CONTENT ENCRYPTION AND DECRYPTION
    91.
    发明申请
    CONTENT ENCRYPTION AND DECRYPTION 有权
    内容加密和解密

    公开(公告)号:US20150295907A1

    公开(公告)日:2015-10-15

    申请号:US14683796

    申请日:2015-04-10

    IPC分类号: H04L29/06 H04L9/08

    摘要: A method of sharing secure content in a group may include receiving a one-time pad (OTP) key. The method may include encrypting content using the OTP key. The encrypting may include generating intermediate codes from the content and the OTP key. The encrypting may also include adding a first common constant to each of the intermediate codes to generate a corresponding encrypted code that includes a predetermined number of digits. The method may include sending encrypted content that includes encrypted codes corresponding to the intermediate codes.

    摘要翻译: 在组中共享安全内容的方法可以包括接收一次性填充(OTP)密钥。 该方法可以包括使用OTP密钥加密内容。 加密可以包括从内容和OTP密钥生成中间代码。 加密还可以包括向每个中间代码添加第一公共常数以生成包括预定数量的数字的对应的加密代码。 该方法可以包括发送包括与中间代码对应的加密代码的加密内容。

    Personal identification number (PIN) generation between two devices in a network
    92.
    发明授权
    Personal identification number (PIN) generation between two devices in a network 有权
    网络中两台设备之间的个人识别码(PIN)生成

    公开(公告)号:US09148423B2

    公开(公告)日:2015-09-29

    申请号:US12345010

    申请日:2008-12-29

    摘要: A method of generating a Personal Identification Number (PIN) between a first device and a second device in a network is provided. The method includes securely receiving information of input choices of the second device and random numbers assigned to the input choices at the first device. At the first device, the PIN is generated from the random numbers, and instructions are provided directing an entry of the input choices on the second device. At the second device, the input choices are entered. The second device is operable to generate the PIN from the input choices and the random numbers if the input choices are entered as instructed.

    摘要翻译: 提供了一种在网络中的第一设备和第二设备之间生成个人识别码(PIN)的方法。 该方法包括安全接收第二设备的输入选择信息和分配给第一设备上的输入选择的随机数。 在第一设备处,从随机数生成PIN,并且提供指令,以将输入选择的条目引导到第二设备上。 在第二个设备上输入输入选项。 如果按照指示输入输入选项,则第二设备可操作以从输入选项和随机数生成PIN。

    Establishing a secure wireless network with minimum human intervention
    94.
    发明授权
    Establishing a secure wireless network with minimum human intervention 有权
    建立一个安全的无线网络,人力干练最少

    公开(公告)号:US09130771B2

    公开(公告)日:2015-09-08

    申请号:US13932864

    申请日:2013-07-01

    申请人: Sonos, Inc.

    摘要: Systems, methods and apparatus to join a network are disclosed. An example method includes receiving a manual user action at a zone player that is unconfigured for a first network, the action initiating automatic establishment of a connection to the first network by the zone player; transmitting, by the zone player responsive to the manual user action, a first message over a second network to be received by a device configured for the first network, wherein the first message indicating that the zone player is available to join the first network; receiving, over the second network by the zone player, a second message from the device, the second message generated responsive to receipt of the first message and including a security parameter to join the first network; and establishing a connection to the first network by the zone player using the security parameter without further input by any user via either the zone player or the device.

    摘要翻译: 公开了加入网络的系统,方法和装置。 一种示例性方法包括在对于第一网络未配置的区域播放器处接收手动用户动作,所述动作开始由所述区域播放器自动建立到所述第一网络的连接; 由所述区域播放器响应于所述手动用户动作,通过第二网络发送要被配置用于所述第一网络的设备接收的第一消息,其中所述第一消息指示所述区域播放器可用于加入所述第一网络; 通过所述区域播放器在所述第二网络上接收来自所述设备的第二消息,响应于所述第一消息的接收而生成的所述第二消息并且包括加入所述第一网络的安全参数; 以及由所述区域播放器使用所述安全参数建立到所述第一网络的连接,而不经由所述区域播放器或所述设备的任何用户进一步输入。

    SECURITY MANAGEMENT METHOD AND APPARATUS FOR GROUP COMMUNICATION IN MOBILE COMMUNICATION SYSTEM
    96.
    发明申请
    SECURITY MANAGEMENT METHOD AND APPARATUS FOR GROUP COMMUNICATION IN MOBILE COMMUNICATION SYSTEM 有权
    移动通信系统中组通信的安全管理方法和装置

    公开(公告)号:US20150244720A1

    公开(公告)日:2015-08-27

    申请号:US14432179

    申请日:2013-09-27

    发明人: Kyung-Joo Suh

    IPC分类号: H04L29/06

    摘要: The present invention relates to a security management method and an apparatus for group communication when a terminal interacts and communicates with a mobile communication system. The security management method for group communication performed in a server, which manages the group communication in the mobile communication system according to one embodiment of the present invention, includes the steps of: generating a session security key for session protection in the group communication, and mapping the session security key to a group identifier for identifying a specific group to which a terminal using the group communication belongs; transmitting the group identifier and the session security key to the terminal; and generating a traffic key for protecting traffic and transmitting the group identifier and the traffic key to the terminal.

