摘要:
An apparatus and method for creating negotiable items includes, in a system including a network of a governing authority and at least one remote printer, a secure indicia authorized by the governing authority. A preprinted form, authorized by the governing authority, transformable into a negotiable item upon the application of the secure indicia at the remote printer is provided. Further, a database, controlled by the governing authority, for issuing the secure indicia and the preprinted form and accounting for the use of each at the at least one remote printer oversees the creation of the negotiable item.
摘要:
Systems and methods are disclosed for authenticating electronic messages. A data structure is generated by a computer server which allows for the authentication of the contents and computer server identity of a received electronic message and provides a trusted stamp to authenticate when the message was sent. Data which can authenticate the message, the computer server identity, and the time the message was sent is included into a data structure which is called an Electronic PostMark (EPM).
摘要:
A method for permitting a postal authority to maintain control over transactions in a franking system, the postal franking system comprising postal franking means (PFM) including a postal security device (PSD) which maintains in a secure manner funds credit data; a credit authorisation facility (CAF) and a recrediting facility (RF) for issuing a funds credit to the PSD, wherein the method comprises: (a) the CAF issuing to the RF in a limit of funds which may be credited to the PFD; (b) the PFM making to the RF a request for personal credit; and (c) the RF checking on the funds available to the PSD and providing to the PSD, if available, further credit by means of a message encrypted and/or authenticated form.
摘要:
A system is provided in which a single postal security device (20, 40, 44) has a secure housing, and within the secure housing are two or more accounting register sets (31, 51a, 51b, 51c). Importantly, the two or more accounting register sets (31, 51a, 51b, 51c) are associated with distinct meter licenses (32, 52a, 52b, 52c). Alternatively, the single postal security device (20, 40, 44) can store a single accounting register set (31, 51a, 51b, 51c), but is able to transfer the register set (31, 51a, 51b, 51c) to a nonsecure store (71) such as the hard drive of a personal computer, the register set having been cryptographically signed (72). Later the register set (72) may be retrieved from the nonsecure store (71) and cryptographically authenticated, and restored to its location within the secure housing of postal security device (20, 40, 44). In this way, the postal security (20, 40, 44) may provide service under more than one distinct meter license (32, 52a, 52b, 52c). In a related embodiment, a single meter license (32, 52a, 52b, 52c) is associated with more than one postal security device (20, 40, 44), each with its own secure housing. Each register set (31, 51a, 51b, 51c) is configured to permit being reset (refilled with postage) by means of a cryptographically secure exchange of data over a communications channel (23, 25, 30, 41, 45) to external equipment such as a manufacturer's server (24) or a server (26) operated by the post office.
摘要:
A method for certifying the public key of a digital postage meter using a public key encryption system by a certifying authority. A certifying station and a user station, or a digital postage meter, exchange information and the user station and downloads, or the meter derives, a public key from the exchanged information. The certifying station also publishes related information and its public key. A third party can derive the public key corresponding to the meter's private key by operating on the published information with the certifying station public key.
摘要:
A method for ensuring for each postage transaction in a postage meter having a vault subsystem (3) and a printing subsystem (5) that debiting occurs prior to printing of a postal indicia includes authenticating the postage transaction as being valid, performing debiting within the vault subsystem (3), sending an encrypted debit certificate from the vault subsystem (3) to the printing subsystem (5), independently recreating the encrypted debit certificate in the printing subsystem (5), comparing the encrypted debit certificate with the recreated encrypted debit certificate to ascertain if a predetermined relationship exists therebetween, and initiating printing of the postal indicia only upon determination of the existence of the predetermined relationship. An apparatus incorporates the method.
摘要:
A public key cryptographic system is disclosed with enhanced digital signature certification which authenticates the identity of the public key holder. A hierarchy of nested certifications and signatures are employed which indicate the authority and responsibility levels of the individual whose signature is being certified. The present invention enhances the capabilities of public key cryptography so that it may be employed in a wider variety of business transactions, even those where two parties may be virtually unknown to each other. Counter-signature and joint-signature requirements are referenced in each digital certification to permit business transactions to take place electronically, which heretofore often only would take place after at least one party physically winds his way through a corporate bureaucracy. The certifier in constructing a certificate generates a special message that includes fields identifying the public key which is being certified, and the name of the certifiee. In addition, the certificate constructed by the certifier includes the authority which is being granted including information which reflects issues of concern to the certifier such as, for example, the monetary limit for the certifiee and the level of trust which is granted to the certifiee. The certificate may also specify cosignature requirements which are being imposed upon the certifiee.