摘要:
A method and system for postage payment include the generation of a plurality of dispensable discrete items of encrypted data. Each of said items of encrypted data, which may be digital tokens (332, 342), has a specific value. The generated plurality of discrete items of encrypted data are stored on a portable medium (104). A prepayment value (346) is also stored on the portable medium. The stored plurality of discrete items of encrypted which are dispensable is limited based on the prepayment value stored on the portable medium. The medium may be a device or member having memory means (304) for storing a plurality of dispensable tokens. Mean (302) account for digital tokens dispensed from the memory means. The portable member or device (104) may have a housing with a register means within said housing. The postage prepayment value is stored in the register (346). The plurality of discrete items of encrypted data is stored in the housing with each of the items of encrypted data adapted to be formatted for printing. Means within said housing are coupled to the plurality of discrete items of encrypted data and to said prepayment register for enabling at least one selected item of encrypted data to be communicated outside of the housing if the value stored in register is at least equal to the specific value of the selected item of encrypted data.
摘要:
A method and system for postage payment include the generation of a plurality of dispensable discrete items of encrypted data. Each of said items of encrypted data, which may be digital tokens (332, 342), has a specific value. The generated plurality of discrete items of encrypted data are stored on a portable medium (104). A prepayment value (346) is also stored on the portable medium. The stored plurality of discrete items of encrypted which are dispensable is limited based on the prepayment value stored on the portable medium. The medium may be a device or member having memory means (304) for storing a plurality of dispensable tokens. Mean (302) account for digital tokens dispensed from the memory means. The portable member or device (104) may have a housing with a register means within said housing. The postage prepayment value is stored in the register (346). The plurality of discrete items of encrypted data is stored in the housing with each of the items of encrypted data adapted to be formatted for printing. Means within said housing are coupled to the plurality of discrete items of encrypted data and to said prepayment register for enabling at least one selected item of encrypted data to be communicated outside of the housing if the value stored in register is at least equal to the specific value of the selected item of encrypted data.
摘要:
A method of token verification in a Key Management System (10) provides a logical device identifier and a master key created in a logical security domain to a transaction evidencing device, such as a digital postage meter (36). The method creates a master key record in a key verification box, securely stores the master key record in a Key Management System archive (25), and produces in the transaction evidencing device (36) evidence in the logical security domain of transaction information integrity. The method inputs the evidence of the transaction information integrity to a token verification box (21), and inputs in the token verification box the master key record from the Key Management System archive (25). The method determines in the token verification box that the master key is valid in logical security domain, uses in the token verification box (21) the master key to verify the evidence of transaction information integrity, and outputs from the token verification box (21) an indication of the result of the verification of the evidence of transaction information integrity. The master key record includes the logical device identifier, the master key and a digital signature associating the logical device identifier and the master key. The method checks the digital signature to verify the association of the logical device identifier and the master key within the logical security domain.
摘要:
A method of manufacturing a secure box in a Key Management System (10) that includes a plurality of functionally distinct secure boxes initializes a first manufacturing box it one does not exist. The method creates in a manufacturing box at least one logical security domain including encryption keys needed to perform Key Management System processes within the domain, and provides a target secure box with the capability to perform at least one Key Management System function from a plurality of functions required by the Key Management System. The method authenticates the target secure box to the manufacturing box, installs a unique secure box identification in the target secure box, and creates at least one logical security domain in the target secure box corresponding to a logical security domain in the manufacturing box. The method sends a command from a Key Management System computer (24) to initialize the target secure box to perform a domain process for at least one of Key Management System functions provided within the target secure box, and initializes the target secure box in each domain process indicated in the command from the Key Management System computer (24). The method installs in the target secure box the encryption keys required to perform a key generation process within the domain. For example, target secure box may be provided with at least one of a key verification function, a key installation function, a token verification function, a key registration function, or a secure box manufacturing function.
摘要:
A method of token verification in a Key Management System (10) provides a logical device identifier and a master key created in a logical security domain to a transaction evidencing device, such as a digital postage meter (36). The method creates a master key record in a key verification box, securely stores the master key record in a Key Management System archive (25), and produces in the transaction evidencing device (36) evidence in the logical security domain of transaction information integrity. The method inputs the evidence of the transaction information integrity to a token verification box (21), and inputs in the token verification box the master key record from the Key Management System archive (25). The method determines in the token verification box that the master key is valid in logical security domain, uses in the token verification box (21) the master key to verify the evidence of transaction information integrity, and outputs from the token verification box (21) an indication of the result of the verification of the evidence of transaction information integrity. The master key record includes the logical device identifier, the master key and a digital signature associating the logical device identifier and the master key. The method checks the digital signature to verify the association of the logical device identifier and the master key within the logical security domain.
摘要:
A method for generating postage evidence includes providing addressee information separated into a plurality of address fields. A predetermined section of each address field, appropriate for authentication purposes, is selected to obtain selected address data. An error correction code is generated for the selected address data and a secure hash is generated of the selected address data. The secure hash is sent with postal data, including postage amount and date, to a digital token generation process that generates at least one digital token using the secure hash for evidencing postage. An indicia including the digital token and the postal data is generated and then printed on a mail piece with the error correction code and the addressee information. In a digital token verification process, the addressee information and the error correcting code are read from the mailpiece and the postal data is read from the indicia. An error correction algorithm is used to determine if errors are correctable. If correctable, a predetermined section of each address field is selected to obtain selected address data. A secure hash of the selected address data is generated and sent with the postal data to a digital token verification process.