Account management in a system and method for providing code signing services
    62.
    发明申请
    Account management in a system and method for providing code signing services 审中-公开
    用于提供代码签名服务的系统和方法中的帐户管理

    公开(公告)号:US20070074033A1

    公开(公告)日:2007-03-29

    申请号:US11237726

    申请日:2005-09-29

    IPC分类号: H04L9/00

    摘要: A system and method for providing code signing services to software application developers or to other individuals or entities that wish to have applications digitally signed. Signing of the applications may be required in order to enable the applications to access sensitive APIs and associated resources of a computing device when the applications are executed on the computing device. In one embodiment, a method of providing code signing services will comprise at least some steps relating to registering the entities that seek access to sensitive APIs as controlled by the code signing authority, and managing the accounts of the registered entities.

    摘要翻译: 一种用于向软件应用程序开发人员或希望对应用程序进行数字签名的其他个人或实体提供代码签名服务的系统和方法。 可能需要签署应用程序,以便在应用程序在计算设备上执行时,使应用程序能够访问计算设备的敏感API和相关资源。 在一个实施例中,提供代码签名服务的方法将包括至少一些步骤,其涉及登记由代码签名机构控制的敏感API的访问的实体,以及管理注册实体的帐户。

    System and method for providing code signing services
    63.
    发明申请
    System and method for providing code signing services 审中-公开
    用于提供代码签名服务的系统和方法

    公开(公告)号:US20070074031A1

    公开(公告)日:2007-03-29

    申请号:US11237724

    申请日:2005-09-29

    IPC分类号: H04L9/00

    CPC分类号: G06F21/629

    摘要: A system and method for providing code signing services to software application developers or to other individuals or entities that wish to have applications digitally signed. Signing of the applications may be required in order to enable the applications to access sensitive APIs and associated resources of a computing device when the applications are executed on the computing device. In one embodiment, a method of providing code signing services will comprise at least some steps relating to registering the entities that seek access to sensitive APIs as controlled by the code signing authority. These steps are performed in order to establish trust relationships with those entities. The method of providing code signing services will also comprise additional steps relating to receiving and processing the code signing requests from such entities.

    摘要翻译: 一种用于向软件应用程序开发人员或希望对应用程序进行数字签名的其他个人或实体提供代码签名服务的系统和方法。 可能需要签署应用程序,以便在应用程序在计算设备上执行时,使应用程序能够访问计算设备的敏感API和相关资源。 在一个实施例中,提供代码签名服务的方法将包括至少一些步骤,其涉及登记由代码签名机构控制的敏感API访问的实体。 执行这些步骤以便与这些实体建立信任关系。 提供代码签名服务的方法还将包括与从这些实体接收和处理代码签名请求相关的附加步骤。

    System and method for obscuring hand-held device data traffic information
    64.
    发明申请
    System and method for obscuring hand-held device data traffic information 有权
    遮挡手持设备数据流量信息的系统和方法

    公开(公告)号:US20070038820A1

    公开(公告)日:2007-02-15

    申请号:US11202786

    申请日:2005-08-11

    IPC分类号: G06F13/28

    摘要: Increasing security for a hand-held data processing device with communication functionality where such a device includes an access-ordered memory cache relating to communications carried out by the device. The hand-held data processing device has a locked state that is entered by the device receiving or initiating a trigger. On occurrence of the trigger to enter the locked state the memory cache is reordered so as to disrupt the access-ordering of the cache to obscure device traffic information and thus increase the security of the device in the locked state.

    摘要翻译: 提高具有通信功能的手持式数据处理设备的安全性,其中这样的设备包括与由设备执行的通信相关的访问有序的存储器高速缓存。 手持式数据处理装置具有被接收或发起触发的装置输入的锁定状态。 在发生触发器进入锁定状态时,存储器高速缓存被重新排序,以便中断高速缓存的访问排序以模糊设备交通信息,从而增加处于锁定状态的设备的安全性。

    Systems and methods to securely generate shared keys
    65.
    发明申请
    Systems and methods to securely generate shared keys 有权
    安全生成共享密钥的系统和方法

    公开(公告)号:US20050251680A1

    公开(公告)日:2005-11-10

    申请号:US11118236

    申请日:2005-04-29

    IPC分类号: H04L9/00 H04L9/30 H04L29/06

    摘要: A method for secure bidirectional communication between two systems is described. A first key pair and a second key pair are generated, the latter including a second public key that is generated based upon a shared secret. First and second public keys are sent to a second system, and third and fourth public keys are received from the second system. The fourth public key is generated based upon the shared secret. A master key for encrypting messages is calculated based upon a first private key, a second private key, the third public key and the fourth public key. For re-keying, a new second key pair having a new second public key and a new second private key is generated, and a new fourth public key is received. A new master key is calculated using elliptic curve calculations using the new second private key and the new fourth public key.

