Securing private key access for cross-component message processing
    31.
    发明授权
    Securing private key access for cross-component message processing 有权
    确保跨组件消息处理的私钥访问

    公开(公告)号:US09166794B2

    公开(公告)日:2015-10-20

    申请号:US13296514

    申请日:2011-11-15

    摘要: Often, for reasons of wireless bandwidth conservation, incomplete messages are provided to wireless messaging devices. Employing cryptography, for secrecy or authentication purposes, when including a received message that has been incompletely received can lead to lack of context on the receiver's end. By automatically obtaining the entirety of the message to be included, an outgoing message that includes the received message can be processed in a manner that securely and accurately represents the intended outgoing message. Alternatively, a server can assemble a composite message from a new message and an original message and, in cooperation with a wireless messaging device, sign the composite message. Since signing the composite message involves access to a private key, access to that private key is secured such that such access to the private key can only be arranged responsive to an explicit request for a hash that is to be signed using the private key.

    摘要翻译: 通常,为了无线带宽保护的原因,向无线消息收发设备提供不完整的消息。 采用密码学,为了保密或认证目的,当包括已经不完整接收到的接收到的消息时,可能导致接收者端缺乏上下文。 通过自动获得要包括的消息的整体,可以以安全且准确地表示预期的传出消息的方式处理包括接收到的消息的传出消息。 或者,服务器可以组合来自新消息和原始消息的复合消息,并且与无线消息收发设备协作来签署复合消息。 由于签署复合消息涉及对私钥的访问,所以保护对该私钥的访问,使得对私钥的这种访问只能根据对使用私钥进行签名的散列的显式请求进行排列。

    Handling receipts in cross component message processing
    32.
    发明授权
    Handling receipts in cross component message processing 有权
    处理交叉组件消息处理中的收据

    公开(公告)号:US08719579B2

    公开(公告)日:2014-05-06

    申请号:US13297454

    申请日:2011-11-16

    IPC分类号: H04L9/32 G06F15/16

    摘要: By automatically obtaining the entirety of a received message to be included, an outgoing message that includes the received message can be processed in a manner that securely and accurately represents the intended outgoing message. Alternatively, a server can assemble a composite message from a new message and an original message and, in cooperation with a wireless messaging device, sign the composite message. In both the above contexts, handling message receipts when message processing ahead of message transmission involved more than one component may be facilitated by storing appropriate expected receipt content during the message processing, either on the device or the server. Validation of the receipt can then be accomplished through use of the stored expected receipt content in a manner that retains the benefits of message processing ahead of message transmission that involves more than one component.

    摘要翻译: 通过自动获得要包括的接收到的消息的整体,可以以安全且准确地表示预期传出消息的方式处理包括接收到的消息的传出消息。 或者,服务器可以组合来自新消息和原始消息的复合消息,并且与无线消息收发设备协作来签署复合消息。 在上述两个上下文中,当在消息传输之前的消息处理涉及多于一个组件时处理消息收据可以通过在消息处理期间在设备或服务器上存储合适的预期接收内容来进行。 然后可以通过使用存储的预期接收内容以在消息传输之前保留消息处理的益处的方式来实现接收,该消息处理涉及多于一个组件。

    Anticipatory responses to commands
    33.
    发明授权
    Anticipatory responses to commands 有权
    对命令的预期响应

    公开(公告)号:US08653964B2

    公开(公告)日:2014-02-18

    申请号:US13606116

    申请日:2012-09-07

    IPC分类号: G08B1/08

    摘要: Responsive to intercepting an outbound command, a command interceptor may, upon determining that the command is associated with a particular category of commands, transmit an anticipatory response to the source of the command, for example, to prematurely indicate that the command has met with success. Accordingly, a given application whose further execution is dependent upon the successful completion of the command may further execute earlier than would be the case if the given application was to await the transmission of the command, the generation of a response indicating success and the receipt of the response indicating success.

