摘要:
A method of manufacturing a postage printing device that is to be registered by a registering entity having a public/private key pair. The manufacturing station has a manufacturing station public/private key pair. The method includes storing a root certificate comprising the registering entity public key signed by the registering entity private key in the postage printing device, generating a transport public/private key pair, and storing the transport private key in the postage printing device. The method also includes generating a transport certificate comprising the transport public key signed by the manufacturing station private key, and storing the transport certificate in the postage printing device, after which the postage printing device is set to a transport lock state so that it can be securely transported. Also, a method of registering a postage printing device manufactured in this manner prior to operation of the postage printing device.
摘要:
A method for certifying the public key of a digital postage meter using a public key encryption system by a certifying authority. A certifying station and a user station, or a digital postage meter, exchange information and the user station and downloads, or the meter derives, a public key from the exchanged information. The certifying station also publishes related information and its public key. A third party can derive the public key corresponding to the meter's private key by operating on the published information with the certifying station public key.
摘要:
A system and method include means for processing a cryptographic certificate adapted to provide security functionality. A register means (244) is provided and means (224) for adjusting the register means to account for services when the cryptographic certificate is processed. The register means may be for storing funds. Means are provided for processing a digital token providing proof of postage payment and means are also provided for processing a cryptographic certificate adapted to provide security functionality. Funds stored in the register means are debited when the digital token is processed and when the cryptographic certificate is processed. Processing the cryptographic certificate may involve many functions such as providing security services and/or certificate management functions (including generating and verifying cryptographic certificates) and/or key management functions and/or access to any needed private keys to perform security services. Processing the digital token may include generating the digital token or issuing the digital token.
摘要:
A public key cryptographic system is disclosed with enhanced digital signature certification which authenticates the identity of the public key holder. A hierarchy of nested certifications and signatures are employed which indicate the authority and responsibility levels of the individual whose signature is being certifified. The certifier in constructing a certificate generates a special message that includes fields identifying the public key which is being certified, and the name of the certifee. The certificate is constructed by the certifier to define the authority which is being granted and which may relate to wide range of authorizations, delegation responsibilities or restrictions given to, or placed on the certifiee. Methodology is also disclosed by which multiple objects such as, for example, a cover letter, an associated enclosed letter, an associated graphics file, etc., are signed together. Methodology is also disclosed for digitally signing documents in which a digital signature is generated for both computer verification and for reverification if a document needs to be reconfirmed by reentering from a paper rendition.
摘要:
A method for certifying the public key of a digital postage meter using a public key encryption system by a certifying authority. A certifying station and a user station, or a digital postage meter, exchange information and the user station and downloads, or the meter derives, a public key from the exchanged information. The certifying station also publishes related information and its public key. A third party can derive the public key corresponding to the meter's private key by operating on the published information with the certifying station public key.
摘要:
A system is provided in which a single postal security device (20, 40, 44) has a secure housing, and within the secure housing are two or more accounting register sets (31, 51a, 51b, 51c). Importantly, the two or more accounting register sets (31, 51a, 51b, 51c) are associated with distinct meter licenses (32, 52a, 52b, 52c). Alternatively, the single postal security device (20, 40, 44) can store a single accounting register set (31, 51a, 51b, 51c), but is able to transfer the register set (31, 51a, 51b, 51c) to a nonsecure store (71) such as the hard drive of a personal computer, the register set having been cryptographically signed (72). Later the register set (72) may be retrieved from the nonsecure store (71) and cryptographically authenticated, and restored to its location within the secure housing of postal security device (20, 40, 44). In this way, the postal security (20, 40, 44) may provide service under more than one distinct meter license (32, 52a, 52b, 52c). In a related embodiment, a single meter license (32, 52a, 52b, 52c) is associated with more than one postal security device (20, 40, 44), each with its own secure housing. Each register set (31, 51a, 51b, 51c) is configured to permit being reset (refilled with postage) by means of a cryptographically secure exchange of data over a communications channel (23, 25, 30, 41, 45) to external equipment such as a manufacturer's server (24) or a server (26) operated by the post office.
摘要:
A method is provided for determining origin ZIP code for a postage meter. The method includes receiving at a data center a call that originates from the location of the postage meter. Using caller ID, the data center determines the phone number originating the call. The data center also determines the identification of the postage meter. If the phone number has changed from a phone number from the previous phone call for the postage meter, the data center obtains a five-digit ZIP code for the address corresponding to the phone number. If the five-digit ZIP code has changed from a previous ZIP code used for postal accounting during previous transactions for the postage meter, the data center obtains a new certificate based on the five-digit ZIP code and downloads the new certificate to the postage meter. The data center transfers postage meter register values to a new postal account for the new certificate.
摘要:
A metering system (21) includes means (4) for printing postage value. First means (8) are coupled to the printing means for accounting for value printed by the printing means (4). Second means (10) are coupled to the printing means for accounting for value printed by said printing means (4). Means (26) determine which of the first and the second accounting means accounts for value printed by said printing means. The system may be arranged where the first accounting means (8) is a smart card chip mounted internal to the metering system and the second accounting means (10) is an external smart card. In normal use, only one accounting system is rendered operable with priority given to the external smart card.