Systems, methods, and media for accessing TPM keys
    31.
    发明申请
    Systems, methods, and media for accessing TPM keys 审中-公开
    用于访问TPM密钥的系统,方法和介质

    公开(公告)号:US20060129824A1

    公开(公告)日:2006-06-15

    申请号:US11012836

    申请日:2004-12-15

    CPC classification number: H04L9/3234 H04L9/3247

    Abstract: Systems, methods and media for accessing and protecting TPM keys for signing and for decryption are disclosed. More particularly, hardware and software are disclosed for enabling a user knowing a signing-only authentication to access a key for signing only, upon submission of the signing only-authentication, and for enabling the user or a system administrator knowing a decryption-only authentication to access a key for decryption only, upon submission of the decryption-only authentication.

    Abstract translation: 公开了用于访问和保护用于签名和解密的TPM密钥的系统,方法和媒体。 更具体地,公开了硬件和软件,用于使得用户只知道仅签名认证才能访问用于签名的密钥,仅在签名仅认证时才能使用户或系统管理员知道仅解密认证 仅在提供仅解密认证时才访问用于解密的密钥。

    Securing decrypted files in a shared environment
    33.
    发明授权
    Securing decrypted files in a shared environment 有权
    在共享环境中保护解密的文件

    公开(公告)号:US07167982B2

    公开(公告)日:2007-01-23

    申请号:US09952103

    申请日:2001-09-14

    Abstract: A method, system and computer program product for securing decrypted files in a shared environment. A filter driver in a kernel space may be configured to control service requests to encrypted files stored in a shared area, e.g., a shared directory on a disk unit, accessible by multiple users. The filter driver may receive a service request to open an encrypted document in the shared area issued from an authorized user. Upon receiving the encrypted data, the filter driver may decrypt the encrypted data. The filter driver may subsequently store the decrypted data in a file in a non-shared area, e.g., a non-shared directory. The non-shared area may be accessible only by the authorized user that requested access to the encrypted file. By storing the decrypted data in a file in the non-shared area, a file once decrypted may be protected in a file sharing environment.

    Abstract translation: 一种用于在共享环境中保护解密文件的方法,系统和计算机程序产品。 内核空间中的过滤器驱动程序可以被配置为将服务请求控制为存储在共享区域(例如,可由多个用户访问的磁盘单元上的共享目录)上的加密文件。 过滤器驱动程序可以接收服务请求以在从授权用户发出的共享区域中打开加密文档。 在接收到加密数据之后,过滤器驱动程序可以对加密的数据进行解密。 滤波器驱动器可随后将解密的数据存储在非共享区域(例如非共享目录)中的文件中。 非共享区域可以仅由请求访问加密文件的授权用户访问。 通过将解密的数据存储在非共享区域中的文件中,一旦解密的文件可以在文件共享环境中被保护。

    Timer bus structure for an integrated circuit
    34.
    发明授权
    Timer bus structure for an integrated circuit 失效
    用于集成电路的定时器总线结构

    公开(公告)号:US5812833A

    公开(公告)日:1998-09-22

    申请号:US555454

    申请日:1995-11-13

    CPC classification number: G06F1/14

    Abstract: I/O control modules (25-29) include a timer bus (71, 72) which may be segmented anywhere along its length. As a result, the channels (86, 87) are partitioned by each timer bus (71, 72) into separate blocks of channels (86, 87) which are provided with access to different timebases by their respective timer bus (71, 72). The channels within one timer bus block (e.g. 86) can be used to perform different function(s) with the potential for no loss of resolution because each channel in a timer bus block (e.g. 86) can concurrently receive the same timebase value from its corresponding timer bus (71). In one embodiment, one end of each timer bus (71, 72) is delineated by a master timer bus control channel (61, 63), and the other end of the timer bus is delineated by a slave timer bus control channel (62, 64).

    Abstract translation: I / O控制模块(25-29)包括定时器总线(71,72),其可以在其长度的任何地方被分段。 结果,信道(86,87)被每个定时器总线(71,72)划分成分离的信道块(86,87),它们通过它们各自的定时器总线(71,72)提供对不同时基的访问, 。 一个定时器总线块(例如86)内的通道可用于执行不同功能,具有不损失分辨率的可能性,因为定时器总线块(例如86)中的每个通道可以从其中同时接收相同的时基值 相应的定时器总线(71)。 在一个实施例中,每个定时器总线(71,72)的一端由主定时器总线控制通道(61,63)描绘,并且定时器总线的另一端由从定时器总线控制通道(62,62) 64)。