    摘要翻译: 响应于拦截出站命令,命令拦截器可以在确定命令与特定类别的命令相关联时,向命令的源发送预期响应,例如过早地指示命令已经成功地满足 。 因此,进一步执行取决于命令成功完成的给定应用程序可以比如果给定的应用程序等待命令的传输,生成表示成功的响应和接收到的命令的情况进一步执行 响应表明成功。

    Method and apparatus for disambiguating an emergency call attempt during password entry for unlocking a mobile device
    34.
    发明授权
    Method and apparatus for disambiguating an emergency call attempt during password entry for unlocking a mobile device 有权
    在用于解锁移动设备的密码输入期间消除紧急呼叫尝试的方法和装置

    公开(公告)号:US08538403B2

    公开(公告)日:2013-09-17

    申请号:US13548474

    申请日:2012-07-13

    CPC分类号: H04M1/72536 H04M1/673

    摘要: A method and apparatus for unlocking a mobile communication device are provided, the mobile communication device comprising an input device, and a display device, the mobile communication device enabled to initiate emergency calls in a locked state. Password input data is received via the input device, when the mobile communication device is in the locked state, the password input data for unlocking the mobile communication device, the password input data comprising at least a sequence of characters for initiating an emergency call. In response to receiving the sequence of characters for initiating the emergency call, the display device is controlled to provide a representation of instructions to initiate the emergency call upon receipt of emergency call initiate data from the input device.

    摘要翻译: 提供了一种用于解锁移动通信设备的方法和装置,所述移动通信设备包括输入设备和显示设备,所述移动通信设备能够在锁定状态下发起紧急呼叫。 当移动通信设备处于锁定状态时,通过输入设备接收密码输入数据,用于解锁移动通信设备的密码输入数据,密码输入数据至少包括用于发起紧急呼叫的字符序列。 响应于接收到用于发起紧急呼叫的字符序列,显示设备被控制以提供在从输入设备接收到紧急呼叫发起数据时发起紧急呼叫的指令的表示。

    System and method for improving smart card reader reconnections
    35.
    发明授权
    System and method for improving smart card reader reconnections 有权
    改进智能卡阅读器重新连接的系统和方法

    公开(公告)号:US08496175B2

    公开(公告)日:2013-07-30

    申请号:US13617363

    申请日:2012-09-14

    IPC分类号: G06K7/08

    CPC分类号: H04W76/19 H04W48/08

    摘要: Upon recognizing a loss of a first connection to a computing apparatus, such as a personal computer, a smart card reader may maintain an open session with a smart card and may associate an identity of the computing apparatus of the first connection with the open session. Some time later, the smart card reader may establish a second connection with a computing apparatus. The smart card reader may compare an identity of the computing apparatus of the second connection with the identity of the computing apparatus of the first connection. Responsive to determining that the identities do not match, the smart card reader may close the open session with the smart card. Responsive to determining that the identities do match, the smart card reader may maintain the open session with the smart card.

    摘要翻译: 在识别到诸如个人计算机的计算设备的第一连接的丢失时,智能卡读卡器可以维护与智能卡的开放会话,并且可以将第一连接的计算装置的身份与打开的会话相关联。 稍后,智能卡读卡器可以与计算设备建立第二连接。 智能卡读取器可将第二连接的计算装置的身份与第一连接的计算装置的身份进行比较。 响应于确定身份不匹配,智能卡读卡器可以关闭与智能卡的开放会话。 响应于确定身份确实匹配,智能卡读卡器可以保持与智能卡的开放会话。

    Secure use of externally stored data
    36.
    发明授权
    Secure use of externally stored data 有权
    安全使用外部存储的数据

    公开(公告)号:US08448875B2

    公开(公告)日:2013-05-28

    申请号:US13437312

    申请日:2012-04-02

    IPC分类号: G06K17/00

    CPC分类号: G06F21/34 G06F21/32

    摘要: A smart card reader is adapted to extract and store authentication data from a response APDU received from a smart card before generating a filtered response APDU, wherein the filtered response APDU does not include the authentication data. Beneficially, when the smart card reader transmits the filtered response APDU toward a destination, the biometric template data is less susceptible to interception, thereby providing a more secure solution.

