Dynamic hardfile size allocation to secure data
    51.
    发明授权
    Dynamic hardfile size allocation to secure data 有权
    动态硬文件大小分配到安全数据

    公开(公告)号:US07249249B2

    公开(公告)日:2007-07-24

    申请号:US10064087

    申请日:2002-06-10

    CPC classification number: G06F21/575 G06F9/4406 G06F2221/2105

    Abstract: A system and method for access control of a hardfile responsive to a computer system having an operating system is disclosed. The method includes detecting a special boot condition during a pre-boot test of the computer system; and altering, in response to the special boot condition, an operating system access configuration of the hardfile. The system includes a computer system that adjusts an operating system access to a hardfile based upon various boot conditions.

    Abstract translation: 公开了一种响应具有操作系统的计算机系统对硬盘进行访问控制的系统和方法。 该方法包括在计算机系统的预引导测试期间检测特殊启动条件; 并且响应于特殊引导条件改变硬文件的操作系统访问配置。 该系统包括一个计算机系统,该计算机系统根据各种引导条件调整对硬盘的操作系统访问。

    Method to use secure passwords in an unsecure program environment
    52.
    发明授权
    Method to use secure passwords in an unsecure program environment 失效
    在不安全的程序环境中使用安全密码的方法

    公开(公告)号:US07200761B1

    公开(公告)日:2007-04-03

    申请号:US09711028

    申请日:2000-11-09

    CPC classification number: G06F21/575 G06F11/2284 G06F21/79

    Abstract: During power up initialization, security data such as passwords and other sensitive data which are stored in a lockable memory device are read and copied to protected system management interrupt (SMI) memory space, subject to verification by code running in the SMI memory space that the call to write the security data originates with a trusted entity. Once copied to SMI memory space, the security data is erased from regular system memory and the lockable storage device is hard locked (requiring a reset to unlock) against direct access prior to starting the operating system. The copy of the security data within the SMI memory space is invisible to the operating system. However, the operating system may initiate a call to code running in the SMI memory space to check a password entered by the user, with the SMI code returning a “match” or “no match” indication. The security data may thus be employed after the lockable memory device is hard locked and the operating system is started.

    Abstract translation: 在上电初始化期间,存储在可锁定存储器设备中的安全数据(例如密码和其他敏感数据)被读取并复制到受保护的系统管理中断(SMI)存储器空间,经由在SMI存储器空间中运行的代码进行验证, 调用写入安全数据来源于受信任的实体。 一旦复制到SMI内存空间,安全数据将从常规系统内存中擦除,锁定的存储设备在启动操作系统之前就被硬锁定(需要重新启动)以防止直接访问。 SMI内存空间中的安全数据的副本对于操作系统是不可见的。 然而,操作系统可以启动对在SMI存储器空间中运行的代码的调用,以检查由用户输入的密码,SMI代码返回“匹配”或“不匹配”指示。 因此,在可锁定存储器件被硬锁定并且操作系统启动之后可以采用安全数据。

    Method and system for setting a secure computer environment
    54.
    发明授权
    Method and system for setting a secure computer environment 失效
    设置安全计算机环境的方法和系统

    公开(公告)号:US06925570B2

    公开(公告)日:2005-08-02

    申请号:US09858058

    申请日:2001-05-15

    CPC classification number: G06F21/71 G06F21/79

    Abstract: A computer system processor incorporates a special S-latch which may only be set by secure signals. One state of the S-latch sets the processor into a secure mode where it only executes instructions and not commands from an In Circuit Emulator (ICE) unit. A second state of the S-latch sets the processor into a non-secure mode. A non-volatile random access memory (NVRAM) is written with secure data which can only be read by boot block code stored in a BIOS storage device. The boot block code is operable to read the secure data in the NVRAM and set the S-latch to an appropriate security state. If the boot block code cannot set the S-latch, then remaining boot up with BIOS data is stopped. On boot up the boot block code reads the NVRAM and sets the S-latch into the appropriate security state.

    Abstract translation: 计算机系统处理器包括只能由安全信号设置的特殊S-锁存器。 S锁存器的一个状态将处理器设置为安全模式,其中它只执行指令而不是来自In Circuit Emulator(ICE)单元的命令。 S锁存器的第二状态将处理器设置为非安全模式。 用非易失性随机存取存储器(NVRAM)写入只能由存储在BIOS存储设备中的引导块代码读取的安全数据。 引导块代码可操作以读取NVRAM中的安全数据并将S锁存器设置为适当的安全状态。 如果引导块代码无法设置S锁存器,则停止使用BIOS数据进行剩余引导。 启动引导块代码读取NVRAM并将S锁存器设置为适当的安全状态。

    Battery-based secured storage binding system
    55.
    发明授权
    Battery-based secured storage binding system 有权
    基于电池的安全存储绑定系统

    公开(公告)号:US06889298B2

    公开(公告)日:2005-05-03

    申请号:US10015814

    申请日:2001-11-02

    CPC classification number: G06F21/81 G06F21/6218

    Abstract: An apparatus and method for exclusively binding data to a data processing system. The logical binding apparatus of the present invention includes a detachable circuit device mounted within a system planar. Data to be bound within the system planar is stored in a memory device within the detachable circuit device. A battery signal is applied from the system planar to a binding pin on the detachable circuit device, wherein the binding pin is applied to the input of a binding latch. The binding latch remains in a reset state while the battery signal is applied. Upon removal of said binding signal from the binding pin, the binding latch is set thus signaling a processing unit within the detachable circuit device to remove the data from the memory device.