    Vehicle bumper
    35.
    发明授权
    Vehicle bumper 失效
    车辆保险杠

    公开(公告)号:US4930823A

    公开(公告)日:1990-06-05

    申请号:US381986

    申请日:1989-07-19

    Applicant: David Rivera

    Inventor: David Rivera

    CPC classification number: B62D35/007 B60R19/205 B62D35/005

    Abstract: A vehicle bumper includes an elongated shell member for attachment to an end portion of a vehicle. An impact member is received within the shell member for limited lateral sliding movement and is biased outwardly through an elongated opening in the shell member. A coil spring biases the impact member outwardly from the shell member and a shock absorber dampens lateral movement of the impact member. An air bag is received in an outwardly opening elongated cavity in the impact member and is inflatable upon a severe impact. A resilient cover which surrounds the impact member and encloses the air bag includes a pair of inwardly extending elongated ribs in frictional engagement with a pair of parallel grooves provided in an outer portion of the impact member. The cover has a padded outer portion for absorbing minor impacts and is released from engagement with the impact member upon inflation of the air bag. An air spoiler may be secured to the shell member.

    Abstract translation: 车辆保险杠包括用于附接到车辆的端部的细长壳体构件。 碰撞构件被容纳在外壳构件内用于有限的侧向滑动运动,并且通过壳构件中的细长开口向外偏压。 螺旋弹簧将冲击构件从壳构件向外偏压,并且减震器抑制冲击构件的横向运动。 气囊被容纳在冲击构件的向外开口的细长空腔中并且在严重撞击时可充气。 围绕冲击构件并包围气囊的弹性盖包括一对向内延伸的细长肋,与设置在冲击构件外部的一对平行槽摩擦接合。 盖具有用于吸收小的冲击的衬垫的外部部分,并且在气囊充气时与冲击构件的接合脱离。 空气扰流器可以固定到壳构件。

    Sharable prescaled timer and method for a data processor
    36.
    发明授权
    Sharable prescaled timer and method for a data processor 失效
    数据处理器可预约定时器和方法

    公开(公告)号:US4584698A

    公开(公告)日:1986-04-22

    申请号:US548177

    申请日:1983-11-02

    CPC classification number: H03K23/66

    Abstract: A data processor having an integral timer including a clock generator producing a specific frequency output comprises a counter chain having an input and output thereof for supplying a fixed frequency divide function. A programmable prescaler couples the clock generator output to the counter chain input for providing a predetermined divisor input to the counter chain. A postscaler operates in consonance with the programmable prescaler coupled to the counter chain output for providing a timer output compensated for the predetermined divisor input. In operation, the timer output has a frequency bearing a constant relationship to the clock generator output frequency independent of the predetermined divisor input of the programmable prescaler.

    Abstract translation: 具有产生特定频率输出的时钟发生器的积分计时器的数据处理器包括具有用于提供固定频率除法功能的输入和输出的反向链。 可编程预分频器将时钟发生器输出耦合到反向链输入,以向反向链提供预定的除数输入。 后分频器与可编程预分频器相配合,该预分频器耦合到反向链输出,用于提供补偿预定除数输入的定时器输出。 在操作中,定时器输出具有与可编程预分频器的预定除数输入无关的与时钟发生器输出频率恒定关系的频率。

    AUTOMATIC RECOVERY OF TPM KEYS
    37.
    发明申请
    AUTOMATIC RECOVERY OF TPM KEYS 有权
    TPM KEYS自动恢复

    公开(公告)号:US20140105400A1

    公开(公告)日:2014-04-17

    申请号:US13652138

    申请日:2012-10-15

    CPC classification number: H04L9/0822 H04L9/3226 H04L2209/127

    Abstract: A trusted platform module (TPM) is a silicon chip that constitutes a secure encryption key-pair generator and key management device. A TPM provides a hardware-based root-of-trust contingent on the generation of the first key-pair that the device creates: the SRK (storage root key). Each SRK is unique, making each TPM unique, and an SRK is never exported from a TPM. Broadly contemplated herein is an arrangement for determining automatically whether a TPM has been replaced or cleared via loading a TPM blob into the TPM prior to the first time it is to be used (e.g. when a security-related software application runs). If the TPM blob loads successfully, then it can be concluded that the TPM is the same TPM that was used previously. If the TPM blob cannot be loaded, then corrective action will preferably take place automatically to configure the new TPM.

