Advanced postage payment system employing precomputed digital tokens and with enhanced security
    1.
    发明公开
    Advanced postage payment system employing precomputed digital tokens and with enhanced security 失效
    系统支付与预先计算的主机电子品牌邮资和增加安全性

    公开(公告)号:EP0686946A3

    公开(公告)日:1999-09-29

    申请号:EP95107216.4

    申请日:1995-05-12

    IPC分类号: G07B17/00

    摘要: A method and system for postage payment include the generation of a plurality of dispensable discrete items of encrypted data. Each of said items of encrypted data, which may be digital tokens (332, 342), has a specific value. The generated plurality of discrete items of encrypted data are stored on a portable medium (104). A prepayment value (346) is also stored on the portable medium. The stored plurality of discrete items of encrypted which are dispensable is limited based on the prepayment value stored on the portable medium. The medium may be a device or member having memory means (304) for storing a plurality of dispensable tokens. Mean (302) account for digital tokens dispensed from the memory means. The portable member or device (104) may have a housing with a register means within said housing. The postage prepayment value is stored in the register (346). The plurality of discrete items of encrypted data is stored in the housing with each of the items of encrypted data adapted to be formatted for printing. Means within said housing are coupled to the plurality of discrete items of encrypted data and to said prepayment register for enabling at least one selected item of encrypted data to be communicated outside of the housing if the value stored in register is at least equal to the specific value of the selected item of encrypted data.

    Advanced postage payment system employing precomputed digital tokens and with enhanced security
    3.
    发明公开
    Advanced postage payment system employing precomputed digital tokens and with enhanced security 失效
    系统支付与预先计算的主机电子品牌邮资和增加安全性

    公开(公告)号:EP0686946A2

    公开(公告)日:1995-12-13

    申请号:EP95107216.4

    申请日:1995-05-12

    IPC分类号: G07B17/00

    摘要: A method and system for postage payment include the generation of a plurality of dispensable discrete items of encrypted data. Each of said items of encrypted data, which may be digital tokens (332, 342), has a specific value. The generated plurality of discrete items of encrypted data are stored on a portable medium (104). A prepayment value (346) is also stored on the portable medium. The stored plurality of discrete items of encrypted which are dispensable is limited based on the prepayment value stored on the portable medium. The medium may be a device or member having memory means (304) for storing a plurality of dispensable tokens. Mean (302) account for digital tokens dispensed from the memory means.
    The portable member or device (104) may have a housing with a register means within said housing. The postage prepayment value is stored in the register (346). The plurality of discrete items of encrypted data is stored in the housing with each of the items of encrypted data adapted to be formatted for printing. Means within said housing are coupled to the plurality of discrete items of encrypted data and to said prepayment register for enabling at least one selected item of encrypted data to be communicated outside of the housing if the value stored in register is at least equal to the specific value of the selected item of encrypted data.

    摘要翻译: 一种用于邮资支付的方法和系统包括经加密的数据的分发的离散项目的多个产生。 每个的加密数据的上述各项,其可以是数字标记(332,342)具有特定值。 加密的数据的离散项的生成的多个被存储在便携介质(104)上。 因此,一个预付款值(346)被存储在所述便携式媒体上。 加密哪离散项目所存储的多个是可有可无的基于存储在便携式媒体上的预付费值被限制。 该介质可以是设备或用于存储分发的令牌的多个具有构件存储器装置(304)。 意味着(302)帐户,用于从存储器配发的数字标记的装置。 的便携式装置或构件(104)可具有与内装置在所述壳体内的寄存器的壳体。 邮资预付款值被存储在寄存器(346)。 加密的数据的离散项的所述多个被存储在与每个加密数据angepasst的物品的壳体要被格式化为打印。 装置在所述壳体内被耦合到加密数据和所述预付费寄存器离散项的所述多个用于使加密数据中的至少一个选择的项目在外壳的外部被传递如果存储在寄存器中的值至少等于所述特定 加密的数据的所选择的项目的值。

    Method for key distribution and verification in a key management system
    5.
    发明公开
    Method for key distribution and verification in a key management system 失效
    在einemSchlüsselverwaltung系统中的Verfahren zurSchlüsselverteilungund Verifizierung

    公开(公告)号:EP0735720A2

    公开(公告)日:1996-10-02

    申请号:EP96105233.9

    申请日:1996-04-01

    IPC分类号: H04L9/08 G07B17/04

    摘要: A method of token verification in a Key Management System (10) provides a logical device identifier and a master key created in a logical security domain to a transaction evidencing device, such as a digital postage meter (36). The method creates a master key record in a key verification box, securely stores the master key record in a Key Management System archive (25), and produces in the transaction evidencing device (36) evidence in the logical security domain of transaction information integrity. The method inputs the evidence of the transaction information integrity to a token verification box (21), and inputs in the token verification box the master key record from the Key Management System archive (25). The method determines in the token verification box that the master key is valid in logical security domain, uses in the token verification box (21) the master key to verify the evidence of transaction information integrity, and outputs from the token verification box (21) an indication of the result of the verification of the evidence of transaction information integrity. The master key record includes the logical device identifier, the master key and a digital signature associating the logical device identifier and the master key. The method checks the digital signature to verify the association of the logical device identifier and the master key within the logical security domain.