    摘要翻译: 智能卡读取器适于在生成经过过滤的响应APDU之前提取并存储从智能卡接收到的响应APDU的认证数据,其中,经过滤波的响应APDU不包括认证数据。 有利地,当智能卡读取器向目的地发送经过滤的响应APDU时,生物特征模板数据不太容易被拦截,从而提供更安全的解决方案。

    Method and apparatus for disambiguating an emergency call attempt during password entry for unlocking a mobile communication device
    37.
    发明授权
    Method and apparatus for disambiguating an emergency call attempt during password entry for unlocking a mobile communication device 有权
    在用于解锁移动通信设备的密码输入期间消除紧急呼叫尝试的方法和装置

    公开(公告)号:US08244231B2

    公开(公告)日:2012-08-14

    申请号:US12570844

    申请日:2009-09-30

    CPC分类号: H04M1/72536 H04M1/673

    摘要: A method and apparatus for unlocking a mobile communication device are provided, the mobile communication device comprising an input device, and a display device, the mobile communication device enabled to initiate emergency calls in a locked state. Password input data is received via the input device, when the mobile communication device is in the locked state, the password input data for unlocking the mobile communication device, the password input data comprising at least a sequence of characters for initiating an emergency call. In response to receiving the sequence of characters for initiating the emergency call, the display device is controlling to provide a representation of instructions to initiate the emergency call upon receipt of emergency call initiate data from the input device.

    摘要翻译: 提供一种用于解锁移动通信设备的方法和装置,所述移动通信设备包括输入设备和显示设备,所述移动通信设备能够在锁定状态下发起紧急呼叫。 当移动通信设备处于锁定状态时,通过输入设备接收密码输入数据,用于解锁移动通信设备的密码输入数据,密码输入数据至少包括用于发起紧急呼叫的字符序列。 响应于接收到用于发起紧急呼叫的字符序列,显示设备正在控制以提供在从输入设备接收到紧急呼叫发起数据时发起紧急呼叫的指令的表示。

    CROSS-COMPONENT MESSAGE ENCRYPTION
    38.
    发明申请
    CROSS-COMPONENT MESSAGE ENCRYPTION 有权
    跨组件消息加密

    公开(公告)号:US20120140927A1

    公开(公告)日:2012-06-07

    申请号:US13296501

    申请日:2011-11-15

    IPC分类号: H04L9/00

    摘要: Often, for reasons of wireless bandwidth conservation, incomplete messages are provided to wireless messaging devices. Employing cryptography, for secrecy or authentication purposes, when including a received message that has been incompletely received can lead to lack of context on the receiver's end. By automatically obtaining the entirety of the message to be included, an outgoing message that includes the received message can be processed in a manner that securely and accurately represents the intended outgoing message. Alternatively, a server can assemble a composite message from a new message and an original message and, in cooperation with a wireless messaging device, encrypt and sign the composite message. Conveniently, security considerations are maintained even in view of bandwidth optimization measures.

    摘要翻译: 通常,为了无线带宽保护的原因,向无线消息收发设备提供不完整的消息。 采用密码学,为了保密或认证目的,当包括已经不完整接收到的接收到的消息时,可能导致接收者端缺乏上下文。 通过自动获得要包括的消息的整体,可以以安全且准确地表示预期的传出消息的方式处理包括接收到的消息的传出消息。 或者,服务器可以组合来自新消息和原始消息的复合消息,并且与无线消息收发设备协作来加密和签署复合消息。 方便的是,即使考虑到带宽优化措施,仍然保持安全考虑。

    AUTHENTICATION USING STORED BIOMETRIC DATA
    39.
    发明申请
    AUTHENTICATION USING STORED BIOMETRIC DATA 审中-公开
    使用存储的生物量数据进行验证

    公开(公告)号:US20100138667A1

    公开(公告)日:2010-06-03

    申请号:US12325650

    申请日:2008-12-01

    IPC分类号: H04L9/32 G06F21/00

    摘要: A method is provided for storing a biometric template extracted a smart card for use on a user computing device. The biometric template is extracted from the smart card using a smart card reader. The biometric template is encrypted using a content protection key. The content protection key is encrypted using at least one of a device password or a smart card password. The password may be hashed. The encrypted biometric template, the encrypted content protection key and the hashed password may then be stored in a cache. A method for using the stored biometric template to access the user computer device is also provided.

    摘要翻译: 提供了一种用于存储提取智能卡以在用户计算设备上使用的生物特征模板的方法。 使用智能卡读卡器从智能卡中提取生物识别模板。 使用内容保护密钥对生物特征模板进行加密。 使用设备密码或智能卡密码中的至少一个对内容保护密钥进行加密。 密码可能会被哈希。 加密的生物特征模板,加密内容保护密钥和散列密码可以存储在高速缓存中。 还提供了使用存储的生物测定模板来访问用户计算机设备的方法。