US2021006556A1PendingUtilityA1

Forwarding Method, Forwarding Apparatus, and Forwarder for Authentication Information in Internet of Things

Assignee: HUAWEI TECH CO LTDPriority: Jan 4, 2015Filed: Sep 24, 2020Published: Jan 7, 2021
Est. expiryJan 4, 2035(~8.4 yrs left)· nominal 20-yr term from priority
H04L 63/0823H04L 63/08H04L 63/0853H04L 63/0807H04L 2463/142H04L 63/083H04L 63/0884H04W 12/06H04L 2463/121H04L 63/1441H04W 12/125H04L 63/108H04L 63/126H04W 12/1205H04L 29/06
47
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

A forwarding method is applied to a constrained node and includes: receiving authentication information; determining whether the authentication information is received for the first time; and if the authentication information is received not for the first time, forwarding the authentication information; or if the authentication information is received for the first time, determining whether the authentication information is valid authentication information, and if the authentication information is not valid authentication information, discarding the authentication information, or if the authentication information is valid authentication information, verifying the valid authentication information, and forwarding the valid authentication information after the verification succeeds.

Claims

exact text as granted — not AI-modified
What is claimed is: 
     
         1 . A method implemented by a constrained node and comprising:
 receiving, from an Internet of things (IoT) client, authentication information a first time;   performing, in response to receiving the authentication information the first time, a first verification of the authentication information;   receiving the authentication information a second time; and   forwarding, in response to receiving the authentication information the second time, the authentication information without performing a second verification of the authentication information.   
     
     
         2 . The method of  claim 1 , further comprising determining that the authentication information is received for the first time when receiving the authentication information in a non-security mode. 
     
     
         3 . The method of  claim 1 , further comprising further forwarding the authentication information when the first verification succeeds. 
     
     
         4 . The method of  claim 3 , further comprising discarding the authentication information when the first authentication fails. 
     
     
         5 . The method of  claim 3 , wherein the authentication information comprises a forward token. 
     
     
         6 . The method of  claim 5 , wherein the first verification is successful when the forward token is a legitimate token. 
     
     
         7 . The method of  claim 6 , wherein the forward token is the legitimate token when time validity of the forward token is within a valid period and a route between the constrained node and a resource server exists. 
     
     
         8 . The method of  claim 5 , further comprising:
 deleting the forward token from the authentication information to obtain modified authentication information; and   further forwarding the modified authentication information in a security mode.   
     
     
         9 . A constrained node comprising:
 a receiver configured to:
 receive, from an Internet of things (IoT) client, authentication information a first time, and 
 receive the authentication information a second time; and 
   a processor coupled to the receiver and configured to:
 perform, in response to receiving the authentication information the first time, a first verification of the authentication information, and 
 forward, in response to receiving the authentication information the second time, the authentication information without performing a second verification of the authentication information. 
   
     
     
         10 . The constrained node of  claim 9 , wherein the processor is further configured to determine that the authentication information is received for the first time when receiving the authentication information in a non-security mode. 
     
     
         11 . The constrained node of  claim 9 , wherein the processor is further configured to further forward the authentication information when the first verification succeeds. 
     
     
         12 . The constrained node of  claim 11 , wherein the processor is further configured to discard the authentication information when the first authentication fails. 
     
     
         13 . The constrained node of  claim 11 , wherein the authentication information comprises a forward token. 
     
     
         14 . The constrained node of  claim 13 , wherein the first verification is successful when the forward token is a legitimate token. 
     
     
         15 . The constrained node of  claim 14 , wherein the forward token is the legitimate token when time validity of the forward token is within a valid period and a route between the constrained node and a resource server exists. 
     
     
         16 . The constrained node of  claim 13 , where the processor is further configured to delete the forward token from the authentication information to obtain modified authentication information, and wherein the receiver is further configured to further forward the modified authentication information in a security mode. 
     
     
         17 . A computer program product comprising instructions for storage on a non-transitory medium and that, when executed by a processor, cause a constrained node to:
 receive, from an Internet of things (IoT) client, authentication information a first time;   perform, in response to receiving the authentication information the first time, a first verification of the authentication information;   receive the authentication information a second time; and   forward, in response to receiving the authentication information the second time, the authentication information without performing a second verification of the authentication information.   
     
     
         18 . The computer program product of  claim 17 , wherein the instructions further cause the constrained node to determine that the authentication information is received for the first time when receiving the authentication information in a non-security mode. 
     
     
         19 . The computer program product of  claim 17 , wherein the instructions further cause the constrained node to further forward the authentication information when the first verification succeeds. 
     
     
         20 . The computer program product of  claim 19 , wherein the instructions further cause the constrained node to discard the authentication information when the first authentication fails.

Join the waitlist — get patent alerts

Track US2021006556A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.