首页> 外国专利> Method and Apparatus for Managing Authentication in a Decentralized or Distributed Network of Cyber- Physical Systems

Method and Apparatus for Managing Authentication in a Decentralized or Distributed Network of Cyber- Physical Systems

机译:在网络物理系统的分散式或分布式网络中管理身份验证的方法和设备

摘要

A Method and Apparatus is disclosed for Multi-Agent Authentication in a decentralized or distributed network of Cyber-Physical Systems for the purpose of enhancing the overall Utility of Agency and Ownership. This Apparatus consists of an End Agent Authentication Device (an “Authenticator”) that is necessary in all authentication processes, and this invention defines an End Agent State Machine, and a set of nine distributed authentication processes that are enabled by this Authenticator. This Method acknowledged the ability for an Authenticated End Agent to have its Semantic Data Model managed by its Authenticated Owner. This Method enhances security and reduces complexity by allowing the Authenticator to execute these nine processes in both decentralized or distributed network configurations.;An Example of this Method and Apparatus in use is a scenario with an internet-connected non-Authenticator Device (a “Non-Authenticator End Agent”) in a commercial/retail location whereby the Owner (an “Owner Interested Agent”) of that Device, very likely the Owner of the commercial/retail location, has Authenticated that Device using their Authenticator (an “Authenticator End Agent”) on a Decentralized or Distributed Network. In this example, the owner has pre-defined the Semantics of that Device's End Agent Sub-Class(es), State Machine Sub-Classes (if any), and its Classes and Attributed of Service to commercial/retail customers in the Device's “Semantic Data Model”. As a function of that Semantic Data Model, the owner has defined the Sub-Classes of commercial/retail customers (“Non-Owner Interested Agents”) who have the Permission to Authenticate with the internet-connected Device, be served by the Device, and in certain circumstances even Control the Device, within the Parameters set by the Owner of that Device in the Device's Semantic Data Model. When this Non-Owner Authentication occurs, an Owner-defined limited-to-significant set of capabilities are made available by the End Agent to the Non-Owner Interested Agent without compromising the notion in the Semantic Data Model of Ownership, Control and/or Authentication.
机译:公开了一种用于在网络物理系统的分散式或分布式网络中进行多代理认证的方法和装置,以增强代理和所有权的整体效用。该设备包括在所有认证过程中都必需的终端代理认证设备(“认证器”),并且本发明定义了终端代理状态机,以及由该认证器启用的一组九个分布式认证过程。此方法承认,经过身份验证的终端代理可以由其经过身份验证的所有者管理其语义数据模型。通过允许身份验证器在分散式或分布式网络配置中执行这九个过程,此方法可增强安全性并降低复杂性。;此方法和设备的示例使用的是连接互联网的非身份验证器设备(“非-“验证方终端代理”),由此该设备的所有者(“所有者感兴趣的代理”),很可能是该商业/零售地点的所有者,已使用其身份验证器对设备进行了验证(“验证方终端代理”)。分散式或分布式网络上的“代理”)。在此示例中,所有者在设备的“”中为设备的商业/零售客户预定义了该设备的终端代理子类,状态机子类(如果有)及其服务的类别和服务的语义。语义数据模型”。根据该语义数据模型,所有者定义了有权通过互联网连接的设备进行身份验证的商业/零售客户(“非所有者感兴趣的代理商”)的子类,由该设备提供服务,在某些情况下,甚至可以在设备的所有者在设备语义数据模型中设置的参数内控制设备。发生此非所有者身份验证时,最终代理将所有者定义的重要限定功能集提供给非所有者感兴趣的代理,而不会损害所有权,控制和/或语义数据模型中的概念身份验证。

著录项

  • 公开/公告号US2018083965A1

    专利类型

  • 公开/公告日2018-03-22

    原文格式PDF

  • 申请/专利权人 WILLIAM CURTIS DONOVAN;

    申请/专利号US201615267292

  • 发明设计人 WILLIAM CURTIS DONOVAN;

    申请日2016-09-16

  • 分类号H04L29/06;

  • 国家 US

  • 入库时间 2022-08-21 13:02:38

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号