Insider threat detection utilizing user group to data object and/or resource group access analysis
US-2019158513-A1 · May 23, 2019 · US
US12425956B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-12425956-B2 |
| Application number | US-201917770423-A |
| Country | US |
| Kind code | B2 |
| Filing date | Oct 28, 2019 |
| Priority date | Oct 28, 2019 |
| Publication date | Sep 23, 2025 |
| Grant date | Sep 23, 2025 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
The present disclosure relates to a service terminal, a network device and a method for access security at Operation and Maintenance, O&M, support of the network device. The network device ( 100 ) and the service terminal ( 20 ) are configured to establish a communication using at least one access setting for establishing a communication. The at least one access setting comprising one of the following: an IP address, one or several serial communication parameters, access protocol, authentication method. The method comprises to receive a trigger for changing the at least one access setting for establishing a communication with the service terminal, and to change the at least one access setting for establishing the communication with the service terminal to at least one new access setting.
Opening claim text (preview).
The invention claimed is: 1. A network device comprising: an Operations & Maintenance (O&M) interface having an access setting to be used for communicating with the network device via the O&M interface; and processing circuitry configured to cause the network device to: change the access setting to a new access setting, in response to the network device receiving a trigger for changing the access setting; utilize an equipment item of the network device to output a signal that is independent of communicating on the O&M interface, for local detection by a sensor of a service terminal that is on-premise with the network device, the signal being an audio or visual signal and modulated to carry a message indicating the new access setting; and establish communications with the service terminal via the O&M interface, in dependence on use by the service terminal of the new access setting; wherein the access setting is any one or more of an IP address, a serial communication parameter, an access protocol, or an authentication method. 2. The network device according to claim 1 , wherein the trigger is at least one of the following: reception of an Update Service Access request from an Operation Service Support system (OSS); an operation fault or security alarm generated in the network device; a degradation of the performance of the network device; attachment of the service terminal; or a start signal activated by a Field Service Engineer (FSE). 3. The network device according to claim 2 , wherein the trigger comprises receiving the Update Service Access request, and wherein the Update Service Access request conveys information relating to the new access setting, the information indicating one or more of: location information of the network device, a preferred valid IP address, a preferred valid IP address range, one or more serial communication parameters, a description of a preferred access protocol, a preferred port range for the access protocol, or one or more preferences regarding authentication of the service terminal. 4. The network device according to claim 1 , wherein the equipment item comprises a sound or noise generating device of the network device, for outputting the signal as said audio signal, for detection by a microphone of the service terminal. 5. The network device according to claim 4 , wherein the processing circuitry is configured to use digital modulation to control the sound or noise generating device of the network device to output the audio signal. 6. The network device according to claim 4 , wherein the sound or noise generating device is a cooling fan or a speaker or a beeper device that is temporarily operated as an audio transmitter for conveyance of the message. 7. The network device according to claim 1 , wherein the equipment item comprises a light emitting device of the network device, for outputting the signal as said visual signal, for detection by a video camera of the service terminal. 8. The network device according to claim 7 , wherein the light emitting device is an operational indicator of the network device that is temporarily operated as an optical transmitter for conveyance of the message. 9. The network device according to claim 8 , wherein the light emitting device is a Light Emitting Diode (LED). 10. The network device according to claim 1 , wherein the service terminal is a wireless device and the sensor of the wireless terminal comprises a camera or a microphone for receiving the signal as said audio or visual signal, and wherein the processing circuitry is configured to utilize the equipment item of the network device to generate the signal as said audio or visual signal, to transfer the message to the service terminal. 11. The network device according to claim 1 , wherein the message has a packet structure comprising at least a packet prefix, an IP address, an access protocol identifier, and an authentication method identifier, wherein the authentication method identifier indicates a corresponding authentication method as the new access setting. 12. The network device according to claim 1 , wherein the network device is located within a network node. 13. A method performed by a service terminal that is on-premise with a network device, the method comprising: using a sensor of the service terminal to detect a signal that is locally generated by the network device independent of communicating on an Operations & Maintenance (O&M) interface of the network device, the signal being an audio or visual signal and modulated to convey a message reporting a new access setting to be used for establishing communication with the network device via the O&M interface of the network device; and establishing communication with the network device via the O&M interface, according to the new access setting; wherein the new access setting is any one or more of an IP address, a serial communication parameter, an access protocol, or an authentication method. 14. A service terminal comprising: a communications interface configured for on-premise communication with a network device via an Operations & Maintenance (O&M) interface of the network device; and processing circuitry configured to: utilize a sensor of the service terminal to detect a signal that is locally generated by the network device independent of communicating on the O&M interface of the network device, the signal being an audio signal or a visual signal and modulated to convey a message indicating a new access setting to be used by the service terminal for communicating with the network device via the O&M interface of the network device; and use the new access setting to establish communications with the network device via the O&M interface of the network device; wherein the new access setting is any one or more of an IP address, a serial communication parameter, an access protocol, or an authentication method. 15. The service terminal according to claim 14 , wherein the signal is said audio signal and the sensor comprises a microphone included in the service terminal. 16. The service terminal according to claim 14 , wherein the signal is said visual signal and the sensor comprises a video camera included in the service terminal. 17. The service terminal according to claim 14 , wherein the message has a packet structure comprising at least a packet prefix, an IP address, an access protocol identifier, and an authentication method identifier that indicates a corresponding authentication method as the new access setting. 18. A method at a network device, the method comprising: receiving a trigger for changing an access setting to be used for communicating with a service terminal that is on-premise with the network device via an Operations & Maintenance (O&M) interface of the network device; and changing the access setting to a new access setting, in response to the trigger; utilizing an equipment item of the network device to output a signal that is independent of communicating on the O&M interface, for local detection by a sensor of the service terminal, the signal being an audio or visual signal and modulated to carry a message indicating the new access setting; and establishing communications with the service terminal via the O&M interface, in dependence on use by the service terminal of the new access setting; wherein the access setting is any one or more of an IP address, a serial communication parameter, an access protocol, or an authentication method. 19. The method of claim 18 , wherein utilizing the equipment item of the net
User notification, e.g. alerting and paging, for incoming communication, change of service or the like · CPC title
Scheduling measurement reports {; Arrangements for measurement reports} · CPC title
Access security · CPC title
for managing network security; network security policies in general (filtering policies H04L63/0227) · CPC title
Authentication · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.