METHOD, SYSTEM AND SMART CARD READER FOR MANAGEMENT OF ACCESS TO A SMART CARD
    61.
    发明申请
    METHOD, SYSTEM AND SMART CARD READER FOR MANAGEMENT OF ACCESS TO A SMART CARD 有权
    用于管理智能卡的方法,系统和智能卡读取器

    公开(公告)号:US20120080524A1

    公开(公告)日:2012-04-05

    申请号:US13316642

    申请日:2011-12-12

    IPC分类号: G06K7/01

    摘要: The described embodiments relate generally to devices, methods and systems for managing access to a memory card, such as a smart card, by a plurality of accessing devices. Certain embodiments relate to a smart card reader for managing concurrent access to a smart card, wherein when a channel manager receives a close session request from a first accessing device, and a first session is open on a first channel for the first accessing device and a second session is open on a second channel for a second accessing device, the channel manager is configured to: issue a close channel command to the smart card to close the second channel; issue the close session request from the first accessing device to the smart card; and issue a further session request to the smart card to re-open the first channel, and continue the second session on the re-opened first channel.

    摘要翻译: 所描述的实施例一般涉及用于通过多个访问设备管理对诸如智能卡的存储卡的访问的设备,方法和系统。 某些实施例涉及用于管理对智能卡的并发访问的智能卡读卡器,其中当信道管理器从第一访问设备接收到关闭会话请求,并且第一会话在第一接入设备的第一信道上打开时,以及 第二会话在用于第二访问设备的第二频道上打开,频道管理器被配置为:向智能卡发出关闭频道命令以关闭第二频道; 发出从第一接入设备到智能卡的关闭会话请求; 并向智能卡发出另一个会话请求以重新打开第一个频道,并在重新打开的第一个频道上继续第二个会话。

    System and method for securing data
    62.
    发明授权
    System and method for securing data 有权
    用于保护数据的系统和方法

    公开(公告)号:US08130957B2

    公开(公告)日:2012-03-06

    申请号:US10984331

    申请日:2004-11-09

    IPC分类号: H04K1/00

    摘要: In accordance with the teachings described herein, systems and methods are provided for securing data for transmission to a wireless device. The disclosed systems and methods may include an electronic messaging system used to send and receive data over a first network and also used to forward data to a wireless device operable in a second network. The electronic messaging system may receive an electronic message encrypted with a first encryption algorithm and addressed to a message recipient in the first network, the message recipient having an associated wireless device operable in the second network. The electronic messaging system may determine that the electronic message is to be transported across the second network to the wireless device, and in response to determining that the electronic message is to be transported across the second network, encrypt the electronic message using a second encryption algorithm and transmit the encrypted message over the second network to the wireless device, with the second encryption algorithm being a stronger encryption algorithm than the first encryption algorithm.

    摘要翻译: 根据本文所描述的教导,提供了用于保护用于传输到无线设备的数据的系统和方法。 所公开的系统和方法可以包括用于通过第一网络发送和接收数据的电子消息系统,并且还用于将数据转发到在第二网络中可操作的无线设备。 电子消息传送系统可以接收利用第一加密算法加密并且寻址到第一网络中的消息接收者的电子消息,消息接收者具有可在第二网络中操作的相关联的无线设备。 电子消息系统可以确定电子消息将通过第二网络传输到无线设备,并且响应于确定电子消息要跨越第二网络传输,使用第二加密算法对电子消息进行加密 并且通过第二网络将加密的消息发送到无线设备,其中第二加密算法是比第一加密算法更强的加密算法。

    SYSTEM AND METHOD TO FORCE A MOBILE DEVICE INTO A SECURE STATE
    63.
    发明申请
    SYSTEM AND METHOD TO FORCE A MOBILE DEVICE INTO A SECURE STATE 有权
    将移动设备强加于安全状态的系统和方法

    公开(公告)号:US20120036582A1

    公开(公告)日:2012-02-09

    申请号:US13274964

    申请日:2011-10-17

    IPC分类号: G06F21/00

    摘要: Embodiments relate to systems and methods for implementation on a mobile device to force the mobile device into a secure state upon detection or determination of a triggering event. Once it is determined that a triggering event has occurred, each application operating on the mobile device is caused to immediately unreference sensitive objects and a secure garbage collection operation is performed upon the unreferenced sensitive objects to render data associated therewith unreadable. The mobile device is then caused to enter a secure state, in which the mobile device cannot be accessed without authorization. A microprocessor within the mobile device is configured to determine the existence of the triggering event according to a configuration data structure and to perform the secure garbage collection.