    摘要翻译: 本发明涉及一种当终端与移动通信系统交互并通信时的安全管理方法和用于群组通信的装置。 根据本发明的一个实施例的在管理移动通信系统中的组通信的服务器中执行的组通信的安全管理方法包括以下步骤:在组通信中生成用于会话保护的会话安全密钥,以及 将所述会话安全密钥映射到用于标识使用所述组通信的终端所属的特定组的组标识符; 将所述组标识符和所述会话安全密钥发送到所述终端; 并生成用于保护流量并将组标识符和业务密钥发送到终端的业务密钥。

    SECURE DATA HANDLING BY A VIRTUAL MACHINE
    97.
    发明申请
    SECURE DATA HANDLING BY A VIRTUAL MACHINE 有权
    安全数据处理虚拟机

    公开(公告)号:US20150244710A1

    公开(公告)日:2015-08-27

    申请号:US14432320

    申请日:2013-09-09

    IPC分类号: H04L29/06 G06F9/455

    摘要: A system for executing a virtual machine instance is provided. An executing environment (11) is arranged for creating a virtual machine instance (10). The virtual machine instance (10) comprises an instance authorization unit (1) for receiving an instance authorization credential, wherein the instance authorization credential is uniquely associated with the virtual machine instance (10). A data key unit (2) is arranged for generating a request for a data key, based on the instance authorization credential associated with the virtual machine instance (10). A decryption unit (3) is arranged for decrypting a data item (7) based on the data key. A key server system (6) is arranged for issuing keys to a virtual machine instance (10). An instance authorization providing unit (22) is arranged for providing the instance authorization credential to the virtual machine instance (10).

    摘要翻译: 提供了一种用于执行虚拟机实例的系统。 布置执行环境(11)以创建虚拟机实例(10)。 虚拟机实例(10)包括用于接收实例授权凭证的实例授权单元(1),其中所述实例授权凭证与所述虚拟机实例(10)唯一地相关联。 数据密钥单元(2)被布置为基于与虚拟机实例(10)相关联的实例授权凭证来生成对数据密钥的请求。 解密单元(3)被布置为基于数据密钥对数据项(7)进行解密。 密钥服务器系统(6)被布置用于向虚拟机实例(10)发出密钥。 实例授权提供单元(22)被安排用于向虚拟机实例(10)提供实例授权凭证。

    SECURE PROTOCOL FOR PEER-TO-PEER NETWORK
    98.
    发明申请
    SECURE PROTOCOL FOR PEER-TO-PEER NETWORK 有权
    安全对等网络对等

    公开(公告)号:US20150229612A1

    公开(公告)日:2015-08-13

    申请号:US14600477

    申请日:2015-01-20

    IPC分类号: H04L29/06 H04W12/06 H04L29/08

    摘要: A wireless computing device operating as a controller of a peer-to-peer group configured to generate unique master keys for each device joining the group. The wireless computing device may use the unique master keys to selectively remove remote devices from the group such that the remote device cannot later rejoin the group. Other remote devices, each possessing a master key that remains valid, can disconnect from the group and later reconnect to the group without express user action. To support such behavior, the wireless device may provide a user interface through which a user may manage connected remote devices by providing commands to selectively disconnect or remove remote devices from the group.

    摘要翻译: 作为对等组的控制器的无线计算设备被配置为为连接组的每个设备生成唯一的主密钥。 无线计算设备可以使用唯一主密钥来选择性地从组中移除远程设备,使得远程设备不能稍后重新加入组。 其他远程设备(每个拥有主密钥保持有效)可以与组断开连接,然后在没有明确的用户操作的情况下重新连接到组。 为了支持这种行为,无线设备可以提供用户界面,通过该用户界面,用户可以通过提供用于选择性地从组中断开或移除远程设备的命令来管理连接的远程设备。

    Dynamic trust federation
    100.
    发明授权
    Dynamic trust federation 有权
    动态信任联盟

    公开(公告)号:US09094391B2

    公开(公告)日:2015-07-28

    申请号:US14051073

    申请日:2013-10-10

    IPC分类号: H04L29/06

    摘要: Aspects of the present disclosure are directed to methods and systems dynamic trust federation. In one aspect, a computer implemented method may include a security token that enables sign-on into a group applications based on applicable trust criteria. In one aspect, when a user interacts with one application in the group, the trust is elevated through the application internal authentication application program interface (API). The trust may be included in the security token to make available to other applications in the group. Applications can be in multiple groups with variable level of authentication based on location and other transactions variables.

    摘要翻译: 本公开的方面涉及方法和系统动态信任联合。 在一个方面,计算机实现的方法可以包括可以基于适用的信任标准登录到组应用程序中的安全令牌。 在一个方面,当用户与组中的一个应用交互时,通过应用内部认证应用程序接口(API)提升信任。 该信任可能包含在安全令牌中,以供组合中的其他应用程序使用。 应用程序可以在多个组中,基于位置和其他事务变量的可变级别的身份验证。