AUTOMATIC SECURITY ACTION INVOCATION FOR MOBILE COMMUNICATIONS DEVICE
    101.
    发明申请
    AUTOMATIC SECURITY ACTION INVOCATION FOR MOBILE COMMUNICATIONS DEVICE 有权
    用于移动通信设备的自动安全行动协议

    公开(公告)号:US20120210389A1

    公开(公告)日:2012-08-16

    申请号:US13406765

    申请日:2012-02-28

    IPC分类号: G06F21/00 H04W12/02

    摘要: In one embodiment, there is provided a mobile communications device comprising: a processor; a communications subsystem operable to exchange signals with a wireless network; a storage element having application modules and data stored thereon, the data comprising at least user application data associated with the application modules and service data including data for establishing communications with the wireless network; and a security module operable to detect policy messages received by the device, and to perform a security action if a first policy message to enforce a first data protection policy is received and a subsequent policy message to enforce a second data protection policy is not received within a predetermined duration from the time at which the first policy message is received; wherein the security action comprises erasing or encrypting at least some of the data on the storage element.

    摘要翻译: 在一个实施例中,提供了一种移动通信设备,包括:处理器; 用于与无线网络交换信号的通信子系统; 具有存储在其上的应用模块和数据的存储元件,所述数据至少包括与所述应用模块相关联的用户应用数据和包括用于建立与所述无线网络的通信的数据的服务数据; 以及安全模块,其可操作以检测由所述设备接收的策略消息,以及如果接收到用于强制执行第一数据保护策略的第一策略消息并执行第二数据保护策略的后续策略消息,则不执行安全动作 从接收第一策略消息的时间起的预定持续时间; 其中所述安全动作包括擦除或加密所述存储元件上的所述数据中的至少一些。

    Systems and methods to securely generate shared keys
    102.
    发明授权
    Systems and methods to securely generate shared keys 有权
    安全生成共享密钥的系统和方法

    公开(公告)号:US08218773B2

    公开(公告)日:2012-07-10

    申请号:US13006044

    申请日:2011-01-13

    IPC分类号: H04L9/00

    摘要: A method for secure bidirectional communication between two systems is described. A first key pair and a second key pair are generated, the latter including a second public key that is generated based upon a shared secret. First and second public keys are sent to a second system, and third and fourth public keys are received from the second system. The fourth public key is generated based upon the shared secret. A master key for encrypting messages is calculated based upon a first private key, a second private key, the third public key and the fourth public key. For re-keying, a new second key pair having a new second public key and a new second private key is generated, and a new fourth public key is received. A new master key is calculated using elliptic curve calculations using the new second private key and the new fourth public key.

    摘要翻译: 描述了两个系统之间的安全双向通信的方法。 产生第一密钥对和第二密钥对,后者包括基于共享秘密生成的第二公钥。 第一和第二公钥被发送到第二系统,并且从第二系统接收第三和第四公钥。 第四个公钥是基于共享的秘密生成的。 基于第一私钥,第二私钥,第三公钥和第四公钥来计算用于加密消息的主密钥。 为了重新键入,生成具有新的第二公钥和新的第二私钥的新的第二密钥对,并接收新的第四公钥。 使用新的第二私钥和新的第四公钥,使用椭圆曲线计算来计算新的主密钥。

    System and method for searching and retrieving certificates
    103.
    发明授权
    System and method for searching and retrieving certificates 有权
    用于搜索和检索证书的系统和方法

    公开(公告)号:US08209530B2

    公开(公告)日:2012-06-26

    申请号:US12645003

    申请日:2009-12-22

    IPC分类号: H04L29/06

    摘要: A system and method for searching and retrieving certificates, which may be used in the processing of encoded messages. In one broad aspect, a method is provided in which a certificate search request is received, a search of one or more certificate servers for certificates satisfying the request is performed, located certificates are retrieved and processed at a first computing device to determine data that uniquely identifies each located certificate, and search result data comprising the determined data is communicated to a second device (e.g. a mobile device) for use in determining whether each located certificate is already stored on the second device.

    摘要翻译: 用于搜索和检索证书的系统和方法,其可以用于编码消息的处理。 在一个广泛的方面,提供了一种方法,其中接收到证书搜索请求,执行对满足请求的证书的一个或多个证书服务器的搜索,定位的证书在第一计算设备处被检索和处理以确定唯一的数据 识别每个定位的证书,并且包括确定的数据的搜索结果数据被传送到第二设备(例如移动设备),以用于确定每个定位的证书是否已经存储在第二设备上。

    MESSAGE FILTER PROGRAM FOR A COMMUNICATION DEVICE
    104.
    发明申请
    MESSAGE FILTER PROGRAM FOR A COMMUNICATION DEVICE 有权
    用于通信设备的消息过滤程序

    公开(公告)号:US20120143975A1

    公开(公告)日:2012-06-07

    申请号:US13371156

    申请日:2012-02-10

    IPC分类号: G06F15/16

    摘要: A communication device is configured to receive messages. The communication device may comprise a display screen upon which messages are displayed. A microprocessor configured to execute at least one message management program on the communication device, filters incoming messages. The message management program comprising a message filter application filters received messages based on a comparison of sender identification data associated with a received message to approved sender identification data.