    摘要翻译: 描述了两个系统之间的安全双向通信的方法。 产生第一密钥对和第二密钥对,后者包括基于共享秘密生成的第二公钥。 第一和第二公钥被发送到第二系统,并且从第二系统接收第三和第四公钥。 第四个公钥是基于共享的秘密生成的。 基于第一私钥,第二私钥,第三公钥和第四公钥来计算用于加密消息的主密钥。 为了重新键入,生成具有新的第二公钥和新的第二私钥的新的第二密钥对,并接收新的第四公钥。 使用新的第二私钥和新的第四公钥,使用椭圆曲线计算来计算新的主密钥。

    System and method for generating reproducible session keys
    67.
    发明申请
    System and method for generating reproducible session keys 有权
    用于产生可重现会话密钥的系统和方法

    公开(公告)号:US20050254658A1

    公开(公告)日:2005-11-17

    申请号:US11058259

    申请日:2005-02-16

    摘要: A system and method for generating reproducible session keys in a wireless messaging system. The session key is generated based on a hash of a message itself, optionally concatenated with additional information. Since the local server stores the message, it can easily regenerate the same session key in response to each MORE request. The method of the invention can be implemented with the stored original message, a public key, and an algorithm for generating the session key based on a hash of the message.

    摘要翻译: 一种用于在无线消息收发系统中产生可再现会话密钥的系统和方法。 会话密钥基于消息本身的散列生成,可选地与附加信息连接。 由于本地服务器存储消息,因此可以根据每个MORE请求轻松地重新生成相同的会话密钥。 本发明的方法可以利用存储的原始消息,公共密钥和用于基于消息的散列来生成会话密钥的算法来实现。

    SYSTEM AND METHOD FOR REMOTE RESET OF PASSWORD AND ENCRYPTION KEY
    68.
    发明申请
    SYSTEM AND METHOD FOR REMOTE RESET OF PASSWORD AND ENCRYPTION KEY 有权
    远程复位密码和加密密钥的系统和方法

    公开(公告)号:US20070266258A1

    公开(公告)日:2007-11-15

    申请号:US11383369

    申请日:2006-05-15

    IPC分类号: H04L9/00

    摘要: A method for securing data and resetting a password using a content protection key is provided, in which the content protection key itself is protected by a password. A content protection key is also protected at a data storage device with a key encryption key generated in collaboration with an additional device such as a server. The server stores a private key required to regenerate the key encryption key, but this private key is not provided from the server to the data storage device; rather, a public key derived from the private key is provided by the server. The data storage device combines the received public key and a further private key to derive the key encryption key; the further private key itself is not stored by the data storage device, but rather its matching public key is stored. The content protection key is then encrypted using a password and the derived key encryption key. If the password is lost, data from the server and from the data storage device may be combined to recreate the key encryption key.

    摘要翻译: 提供了一种使用内容保护密钥保护数据和重置密码的方法,其中内容保护密钥本身由密码保护。 在数据存储设备上还保护内容保护密钥,其中使用与诸如服务器的附加设备协作生成的密钥加密密钥。 服务器存储重新生成密钥加密密钥所需的专用密钥,但该私钥没有从服务器提供给数据存储设备; 相反,由私钥导出的公钥由服务器提供。 数据存储装置将接收到的公开密钥和另外的私钥组合以导出密钥加密密钥; 另外的私钥本身不被数据存储设备存储,而是存储其匹配的公钥。 然后使用密码和派生密钥加密密钥对内容保护密钥进行加密。 如果密码丢失,则来自服务器和数据存储设备的数据可以被组合以重新创建密钥加密密钥。

    System and method of securely distributing keys for peer-to-peer usage
    70.
    发明申请
    System and method of securely distributing keys for peer-to-peer usage 审中-公开
    安全分发密钥以进行点对点使用的系统和方法

    公开(公告)号:US20070143612A1

    公开(公告)日:2007-06-21

    申请号:US11304611

    申请日:2005-12-16

    IPC分类号: H04L9/00

    CPC分类号: H04L9/083 H04L2209/80

    摘要: A system and method for generating keys that can be used for encrypting and decrypting PIN messages transmitted between mobile devices. In one embodiment, the method comprises defining a function f, where f(x,y)=f(y,x), and for each of first and second mobile devices, evaluating f with one of x and y having the value of the PIN of the respective mobile device. Each one of the first and second mobile devices can then compute a shared messaging key by evaluating f with the other of x and y having the value of the PIN of the other mobile device. The shared key can then be used specifically to encrypt and decrypt PIN messages transmitted between those two mobile devices.

    摘要翻译: 一种用于产生可用于加密和解密在移动设备之间传输的PIN消息的密钥的系统和方法。 在一个实施例中,该方法包括定义函数f,其中f(x,y)= f(y,x),并且对于第一和第二移动设备中的每一个,用x和y中的一个对 相应移动设备的PIN。 第一和第二移动设备中的每一个然后可以通过评估f,而x和y中的另一个具有另一移动设备的PIN的值来计算共享的消息传递密钥。 然后,共享密钥可以专门用于加密和解密在这两个移动设备之间传输的PIN消息。