System and method for providing secure resource management
    2.
    发明授权
    System and method for providing secure resource management 有权
    提供安全资源管理的系统和方法

    公开(公告)号:US07904720B2

    公开(公告)日:2011-03-08

    申请号:US10289528

    申请日:2002-11-06

    IPC分类号: H04L9/32 H04L9/12 H04L9/00

    摘要: System and method for providing secure resource management. The system includes a first device that creates a secure, shared resource space and a corresponding root certificate for the shared space. The first device associates one or more resources that it can access with the shared space. The first device invites one or more other devices to join as members of the space, and establishes secure communication channels with the devices that accept this invitation. The first device generates a member certificate for each accepting device, and sends the root certificate and the generated member certificate to the device through the secure channel. These devices may then access resources associated with the shared space by presenting their member certificates. Further, members of the shared space may invite other device to join the space, and may create member certificates in the same manner as the first device.

    摘要翻译: 提供安全资源管理的系统和方法。 该系统包括为共享空间创建安全的共享资源空间和相应的根证书的第一设备。 第一个设备将可以访问的一个或多个资源与共享空间相关联。 第一个设备邀请一个或多个其他设备作为该空间的成员加入,并且与接受该邀请的设备建立安全的通信信道。 第一个设备为每个接受设备生成成员证书,并通过安全通道将根证书和生成的成员证书发送到设备。 然后,这些设备可以通过呈现他们的成员证书来访问与共享空间相关联的资源。 此外,共享空间的成员可以邀请其他设备加入空间,并且可以以与第一设备相同的方式创建成员证书。

    EXTENSIBLE FRAMEWORK FOR COMPATIBILITY TESTING
    3.
    发明申请
    EXTENSIBLE FRAMEWORK FOR COMPATIBILITY TESTING 审中-公开
    可扩展性测试框架

    公开(公告)号:US20080317042A1

    公开(公告)日:2008-12-25

    申请号:US11767331

    申请日:2007-06-22

    申请人: Dirk Balfanz

    发明人: Dirk Balfanz

    IPC分类号: H04L12/28

    CPC分类号: G06F8/436

    摘要: A method of receiving mobile code includes receiving, from a source node, a dependency descriptor describing at least one permitted configuration, each configuration comprising necessary conditions on a destination node to execute mobile code, executing, on the destination node, checker code associated with the conditions described in the dependency descriptor, and, if at least one configuration is compatible, receiving the mobile code at the destination node.

    摘要翻译: 接收移动代码的方法包括从源节点接收描述至少一个允许配置的依赖性描述符,每个配置包括目的地节点上的必要条件以执行移动代码,在目的地节点上执行与 在依赖描述符中描述的条件,并且如果至少一个配置是兼容的,则在目的地节点处接收移动代码。

    Enhancing computer system security via multiple user desktops
    7.
    发明授权
    Enhancing computer system security via multiple user desktops 有权
    通过多个用户桌面增强计算机系统的安全性

    公开(公告)号:US07246374B1

    公开(公告)日:2007-07-17

    申请号:US09524124

    申请日:2000-03-13

    IPC分类号: G06F7/06

    CPC分类号: G06F21/53 G06F9/543 G06F21/60

    摘要: Users can create multiple different desktops for themselves and easily switch between these desktops. These multiple desktops are “walled off” from one another, limiting the ability of processes and other subjects in one desktop from accessing objects, such as data files or other processes, in another desktop. According to one aspect, each time a process is launched it is associated with the desktop that it is launched in. Similarly, objects, such as data files or resources, are associated with the same desktop as the process that created them. The operating system allows a process to access only those objects that are either associated with the same desktop as the process or associated with no desktop.