    摘要翻译: 通信设备被配置为接收消息。 通信设备可以包括显示消息的显示屏幕。 被配置为在通信设备上执行至少一个消息管理程序的微处理器,对输入消息进行过滤。 包括消息过滤器应用的消息管理程序基于与接收到的消息相关联的发送者标识数据与批准的发送者标识数据的比较来过滤接收到的消息。

    Method and system for supporting portable authenticators on electronic devices
    106.
    发明授权
    Method and system for supporting portable authenticators on electronic devices 有权
    用于在电子设备上支持便携式认证器的方法和系统

    公开(公告)号:US08166530B2

    公开(公告)日:2012-04-24

    申请号:US10819278

    申请日:2004-04-07

    IPC分类号: G06F12/14 G06F7/04 G06F21/00

    摘要: Systems and methods are provided for facilitating access to an electronic device. Password information is stored on the electronic device, and on a portable authenticator. When a user attempts to access the electronic device, the user is prompted to enter a password at the electronic device. The portable authenticator determines the validity of the entered password. The electronic device receives the results of the validity determination from the portable authenticator, and provides access to the electronic device based on the received validity determination.

    摘要翻译: 提供了系统和方法以便于访问电子设备。 密码信息存储在电子设备和便携式认证器上。 当用户尝试访问电子设备时,提示用户在电子设备处输入密码。 便携式验证器确定输入密码的有效性。 电子设备从便携式认证器接收有效性确定的结果,并且基于所接收的有效性确定提供对电子设备的访问。

    SYSTEM AND METHOD FOR RETRIEVING RELATED CERTIFICATES
    107.
    发明申请
    SYSTEM AND METHOD FOR RETRIEVING RELATED CERTIFICATES 有权
    检索相关证书的系统和方法

    公开(公告)号:US20120084556A1

    公开(公告)日:2012-04-05

    申请号:US13324364

    申请日:2011-12-13

    IPC分类号: H04L29/06

    摘要: A system and method for searching and retrieving certificates, which may be used in the processing of encoded messages. In one embodiment, all certificates related to an identified certificate are retrieved from the certificate servers automatically by the certificate synchronization application, where the related certificates comprise at least one of one or more CA certificates and one or more cross-certificates. Embodiments described herein facilitate at least partial automation of the downloading and establishment of certificate chains, thereby minimizing the need for users to manually search for individual certificates.

    摘要翻译: 用于搜索和检索证书的系统和方法,其可以用于编码消息的处理。 在一个实施例中,证书同步应用自动从证书服务器检索与所识别的证书相关的所有证书,其中相关证书包括一个或多个CA证书和一个或多个交叉证书中的至少一个。 本文描述的实施例有助于对证书链的下载和建立的至少部分自动化,从而最小化对用户手动搜索单个证书的需要。

    CHALLENGE RESPONSE-BASED DEVICE AUTHENTICATION SYSTEM AND METHOD
    109.
    发明申请
    CHALLENGE RESPONSE-BASED DEVICE AUTHENTICATION SYSTEM AND METHOD 有权
    基于挑战响应的设备认证系统和方法

    公开(公告)号:US20120045057A1

    公开(公告)日:2012-02-23

    申请号:US13281789

    申请日:2011-10-26

    IPC分类号: H04L9/00

    摘要: A challenge response scheme authenticates a requesting device by an authenticating device. The authenticating device generates and issues a challenge to the requesting device. The requesting device combines the challenge with a hash of a password provided by a user, and the combination is further hashed in order to generate a requesting encryption key used to encrypt the user supplied password. The encrypted user supplied password is sent to the authenticating device as a response to the issued challenge. The authenticating device generates an authenticating encryption key by generating the hash of a combination of the challenge and a stored hash of an authenticating device password. The authenticating encryption key is used to decrypt the response in order to retrieve the user-supplied password. If the user-supplied password hash matches the stored authenticating device password hash, the requesting device is authenticated and the authenticating device is in possession of the password.

    摘要翻译: 挑战响应方案通过认证设备认证请求设备。 认证设备生成并向请求设备发出质询。 请求设备将挑战与由用户提供的密码的散列相结合,并且组合进一步进行散列,以便生成用于加密用户提供的密码的请求加密密钥。 加密的用户提供的密码作为对发布的挑战的响应被发送到认证设备。 认证设备通过生成质询的组合和存储的认证设备密码的哈希的散列来生成认证加密密钥。 认证加密密钥用于解密响应,以便检索用户提供的密码。 如果用户提供的密码哈希与存储的认证设备密码散列匹配,则请求设备被认证,认证设备拥有密码。

    System and method for retrieving related certificates
    110.
    发明授权
    System and method for retrieving related certificates 有权
    检索相关证书的系统和方法

    公开(公告)号:US08099593B2

    公开(公告)日:2012-01-17

    申请号:US12632217

    申请日:2009-12-07

    IPC分类号: H04L29/06 H04L9/32

    摘要: A system and method for searching and retrieving certificates, which may be used in the processing of encoded messages. In one embodiment, a certificate synchronization application is programmed to perform certificate searches by querying one or more certificate servers for all certificate authority (CA) certificates and cross-certificates on the certificate servers. In another embodiment, all certificates related to an identified certificate are retrieved from the certificate servers automatically by the certificate synchronization application, where the related certificates comprise at least one of one or more CA certificates and one or more cross-certificates. Embodiments of the invention facilitate at least partial automation of the downloading and establishment of certificate chains, thereby minimizing the need for users to manually search for individual certificates.

    摘要翻译: 用于搜索和检索证书的系统和方法,其可以用于编码消息的处理。 在一个实施例中,证书同步应用程序被编程为通过在一个或多个证书服务器上查询证书服务器上的所有证书颁发机构(CA)证书和交叉证书来执行证书搜索。 在另一个实施例中,证书同步应用程序自动从证书服务器检索与所识别的证书相关的所有证书,其中相关证书包括一个或多个CA证书和一个或多个交叉证书中的至少一个。 本发明的实施例促进了证书链的下载和建立的至少部分自动化,从而最小化对用户手动搜索单个证书的需要。