摘要:
A system and method is provided for refilling a postage metering system (100) that includes a host (114) coupled to a postal security device (PSD) (112). A user enters a first request for postage refill which is transmitted to a meter server (120). The meter server (120) transmits a request for a PSD audit to the postage metering system (100). PSD audit data is signed with a first secret key stored in the PSD (112) to produce an audit message that includes a first signature and the PSD audit data. The audit message is transmitted to the meter server (120) which transmits the first signature to a key management system (130) which then verifies the first signature using a second secret key stored in the key management system (130). A refill message includes a second signature and a refill combination. The refill message is transmitted to the PSD (112) which verifies the signature and the refill combination using the first secret key and credits the PSD (112) for the amount.
摘要:
A method for transmitting a key from a first device to a remotely located second device includes the steps of generating the key within the first device; selecting one of a plurality of one-time pad values from a one-time pad stored within the first device; creating a hash of at least the key and the selected one of the plurality of one-time pad values; and sending the hash and the key from the first device to the second device.
摘要:
A method for transmitting a key from a first device to a remotely located second device includes the steps of generating the key within the first device; selecting one of a plurality of one-time pad values from a one-time pad stored within the first device; creating a hash of at least the key and the selected one of the plurality of one-time pad values; and sending the hash and the key from the first device to the second device.
摘要:
A method for removing postal funds from a postage meter (10) provides an accounting unit (20) of a postage meter (10) with indicium-related information which is invalid for mailing. The accounting unit (20) generates a digital signature, which is an encrypted value of the postal funds removed from the postage meter (10) and other postal data including the indicium-related information. The accounting unit (20) through a Host PC (12) sends to a data center (5) the amount of the postal funds removed from the postage meter (10) and the digital signature. The data center (5) verifies that the digital signature has been generated using the indicium-related information. The meter (10) is disabled when the digital signature cannot be verified. When the digital signature is verified a request for a refund is sent by the data center (5) to a postal authority. An example of the indicium-related information is an invalid destination postal code or an invalid origination postal code.
摘要:
A system and method is provided for refilling a postage metering system (100) that includes a host (114) coupled to a postal security device (PSD) (112). A user enters a first request for postage refill which is transmitted to a meter server (120). The meter server (120) transmits a request for a PSD audit to the postage metering system (100). PSD audit data is signed with a first secret key stored in the PSD (112) to produce an audit message that includes a first signature and the PSD audit data. The audit message is transmitted to the meter server (120) which transmits the first signature to a key management system (130) which then verifies the first signature using a second secret key stored in the key management system (130). The PSD audit data is verified at the meter server (120) which then constructs a second request for meter refill and transmits it to a meter recharging data center (140). The meter recharging data center (140) generates a refill combination and transmits it to the meter server (120). The refill combination is transmitted from the meter server (120) to the key management system (130) for signature using the second secret key to produce a refill message that is transmitted to the meter server (120). The refill message includes a second signature and the refill combination. The refill message is transmitted to the PSD (112) which verifies the signature and the refill combination using the first secret key and credits the PSD (112) for the amount.
摘要:
A mail processing system (12) having a postal security device (PSD) (14) that can be dynamically configured to support multiple customers and carriers is provided. Meter records are maintained at a data center (30). Each meter record includes information necessary to configure the PSD (14) for a particular customer and/or a specified carrier. Once loaded with a complete meter record, the PSD (14) will function as a traditional PSD. All accounting takes place locally in the PSD, and all records maintained in the meter record are updated locally in the PSD (14). Upon completion of the mail run, the updated meter record can then be uploaded to the data center (30) until the next mail run that requires the meter record.
摘要:
Various methods for detecting the removal of a processing unit (10), such as a microprocessor or a microcontroller, from a printed circuit board (5) in a secure printing system, such as a postage metering system are provided. The methods utilize one or more of a real time clock (25) provided internal to the processing unit (10), a CMOS device provided on the printed circuit board (5) external to the processing unit, and CMOS memory internal to the processing unit (10) to detect the removal of the processing unit (10) and therefore an attack.
摘要:
A system and method for efficient uncorrectable error detection in flash memory is described. A microcontroller including a non-volatile flash memory utilizes an Error Correction Code (ECC) having a certain error detection and correction bit strength. The user data is first processed by a hash function and hash data is stored with the user data. Then, the user data and hash data are processed by the ECC system. In detection, the hash ensures that a relatively low bit-strength ECC system did not incorrectly manipulate the user data. Such a hash integrity check provides an efficient, robust detection of incorrectly corrected user data resulting from errors beyond the correction but strength of the ECC system utilized.