    摘要翻译: 用户可以为自己创建多个不同的桌面,并轻松地在这些桌面之间切换。 这些多个桌面彼此“被隔离”,限制了一个桌面中进程和其他主题在其他桌面上访问对象(如数据文件或其他进程)的能力。 根据一个方面,每次启动进程时,它与启动的桌面相关联。类似地,诸如数据文件或资源的对象与创建它们的进程相同的桌面。 操作系统允许进程仅访问与进程相关联的相同桌面或与无桌面相关联的那些对象。

    Out-of band authentication of browser sessions
    8.
    发明授权
    Out-of band authentication of browser sessions 有权
    浏览器会话的带外认证

    公开(公告)号:US08256664B1

    公开(公告)日:2012-09-04

    申请号:US12757409

    申请日:2010-04-09

    IPC分类号: G06F17/00

    摘要: Systems and methods provide a user with secure access to a web site at a first client device without having to enter login information, such as a username and password, at that device. For example, the first device may request access to user information from a server system. The server may generate a session ID, associate it with the first device, and encode it into a bar code that is displayed at the first device. Using camera functions, a second client device may identify and decode the bar code to determine the session ID. The login information may be entered into the second device in order to establish a secure connection with the server. The second device may transmit the session ID to the server system. The server may identify the first client device based on the common session ID and transmit the requested user information to the first device.

    摘要翻译: 系统和方法为用户提供对第一客户端设备的网站的安全访问,而无需在该设备处输入用户名和密码等登录信息。 例如,第一设备可以请求从服务器系统访问用户信息。 服务器可以生成会话ID,将其与第一设备相关联,并将其编码成在第一设备上显示的条形码。 使用相机功能,第二客户端设备可以识别和解码条形码以确定会话ID。 可以将登录信息输入到第二设备中,以建立与服务器的安全连接。 第二设备可以将会话ID发送到服务器系统。 服务器可以基于公共会话ID识别第一客户端设备,并将所请求的用户信息发送到第一设备。

    Systems and methods for lightweight authentication
    9.
    发明授权
    Systems and methods for lightweight authentication 有权
    用于轻量认证的系统和方法

    公开(公告)号:US08135956B2

    公开(公告)日:2012-03-13

    申请号:US11637293

    申请日:2006-12-11

    申请人: Dirk Balfanz

    发明人: Dirk Balfanz

    IPC分类号: H04L29/06 G06F21/00

    CPC分类号: G06F21/6227 G06F21/35

    摘要: Techniques are provided for the lightweight authentication of a user to an application, a computer or other device. An interaction element such as a stylus, a pen or marker is uniquely identified. The interactive element is associated with a user. The interaction element provides a means for interacting with the application. The proximity of the identification element within the interaction element during data entry operations to the authentication sensor signals the controlled application that the user has been authenticated.

    摘要翻译: 为应用程序,计算机或其他设备的用户轻量级认证提供了技术。 独特地识别诸如触笔,笔或标记的交互元件。 交互式元素与用户相关联。 交互元素提供了与应用程序交互的方法。 在认证传感器的数据输入操作期间,交互元件内的识别元件的接近度向用户已经认证的受控应用发出信号。

    System and method for establishing secondary channels
    10.
    发明授权
    System and method for establishing secondary channels 有权
    建立二级渠道的制度和方法

    公开(公告)号:US07916861B2

    公开(公告)日:2011-03-29

    申请号:US11528904

    申请日:2006-09-28

    IPC分类号: H04L9/32

    CPC分类号: H04L63/061 H04L63/18

    摘要: A method for establishing a secondary communication channel between at least two computing devices over a network medium through use of a primary channel connects a first computing device with a first telephonic unit and a second computing device with a second telephonic unit. If the two telephonic units are in communication with each other over a primary channel, and communication channels are established between the computing devices and their respective telephonic units, then the first computing device transmits its location information to the second computing device over the primary channel. A connection is then established between the second computing device and the first computing device over a secondary communication channel.

    摘要翻译: 通过使用主信道在网络介质上在至少两个计算设备之间建立辅助通信信道的方法将第一计算设备与第一电话单元和第二计算设备与第二电话单元相连接。 如果两个电话单元在主信道上彼此通信,并且在计算设备和它们各自的电话单元之间建立通信信道,则第一计算设备通过主信道将其位置信息发送到第二计算设备。 然后通过辅助通信信道在第二计算设备和第一计算设备之间建立连接。