US 12,010,130 B2
Data capture apparatus with embedded security applications and unidirectional communication
David Hingos, East Brunswick, NJ (US); Leandro Pfleger de Aguiar, Robbinsville, NJ (US); Omer Metel, Anchorage, KY (US); Martin Wimmer, Neubiberg (DE); and Heiko Patzlaff, Munich (DE)
Assigned to Siemens Mobility GmbH, Munich (DE)
Appl. No. 17/276,992
Filed by Siemens Mobility GmbH, Munich (DE)
PCT Filed Sep. 20, 2019, PCT No. PCT/US2019/052037
§ 371(c)(1), (2) Date Mar. 17, 2021,
PCT Pub. No. WO2020/061388, PCT Pub. Date Mar. 26, 2020.
Claims priority of provisional application 62/733,861, filed on Sep. 20, 2018.
Prior Publication US 2022/0038479 A1, Feb. 3, 2022
Int. Cl. H04L 9/40 (2022.01)
CPC H04L 63/1425 (2013.01) [H04L 63/1416 (2013.01)] 14 Claims
OG exemplary drawing
 
1. An apparatus for monitoring a protected network using unidirectional communication, the apparatus comprising:
a sending unit coupled to one or more devices of the protected network, wherein the sending unit obtains network data related to protected network status;
an eavesdropping unit comprising an interceptor configured to intercept the network data within the sending unit via a loop connection between input and output interfaces of the sending unit, wherein the interceptor and the loop connection are inductively coupled, and the network data is duplicated without interfering with transmissions of the network data within the protected network; and
a receiving unit coupled to the eavesdropping unit for receiving the duplicated data and forwarding the duplicated data as forwarded traffic to an evaluation system located in a public network, the receiving unit comprising:
a reconfigurable application layer including at least one modular application configured to operate security related functions that support intrusion detection, wherein the at least one modular application includes functions for connectivity and interoperability with the evaluation system, wherein analytics and evaluation of the network data is divided between the reconfiguration application layer that is defined by the receiving unit of the apparatus, and the evaluation system that is defined by the public network in communication with the at least one modular application of the reconfigurable application layer;
wherein the inductive coupling of the interceptor and the loop connection is configured for unidirectional communication from the sending unit to the receiving unit.