IP Library Granted Patent US 12,375,320
Granted Patent B2
US 12,375,320 · App. 17/783,774 · Granted Jul 29, 2025

Transmission device for transmitting data and detecting anomalies

Inventors: Rainer Falk (Poing, DE); Christina Otto (Munich, DE); Heiko Patzlaff (Munich, DE); Martin Wimmer (Neubiberg, DE)
Assignee: Siemens Mobility GmbH
H04L12/46H04L63/1425
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,375,320
App. No.
17/783,774
Granted
Jul 29, 2025
Kind
B2
Abstract

A transmission device for transmitting data between a first network and a second network is provided. The transmission device includes a first network port for coupling to the first network and a second network port for coupling to the second network, and the transmission device further includes: a first detection unit which is connected to the first network port and is configured to receive data transmitted by the first network via the first network port and to detect anomalies with respect to the received data, and a second detection unit which is connected to the second network port and is configured to receive data transmitted by the second network via the second network port and to detect anomalies with respect to the received data. The provided transmission device leads to an optimized detection of anomalies in the first and the second network, thereby increasing security during data transmission between the first and the second network.

Claims (17)

1. A transmission device for transmitting data between a first network and a second network, wherein the transmission device has a first network port for coupling to the first network and a second network port for coupling to the second network and also comprises:

a first detection unit which is connected at the first network port and is configured to receive data transmitted from the first network via the first network port and to detect anomalies in the received data; and

a second detection unit which is connected at the second network port and is configured to receive data transmitted from the second network via the second network port and to detect anomalies in the received data;

wherein the first detection unit is configured to transmit a first detection signal at least to the second detection unit when anomalies are detected in the received data, and the second detection unit is configured to transmit a second detection signal at least to the first detection unit when anomalies are detected in the received data.

2. The transmission device as claimed in claim 1 , wherein the transmission device is configured to execute the first detection unit and the second detection unit in a parallel manner.

3. The transmission device as claimed in claim 1 , wherein the anomalies detected by the first detection unit comprise a first anomaly type and the anomalies detected by the second detection unit comprise a second anomaly type, wherein the first anomaly type differs from the second anomaly type.

4. The transmission device as claimed in claim 3 , wherein the first detection unit is configured to detect the first anomaly type if, on the basis of the data received from the first network, it is possible to derive at least one new end point and/or a discrepancy of a network topology in the first network, and the second detection unit is configured to detect the second anomaly type if, on the basis of the data received from the second network, it is possible to derive at least one attack on the second detection unit from the second network) via the second network port.

5. The transmission device as claimed in claim 1 , wherein the transmission device is configured to receive the data from the first network via a network switch arranged between the first network and the first network port, wherein at least one input of the network switch is connected to the first network for the purpose of transmitting data and a mirror port in a form of an output of the network switch is connected to the first network port for the purpose of transmitting data.

6. The transmission device as claimed in claim 1 , wherein the transmission device also comprises a first CPU, in which the first detection unit is implemented, and a second CPU, in which the second detection unit is implemented.

7. The transmission device as claimed in claim 1 , wherein the transmission device is configured to provide the second network with a routing table comprising a plurality A of IP addresses of subscribers from the first network.

8. The transmission device as claimed in claim 1 , wherein the transmission device is configured to provide the second network with at least one particular IP address of a particular subscriber from the first network.

9. The transmission device as claimed in claim 1 , wherein the transmission device is configured to transmit data between the first network and the second network in a data link layer, layer 2 according to an OSI/ISO layer model.

10. The transmission device as claimed in claim 1 , wherein the first detection unit and the second detection unit each comprise an intrusion detection system.

11. The transmission device as claimed in claim 1 , wherein the first network comprises a control network, and the second network comprises a diagnostic network, a local network, or Internet.

12. The transmission device as claimed in claim 1 , wherein the transmission device is partially or completely in a form of a unidirectional data diode, a firewall, or a gateway.

13. The transmission device as claimed in claim 12 , wherein the gateway is arranged between the first detection unit and the second detection unit, and an input of the first detection unit is connected to an external network switch and an output of the first detection unit is connected to the gateway, wherein the gateway is also configured to communicate with the first detection unit using an internal IP address of the first detection unit, wherein an input of the second detection unit is connected to the gateway and an output of the second detection unit is connected to the second network.

14. The transmission device as claimed in claim 1 , wherein at least the first detection unit, the second detection unit, the first network port and the second network port are implemented in a common housing.