    摘要翻译: 密钥管理系统(10)中的令牌验证的方法提供在逻辑安全域中创建的逻辑设备标识符和主密钥给诸如数字邮资计费器(36)的交易证明设备。 该方法在密钥验证框中创建主密钥记录,将主密钥记录安全地存储在密钥管理系统存档(25)中,并在事务证明设备(36)中生成事务信息完整性的逻辑安全域中的证据。 该方法将交易信息完整性的证据输入到令牌验证盒(21),并在令牌验证盒中输入密钥管理系统存档(25)中的主密钥记录。 该方法在令牌验证框中确定主密钥在逻辑安全域中有效,在令牌验证框(21)中使用主密钥验证交易信息完整性的证据,并从令牌验证框(21)输出, 指示交易信息完整性证据的验证结果。 主密钥记录包括逻辑设备标识符,主密钥和将逻辑设备标识符与主密钥相关联的数字签名。 该方法检查数字签名以验证逻辑设备标识符与主密钥在逻辑安全域内的关联。

    Method for providing secure boxes in a key management system
    6.
    发明公开
    Method for providing secure boxes in a key management system 失效
    埃菲尔·赫尔斯韦尔瓦尔通系统中的Verfahren zur Erzeugung von sicherenKästen

    公开(公告)号:EP0735719A2

    公开(公告)日:1996-10-02

    申请号:EP96105223.0

    申请日:1996-04-01

    申请人: PITNEY BOWES INC.

    IPC分类号: H04L9/08 G07B17/04

    摘要: A method of manufacturing a secure box in a Key Management System (10) that includes a plurality of functionally distinct secure boxes initializes a first manufacturing box it one does not exist. The method creates in a manufacturing box at least one logical security domain including encryption keys needed to perform Key Management System processes within the domain, and provides a target secure box with the capability to perform at least one Key Management System function from a plurality of functions required by the Key Management System. The method authenticates the target secure box to the manufacturing box, installs a unique secure box identification in the target secure box, and creates at least one logical security domain in the target secure box corresponding to a logical security domain in the manufacturing box. The method sends a command from a Key Management System computer (24) to initialize the target secure box to perform a domain process for at least one of Key Management System functions provided within the target secure box, and initializes the target secure box in each domain process indicated in the command from the Key Management System computer (24). The method installs in the target secure box the encryption keys required to perform a key generation process within the domain. For example, target secure box may be provided with at least one of a key verification function, a key installation function, a token verification function, a key registration function, or a secure box manufacturing function.

    摘要翻译: 一种在包括多个功能不同的安全盒的密钥管理系统(10)中制造安全盒的方法,其初始化不存在的第一制造盒。 该方法在制造盒中创建至少一个逻辑安全域,包括在域内执行密钥管理系统进程所需的加密密钥,并且提供具有从多个功能执行至少一个密钥管理系统功能的能力的目标安全盒 密钥管理系统要求。 该方法将目标安全框验证到制造盒,在目标安全盒中安装唯一的安全盒标识,并在与制造盒中逻辑安全域对应的目标安全框中创建至少一个逻辑安全域。 该方法从密钥管理系统计算机(24)发送命令以初始化目标安全箱,以对目标安全箱内提供的密钥管理系统功能中的至少一个执行域过程,并在每个域中初始化目标安全盒 密钥管理系统计算机(24)的命令中指出的过程。 该方法在目标安全框中安装在域内执行密钥生成过程所需的加密密钥。 例如,目标安全盒可以具有密钥验证功能,密钥安装功能,令牌验证功能,密钥注册功能或安全盒制造功能中的至少一个。

    A method generating digital tokens from a subset of addressee information
    9.
    发明公开
    A method generating digital tokens from a subset of addressee information 失效
    Verfahren zum Erzeugen数位录音机Wertmarken aus einerEmpfängerinformationsuntergruppe

    公开(公告)号:EP0782108A2

    公开(公告)日:1997-07-02

    申请号:EP96120498.9

    申请日:1996-12-19

    申请人: PITNEY BOWES INC.

    IPC分类号: G07B17/00

    摘要: A method for generating postage evidence includes providing addressee information separated into a plurality of address fields. A predetermined section of each address field, appropriate for authentication purposes, is selected to obtain selected address data. An error correction code is generated for the selected address data and a secure hash is generated of the selected address data. The secure hash is sent with postal data, including postage amount and date, to a digital token generation process that generates at least one digital token using the secure hash for evidencing postage. An indicia including the digital token and the postal data is generated and then printed on a mail piece with the error correction code and the addressee information. In a digital token verification process, the addressee information and the error correcting code are read from the mailpiece and the postal data is read from the indicia. An error correction algorithm is used to determine if errors are correctable. If correctable, a predetermined section of each address field is selected to obtain selected address data. A secure hash of the selected address data is generated and sent with the postal data to a digital token verification process.

    摘要翻译: 生成邮资凭证的方法包括提供分离成多个地址字段的收件人信息。 选择适合于认证目的的每个地址字段的预定部分以获得所选择的地址数据。 为所选择的地址数据生成纠错码,并且生成所选择的地址数据的安全散列。 将邮件数据(包括邮资数量和日期)发送到数字令牌生成过程,该数字令牌生成过程使用安全散列来生成至少一个数字令牌,用于证明邮资。 产生包括数字令牌和邮政数据的标记,然后印在具有纠错码和收件人信息的邮件上。 在数字令牌验证过程中,从邮件读取收件人信息和纠错码,并从标记中读取邮政数据。 纠错算法用于确定错误是否可修正。 如果可校正,则选择每个地址字段的预定部分以获得所选择的地址数据。 生成所选择的地址数据的安全散列,并将其与邮政数据一起发送到数字令牌验证过程。