Providing security to an electronic device
    11.
    发明授权
    Providing security to an electronic device 有权
    为电子设备提供安全性

    公开(公告)号:US08452989B1

    公开(公告)日:2013-05-28

    申请号:US12634116

    申请日:2009-12-09

    IPC分类号: G06F21/00

    CPC分类号: G06F21/86 G06F2221/2143

    摘要: A technique provides security to an electronic device. The technique involves disposing a microprocessor between a printed circuit board and a circuit element to restrict physical access to the microprocessor, the microprocessor having (i) a bottom which faces the printed circuit board in a first direction and (ii) a top which faces the circuit element in a second direction which is opposite the first direction. The technique further involves delivering power to the microprocessor from a power source while the microprocessor is disposed between the printed circuit board and the circuit element, the microprocessor performing electronic operations in response to the power delivered from the power source. The technique further involves electronically altering or preventing the microprocessor from further performing the electronic operations in response to tampering activity on the circuit element. Such detection of the tampering activity may involve monitoring a covert signal for tamper evidence detection.

    摘要翻译: 一种技术为电子设备提供安全性。 该技术涉及将微处理器布置在印刷电路板和电路元件之间以限制对微处理器的物理访问,微处理器具有(i)在第一方向上面向印刷电路板的底部,以及(ii)面向 电路元件在与第一方向相反的第二方向上。 该技术还包括在微处理器被布置在印刷电路板和电路元件之间时向微处理器供电,微处理器响应于从电源传递的功率执行电子操作。 该技术还涉及电子地改变或防止微处理器响应于电路元件上的篡改活动进一步执行电子操作。 这种篡改活动的检测可能涉及监视篡改证据检测的隐蔽信号。

    Derivative seeds
    12.
    发明申请
    Derivative seeds 有权
    衍生种子

    公开(公告)号:US20070174614A1

    公开(公告)日:2007-07-26

    申请号:US11357724

    申请日:2006-02-17

    IPC分类号: H04L9/00

    摘要: A method of generating authentication seeds for a plurality of users, the method involving: based on a single master seed, generating a plurality of derivative seeds, each one for a corresponding different one of a plurality of users; and distributing the plurality of derivative seeds to a verifier for use in individually authenticating each of the plurality of users to that verifier, wherein generating each one of the plurality of derivative seeds involves mathematically combining the master seed and a unique identifier identifying the corresponding user.

    摘要翻译: 一种为多个用户生成认证种子的方法,所述方法包括:基于单个母种,生成多个衍生种子,每个种子种类用于多个用户中的相应不同的一个; 以及将所述多个衍生种子分发到验证器以用于将所述多个用户中的每一个单独认证用于所述验证​​者,其中生成所述多个衍生种子中的每一个的数学上涉及所述主种子和识别相应用户的唯一标识符。

    Methods and apparatus for authenticating a user multiple times during a session
    13.
    发明授权
    Methods and apparatus for authenticating a user multiple times during a session 有权
    在会话期间多次认证用户的方法和装置

    公开(公告)号:US08832812B1

    公开(公告)日:2014-09-09

    申请号:US13076869

    申请日:2011-03-31

    摘要: Access of a user to a protected resource during a session is controlled by issuing an authentication information request and receiving authentication information from the user responsive to the authentication information request. The user is authenticated based upon verification of the received authentication information. One or more of the issuing, receiving and authenticating steps are repeated during the session to re-authenticate the user. At least a portion of the authentication information that is used during the re-authentication is different from a corresponding portion of the authentication information that was used during the initial authentication. A secure channel is optionally established between the user and the protected resource responsive to the initial verification. The secure channel can optionally be re-established with the re-authentication using the different portion of the authentication information.

    摘要翻译: 通过发出认证信息请求并响应于认证信息请求从用户接收认证信息来控制用户在会话期间对受保护资源的访问。 基于所接收的认证信息的验证来认证用户。 在会话期间重复发出,接收和认证步骤中的一个或多个以重新认证用户。 在重新认证期间使用的认证信息的至少一部分不同于在初始认证期间使用的认证信息的相应部分。 响应于初始验证,可选地在用户和受保护资源之间建立安全通道。 可以可选地使用认证信息的不同部分通过重新认证重新建立安全信道。

    Authentication Method and Apparatus Utilizing Proof-of-Authentication Module
    14.
    发明申请
    Authentication Method and Apparatus Utilizing Proof-of-Authentication Module 有权
    使用验证模块验证方法和设备

    公开(公告)号:US20070094498A1

    公开(公告)日:2007-04-26

    申请号:US11530998

    申请日:2006-09-12

    IPC分类号: H04L9/00

    摘要: A single sign-on technique allows multiple accesses to one or more applications or other resources using a proof-of-authentication module operating in conjunction with a standard authentication component. The application or other resource issues an authentication information request to the standard authentication component responsive to an access request from the user. The application or other resource receives, responsive to the authentication information request, a proof-of-authentication value from the standard authentication component, and authenticates the user based on the proof-of-authentication value. The standard authentication component interacts with the proof-of-authentication module to obtain the proof-of authentication value. The proof-of-authentication module is configured to generate multiple proof-of-authentication values for authentication of respective access requests of the user.

    摘要翻译: 单一登录技术允许使用与标准认证组件一起运行的认证证明模块对一个或多个应用程序或其他资源进行多次访问。 响应于来自用户的访问请求,应用或其他资源向标准认证组件发出认证信息请求。 应用程序或其他资源响应于认证信息请求接收来自标准认证组件的认证证明值,并且基于认证证明​​值对用户进行认证。 标准认证组件与认证证明模块进行交互以获得认证值证明。 身份验证模块被配置为生成用于认证用户的各个访问请求的多个认证证明值。