Assignments (2)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 12, 2022
From: FALK, RAINER; OTTO, CHRISTINA; PATZLAFF, HEIKO; WIMMER, MARTIN
To: SIEMENS AKTIENGESELLSCHAFT
Reel/Frame 061393/0334 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 12, 2022
From: SIEMENS AKTIENGESELLSCHAFT
To: SIEMENS MOBILITY GMBH
Reel/Frame 061393/0596 →
Priority Claims (1)
DE 10 2019 220 248.9 · Dec 19, 2019 · national
Continuity (1)
Related Publication 20230030504A1 · Feb 2, 2023
References Cited (56)
US 9032478B2 · Ballesteros · 2015 [cited by examiner]
US 10609029B2 · Leconte · 2020 [cited by examiner]
US 20010039579A1 · Trcka · 2001 [cited by examiner]
US 20030191857A1 · Terrell · 2003 [cited by examiner]
US 20040199535A1 · Zuk · 2004 [cited by examiner]
US 20050050221A1 · Tasman · 2005 [cited by examiner]
US 20050076227A1 · Kang · 2005 [cited by examiner]
US 20050125195A1 · Brendel · 2005 [cited by examiner]
US 20060140127A1 · Lee · 2006 [cited by examiner]
US 20070094728A1 · Julisch · 2007 [cited by examiner]
US 20070118568A1 · Kitani · 2007 [cited by examiner]
US 20070186284A1 · McConnell · 2007 [cited by examiner]
US 20070192863A1 · Kapoor · 2007 [cited by examiner]
US 20070206497A1 · Plamondon · 2007 [cited by examiner]
US 20070283436A1 · Duffield · 2007 [cited by examiner]
US 20080262990A1 · Kapoor · 2008 [cited by examiner]
US 20080262991A1 · Kapoor · 2008 [cited by examiner]
US 20110213869A1 · Korsunsky · 2011 [cited by examiner]
US 20110231510A1 · Korsunsky · 2011 [cited by examiner]
US 20120060219A1 · Larsson · 2012 [cited by examiner]
US 20120110356A1 · Yousefi · 2012 [cited by examiner]
US 20120151593A1 · Kang · 2012 [cited by examiner]
US 20120278890A1 · Maatta · 2012 [cited by examiner]
US 20140201838A1 · Varsanyi · 2014 [cited by examiner]
US 20140211614A1 · Winn · 2014 [cited by examiner]
US 20140223563A1 · Durie · 2014 [cited by examiner]
US 20140304813A1 · Ma · 2014 [cited by examiner]
US 20150106927A1 · Ferragut · 2015 [cited by examiner]
US 20160112443A1 · Grossman · 2016 [cited by examiner]
US 20160359695A1 · Yadav · 2016 [cited by examiner]
US 20170070507A1 · Leconte et al. · 2017 [cited by applicant]
US 20170099310A1 · Di Pietro · 2017 [cited by examiner]
US 20170099311A1 · Kesin · 2017 [cited by examiner]
US 20170201537A1 · Caldwell · 2017 [cited by examiner]
US 20170346910A1 · Hsueh · 2017 [cited by examiner]
US 20170357612A1 · Takamiya · 2017 [cited by examiner]
US 20180198812A1 · Christodorescu · 2018 [cited by examiner]
US 20190238575A1 · Hodgman · 2019 [cited by examiner]
US 20190356513A1 · Schubert · 2019 [cited by examiner]
US 20190379573A1 · Pontes · 2019 [cited by examiner]
US 20200120071A1 · Wimmer · 2020 [cited by examiner]
US 20200304532A1 · Haga · 2020 [cited by examiner]
CN 2588677Y · 2003 [cited by applicant]
CN 104486336A · 2015 [cited by applicant]
CN 104683332A · 2015 [cited by applicant]
CN 204392296U · 2015 [cited by applicant]
CN 105204583A · 2015 [cited by applicant]
CN 106998333A · 2017 [cited by applicant]
CN 109286492A · 2019 [cited by applicant]
CN 109510841A · 2019 [cited by applicant]
EP 3139548A1 · 2017 [cited by examiner]
EP 3425865A1 · 2019 [cited by applicant]
WO WO2004028107A2 · 2004 [cited by examiner]
WO WO2018127024A1 · 2018 [cited by examiner]
PCT International Search Report mailed Mar. 18, 2021 corresponding to PCT International Application No. PCT/EP2020/085502 filed Oct. 12, 2020. [cited by applicant]
For information purposes only Application of Gaps in Public Security Systems, Information Security and Communications Privacy, No. 10; 6 pages; Oct. 10, 2004 (the foreign NPL is also attached—9 pages total). [cited by applicant]