OPTIMIZED HEADER INFORMATION TO ENABLE ACCESS CONTROL

    公开(公告)号:US20240333524A1

    公开(公告)日:2024-10-03

    申请号:US18740973

    申请日:2024-06-12

    申请人: UAB 360 IT

    IPC分类号: H04L9/32 H04L9/08 H04L67/133

    摘要: A method configuring a manager device, responsible for managing network services provided by an infrastructure device, to determine a manager request including a signature header signed by utilizing a manager private key associated with the manager device and a timestamp header identifying a point in time when the signature header was signed; configuring the manager device to transmit, to the infrastructure device, the manager request to request performance of an action associated with managing the network services; and configuring the manager device to receive, from the infrastructure device based on transmitting the manager request, an authorization message indicating successful authorization of the manager request, the successful authorization being based on a verification that a time difference between the point in time when the signature header was signed and a current time satisfies a predetermined duration of time is disclosed. Various other aspects are contemplated.

    BLOCKCHAIN-BASED METHOD AND SYSTEM FOR SDP ACCESS CONTROL

    公开(公告)号:US20240323037A1

    公开(公告)日:2024-09-26

    申请号:US18259795

    申请日:2021-12-30

    IPC分类号: H04L9/32 H04L9/00

    CPC分类号: H04L9/3297 H04L9/50

    摘要: Provided in embodiments of the present disclosure are a blockchain-based method and system for SDP access control. An SDP connection accepting host transmits information of the SDP connection accepting host and a supported connection policy to a blockchain system node, performs blockchain node verification and consensus, and records in a blockchain ledger; an SDP connection initiating host submits an identity authentication request to the blockchain system node; the blockchain system node verifies information of the identity authentication request, and searches for a list of SDP connection accepting hosts accessible to the SDP connection initiating host, and returns to the SDP connection initiating host; the SDP connection initiating host initiates a connection request, the connection request comprising a signature of the blockchain system node with respect to the SDP connection accepting hosts; the SDP connection accepting host verifies the connection request initiated by the SDP connection initiating host and provides an access service upon successful verification. The embodiments of the present disclosure prevent an SDP controller from coming under a DDoS attack and prevent the SDP controller from implementing an incorrect authorization.