    Abstract translation: 可信平台模块(TPM)是构成安全加密密钥对生成器和密钥管理设备的硅芯片。 TPM提供基于硬件的根本信任依赖于生成设备创建的第一个密钥对:SRK(存储根密钥)。 每个SRK是唯一的,使得每个TPM是唯一的,并且SRK从不从TPM导出。 这里广泛考虑的是用于在第一次使用TPM之前(例如当安全相关的软件应用运行时)自动确定TPM是否已被替换或清除的装置。 如果TPM blob成功加载,则可以得出结论,TPM与之前使用的TPM相同。 如果无法加载TPM blob,则自动执行纠正措施来配置新的TPM。

    Automatic recovery of TPM keys
    38.
    发明授权
    Automatic recovery of TPM keys 有权
    自动恢复TPM密钥

    公开(公告)号:US08290164B2

    公开(公告)日:2012-10-16

    申请号:US11461429

    申请日:2006-07-31

    CPC classification number: H04L9/0897 G06F21/57

    Abstract: A trusted platform module (TPM) is a silicon chip that constitutes a secure encryption key-pair generator and key management device. A TPM provides a hardware-based root-of-trust contingent on the generation of the first key-pair that the device creates: the SRK (storage root key). Each SRK is unique, making each TPM unique, and an SRK is never exported from a TPM. Broadly contemplated herein is an arrangement for determining automatically whether a TPM has been replaced or cleared via loading a TPM blob into the TPM prior to the first time it is to be used (e.g. when a security-related software application runs). If the TPM blob loads successfully, then it can be concluded that the TPM is the same TPM that was used previously. If the TPM blob cannot be loaded, then corrective action will preferably take place automatically to configure the new TPM.

    Abstract translation: 可信平台模块(TPM)是构成安全加密密钥对生成器和密钥管理设备的硅芯片。 TPM提供基于硬件的根本信任依赖于生成设备创建的第一个密钥对:SRK(存储根密钥)。 每个SRK是唯一的,使得每个TPM是唯一的,并且SRK从不从TPM导出。 这里广泛考虑的是用于在第一次使用TPM之前(例如当安全相关的软件应用运行时)自动确定TPM是否被替换或清除的装置。 如果TPM blob成功加载,则可以得出结论,TPM与之前使用的TPM相同。 如果无法加载TPM blob,则自动执行纠正措施来配置新的TPM。

    Method and apparatus for providing a secure single sign-on to a computer system
    39.
    发明授权
    Method and apparatus for providing a secure single sign-on to a computer system 有权
    用于向计算机系统提供安全单点登录的方法和装置

    公开(公告)号:US07941847B2

    公开(公告)日:2011-05-10

    申请号:US11535110

    申请日:2006-09-26

    CPC classification number: G06F21/34

    Abstract: A method for providing a secure single sign-on to a computer system is disclosed. Pre-boot passwords are initially stored in a secure storage area of a smart card. The operating system password, which has been encrypted to a blob, is stored in a non-secure area of the smart card. After the smart card has been inserted in a computer system, a user is prompted for a Personal Identification Number (PIN) of the smart card. In response to a correct smart card PIN entry, the blob stored in the non-secure storage area of the smart card is decrypted to provide the operating system password, and the operating system password along with the pre-boot passwords stored in the secure storage area of the smart card are then utilized to log on to the computer system.

    Abstract translation: 公开了一种用于向计算机系统提供安全单点登录的方法。 预引导密码最初存储在智能卡的安全存储区域中。 已经加密到Blob的操作系统密码存储在智能卡的非安全区域。 在将智能卡插入计算机系统中之后,将提示用户输入智能卡的个人识别号码(PIN)。 响应于正确的智能卡PIN条目,存储在智能卡的非安全存储区域中的斑点被解密以提供操作系统密码,以及操作系统密码以及存储在安全存储器中的预引导密码 然后使用智能卡的区域登录到计算机系统。

    Apparatus, method and program product for policy synchronization
    40.
    发明授权
    Apparatus, method and program product for policy synchronization 有权
    用于策略同步的装置,方法和程序产品

    公开(公告)号:US07743240B2

    公开(公告)日:2010-06-22

    申请号:US11695095

    申请日:2007-04-02

    CPC classification number: G06F9/441

    Abstract: Applications which function under a first operating system also function when it becomes necessary to call into action a second operating system due to provision having been made for configuration and other settings necessary to the execution of such applications (here generically called policy settings or policy source data) to be made available to the second operating system.

    Abstract translation: 在第一个操作系统下运行的应用程序也起作用,因为为了执行这些应用程序所必需的配置和其他设置(这里一般称为策略设置或策略源数据),必须为第二操作系统调用动作 )可供第二个操作系统使用。

Patent Agency Ranking