    Abstract translation: 一种用于将数据独占于数据处理系统的装置和方法。 本发明的逻辑装订装置包括安装在系统平面内的可拆卸电路装置。 在系统平面内绑定的数据被存储在可拆卸电路装置内的存储装置中。 电池信号从系统平面施加到可拆卸电路装置上的装订销上,其中装订销被施加到装订闩锁的输入。 当施加电池信号时,装订锁定器保持复位状态。 在从绑定销移除所述绑定信号之后,设置绑定锁存器,从而向可拆卸电路装置内的处理单元发出信号,以从存储器装置移除数据。

    Folding keyboard with automatic state initiator
    57.
    发明授权
    Folding keyboard with automatic state initiator 有权
    带自动状态启动器的折叠键盘

    公开(公告)号:US06741455B2

    公开(公告)日:2004-05-25

    申请号:US10008617

    申请日:2001-12-03

    Abstract: A folding keyboard for a data processing system having two or more keyboard sections, keys attached to the keyboard sections, and a keyboard housing for receiving the keyboard sections. The keyboard may be configured to assume an extended position in which each of the keyboard sections is extended, and may be further configured to assume a second position in which each of the keyboard sections are collapsed. The keyboard may be further configured to transmit in response to a change in the extension state of the keyboard, a state signal to the data processing system for directing the data processing system to transition between a wake mode and a sleep mode. The keyboard may include one or more connectors attached to the keyboard sections for transitioning the keyboard from the extended position to the collapsed position, may include one or more rollers for facilitating movement of the keyboard between the extended position and the collapsed position, and may include one or more locks for selectively maintaining the keyboard in the extended position or the collapsed position.

    Abstract translation: 一种用于具有两个或多个键盘部分的数据处理系统的折叠键盘,附接到键盘部分的键以及用于接收键盘部分的键盘壳体。 键盘可以被配置为呈现其中每个键盘部分被延伸的延伸位置,并且可以被进一步配置成呈现其中每个键盘部分被折叠的第二位置。 键盘可以被进一步配置成响应于键盘的扩展状态的改变而传送数据处理系统的状态信号,用于引导数据处理系统在唤醒模式和睡眠模式之间转换。 键盘可以包括附接到键盘部分的一个或多个连接器,用于将键盘从延伸位置转换到折叠位置,可以包括一个或多个滚筒,用于便于键盘在延伸位置和折叠位置之间的移动,并且可以包括 用于选择性地将键盘保持在延伸位置或折叠位置的一个或多个锁。

    Method and system for conserving power and improving usability for personal computers with remote startup features
    59.
    发明授权
    Method and system for conserving power and improving usability for personal computers with remote startup features 有权
    节省电力的方法和系统,提高具有远程启动功能的个人电脑的可用性

    公开(公告)号:US06687348B2

    公开(公告)日:2004-02-03

    申请号:US09991007

    申请日:2001-11-16

    CPC classification number: G06F1/3209 H04L12/12 H04M11/007 H04M15/06 Y02D50/40

    Abstract: A method for remotely powering up a computer, includes: receiving a telephone call by a device coupled to a powered down computer; determining an originator's telephone number for the telephone call; determining if the originator's telephone number matches one of a plurality of authorized telephone numbers; and powering up the computer if the originator's telephone number matches one of the plurality of authorized telephone numbers. The method and system utilizes the well known “Caller-ID” technology to determine the originator's telephone number for a telephone call received by a modem coupled to the computer. If there is no match, the computer remains in a powered down state. In this manner, the system discriminates between the received telephone calls, and avoids powering up the computer when the received call is not for this purpose. This avoids wasting power.

    Abstract translation: 用于远程为计算机供电的方法包括:通过耦合到掉电计算机的设备接收电话呼叫; 确定电话的发起人的电话号码; 确定发起者的电话号码是否匹配多个授权电话号码中的一个; 以及如果所述发起者的电话号码与所述多个授权电话号码中的一个匹配,则对所述计算机加电。 该方法和系统利用公知的“来电显示”技术来确定由耦合到该计算机的调制解调器接收的电话呼叫的发起者的电话号码。 如果没有匹配,计算机将保持关机状态。 以这种方式,系统识别接收的电话呼叫,并且当接收的呼叫不是为此目的而避免计算机上电。 这样可以避免浪费电力。

    Method for improving personal computer reliability for systems that use certain power saving schemes
    60.
    发明授权
    Method for improving personal computer reliability for systems that use certain power saving schemes 有权
    提高使用某些省电方案的系统的个人计算机可靠性的方法

    公开(公告)号:US06510528B1

    公开(公告)日:2003-01-21

    申请号:US09464462

    申请日:1999-12-14

    CPC classification number: G06F11/106

    Abstract: A periodic system “wake-up” is implemented during S1, S2 or S3 states utilizing a hardware timer. A memory scrubbing routine is initiated that reads out all memory locations and writes back any memory locations that have single bit (correctable) Error Correction Code errors. This procedure minimizes the chances of a multiple bit error build up over time that may cause an unrecoverable error. The scrubbing routine is invoked whenever the system is brought out of S1, S2, or S3 state to insure that there are no single bit errors present when full system operation is resumed.

    Abstract translation: 在使用硬件定时器的S1,S2或S3状态期间实现周期性系统“唤醒”。 启动内存清理例程,读取所有存储器位置并写入具有单个位(可校正)错误更正代码错误的任何存储器位置。 此过程可以最大程度地减少可能导致不可恢复错误的多个位错误累积的可能性。 每当系统从S1,S2或S3状态退出时,将调用擦除程序,以确保在完全系统操作恢复时不存在单个位错误。

Patent Agency Ranking