User authorization and presence detection in isolation from interference from and control by host central processing unit and operating system
    21.
    发明授权
    User authorization and presence detection in isolation from interference from and control by host central processing unit and operating system 有权
    用户授权和存在检测与主机中央处理单元和操作系统的干扰和控制隔离

    公开(公告)号:US09230081B2

    公开(公告)日:2016-01-05

    申请号:US13785883

    申请日:2013-03-05

    Abstract: An embodiment may include circuitry to be included, at least in part, in a host. The host may include at least one host central processing unit (CPU) to execute, at least in part, at least one host operating system (OS). The circuitry may perform, at least in part, at least one operation in isolation both from interference from and control by the at least one host CPU and the at least one host OS. The at least one operation may include user authorization determination and user presence determination. The authorization determination may be in response, at least in part, to indication of physical presence of at least one user in proximity to the host. The user presence determination may determine, at least in part, whether, after the indication has been provided, the physical presence of the at least one user in the proximity to the host has ceased.

    Abstract translation: 一个实施例可以包括至少部分地在主机中包括的电路。 主机可以包括至少一个主机中央处理单元(CPU),至少部分地执行至少一个主机操作系统(OS)。 至少部分地,该电路可以隔离至少一个主机CPU和至少一个主机OS的干扰和由其控制的至少一个操作。 所述至少一个操作可以包括用户授权确定和用户存在确定。 至少部分地,授权确定可以响应于主机附近的至少一个用户的物理存在的指示。 用户存在确定可以至少部分地确定在已经提供了指示之后是否已经停止在主机附近的至少一个用户的物理存在。

    Privacy enhanced key management for a web service provider using a converged security engine
    22.
    发明授权
    Privacy enhanced key management for a web service provider using a converged security engine 有权
    使用融合安全引擎的Web服务提供商的隐私增强密钥管理

    公开(公告)号:US09064109B2

    公开(公告)日:2015-06-23

    申请号:US13721760

    申请日:2012-12-20

    Abstract: In an embodiment, a security engine of a processor includes an identity provider logic to generate a first key pair of a key pairing associating system user and a service provider that provides a web service and having a second system coupled to the system via a network, to perform a secure communication with the second system to enable the second system to verify that the identity provider logic is executing in a trusted execution environment, and responsive to the verification, to send a first key of the first key pair to the second system. This key may enable the second system to verify an assertion communicated by the identity provider logic that the user has been authenticated to the system according to a multi-factor authentication. Other embodiments are described and claimed.

    Abstract translation: 在一个实施例中,处理器的安全引擎包括身份提供者逻辑,以生成密钥配对关联系统用户的第一密钥对和提供Web服务并具有通过网络耦合到系统的第二系统的服务提供者, 以执行与所述第二系统的安全通信,以使所述第二系统能够验证所述身份提供者逻辑在可信执行环境中正在执行,并且响应于所述验证​​,将所述第一密钥对的第一密钥发送到所述第二系统。 该密钥可以使得第二系统可以根据多因素认证来验证由身份提供者逻辑传达的断言,用户已被认证给系统。 描述和要求保护其他实施例。

    TAMPER RESISTANT LOCK ASSEMBLY HAVING PHYSICAL UNCLONABLE FUNCTIONS

    公开(公告)号:US20180345904A1

    公开(公告)日:2018-12-06

    申请号:US15608297

    申请日:2017-05-30

    Abstract: A user-customizable locking assembly includes a user-customizable key, a user-customizable key receiver, and a key receiver receptacle. Each of the user-customizable key, a user-customizable key receiver, and a key receiver receptacle includes a physical unclonable function (PUF) circuit configured to provide a PUF response in response to receiving a challenge signal. The PUF circuits of the user-customizable key and a user-customizable key receiver include personalization fuses that allow a user to further personalize or change the PUF response produced by the corresponding PUF circuits. The key receiver receptacle also includes anti-theft fuses, which are activated if the user-customizable key receiver is removed from the key receiver receptacle. In use, a protected system may utilize the PUF responses from the each of the PUF circuits to authenticate the user-customizable locking assembly.

    Privacy enhanced key management for a web service provider using a converged security engine

    公开(公告)号:US10097350B2

    公开(公告)日:2018-10-09

    申请号:US15423975

    申请日:2017-02-03

    Abstract: In an embodiment, a security engine of a processor includes an identity provider logic to generate a first key pair of a key pairing associating system user and a service provider that provides a web service and having a second system coupled to the system via a network, to perform a secure communication with the second system to enable the second system to verify that the identity provider logic is executing in a trusted execution environment, and responsive to the verification, to send a first key of the first key pair to the second system. This key may enable the second system to verify an assertion communicated by the identity provider logic that the user has been authenticated to the system according to a multi-factor authentication. Other embodiments are described and claimed.

Patent Agency Ranking