it not only overcomes the bottlenecks of existing technologies in query efficiency and verification capabilities but also realizes personalized path selection and lightweight deployment under multi-attribute constraints. It has broad application prospects and is suitable for various practical scenarios such as cloud data outsourcing, privacy-sensitive graph mining, and trusted path querying.
Owner:QILU UNIVERSITY OF TECHNOLOGY (SHANDONG ACADEMY OF SCIENCES) +1

A blockchain-based distributed CA certificate management system

The application relates to the technical field of digital certificate management, in particular to a distributed CA certificate management system based on a block chain, which comprises a certificate generation module, a block chain module, an authority control module, an intelligent contract module and an identity authentication module; the scheme realizes a CA mutual recognition mechanism between different block chain systems by constructing a public cross-trust list and a cross-chain trust structure, thereby effectively improving the interoperability of cross-chain operations and the uniformity of identity authentication; a state conversion system is introduced to dynamically manage the public cross-trust list, supports the flexible addition of new CA nodes and participants, and can adapt to a complex multi-chain heterogeneous environment; a hierarchical CA structure design is adopted to construct a complete certificate chain and form a traceable identity trust path, and in combination with the non-tamperable characteristics of the block chain technology and the automatic execution capability of the intelligent contract, the safety and reliability of the identity authentication process are ensured.
Owner:GUANGXI DIGITAL CERTIFICATION CO LTD

Systems and methods for trusted path secure communication

A system for establishing a trusted path for secure communication between client devices and server devices, such as between an account holder and a financial institution, can provide the core security attributes of confidentiality (of the parties), integrity (of the information), anti-replay (protection against replay fraud) and / or anti-tampering (protection against unauthorized changes to information being exchanged and / or modules that generate and communicate such information). A messaging layer implementation in favor of a transport layer implementation can provide a trusted path. This infrastructure features secure cryptographic key storage, and implementation of a trusted path built using the cryptographic infrastructure. The trusted path protects against unauthorized information disclosure, modification, or replays. These services can effectively protect against Man-in-the-Middle, Man-in-the-Application, and other attacks.
Owner:ACCERTIFY INC