    摘要翻译: 实施例涉及用于在移动设备上实现的系统和方法,以在检测或确定触发事件时强制移动设备进入安全状态。 一旦确定已经发生触发事件,则导致在移动设备上操作的每个应用程序立即不敏感的对象,并且对未引用的敏感对象执行安全的垃圾回收操作,以使与其相关联的数据不可读。 然后使移动设备进入安全状态,在该状态下移动设备无法在未经授权的情况下被访问。 移动设备内的微处理器被配置为根据配置数据结构确定触发事件的存在并执行安全垃圾收集。

    Automated key management system and method
    65.
    发明授权
    Automated key management system and method 有权
    自动化密钥管理系统和方法

    公开(公告)号:US08023656B2

    公开(公告)日:2011-09-20

    申请号:US12404749

    申请日:2009-03-16

    IPC分类号: H04L9/00 G06F7/04

    摘要: A system and method for automatic key and certificate management is disclosed. In particular, a key store in a base computer contains both new and previously viewed cryptographic keys. In one embodiment, for each new key, if a corresponding certificate matches an existing certificate, the new certificate may be automatically downloaded to a mobile communications device without prompting a user.

    摘要翻译: 公开了一种自动密钥和证书管理的系统和方法。 特别地,基本计算机中的密钥存储器包含新的和先前查看的加密密钥。 在一个实施例中,对于每个新密钥,如果对应证书与现有证书匹配,则新证书可以被自动下载到移动通信设备而不提示用户。

    Wireless communication device with duress password protection and related method
    67.
    发明授权
    Wireless communication device with duress password protection and related method 有权
    无线通信设备具有胁迫密码保护及相关方法

    公开(公告)号:US07948938B2

    公开(公告)日:2011-05-24

    申请号:US10835260

    申请日:2004-04-30

    IPC分类号: H04Q7/00

    摘要: A wireless communication device (and its related method of operation) includes, if invoked, password protected access to data stored therewithin and/or to normal device operations and further includes duress password checking logic that automatically causes a duress message to be sent if a duress password has been entered. The duress message is preferably sent without maintaining any user accessible indication of such sending. It is also preferred that the password checking logic automatically cause an end-of-duress message to be sent if a normal password is entered after a duress password has been entered. A plurality of different duress passwords may be entered into a duress password portion of data memory in the device.

    摘要翻译: 无线通信设备(及其相关操作方法)如果被调用,则包含密码保护对其中存储的数据和/或正常设备操作的访问,并且还包括胁迫密码检查逻辑,如果胁迫则自动导致胁迫消息被发送 密码已输入。 优先发送胁迫消息,而不保持这种发送的任何用户可访问的指示。 如果在输入胁迫密码之后输入正常密码,则密码检查逻辑也优选地自动导致发送结束消息。 可以将多个不同的胁迫密码输入到设备中的数据存储器的胁迫密码部分。

    METHOD, SYSTEM AND SMART CARD READER FOR MANAGEMENT OF ACCESS TO A SMART CARD
    68.
    发明申请
    METHOD, SYSTEM AND SMART CARD READER FOR MANAGEMENT OF ACCESS TO A SMART CARD 有权
    用于管理智能卡的方法,系统和智能卡读取器

    公开(公告)号:US20110108624A1

    公开(公告)日:2011-05-12

    申请号:US13007868

    申请日:2011-01-17

    IPC分类号: G06K7/06

    摘要: The described embodiments relate generally to devices, methods and systems for managing access to a memory card, such as a smart card, by a plurality of accessing devices. Certain embodiments relate to a smart card reader (SCR) for managing concurrent access to a smart card by a plurality of accessing devices, the SCR comprising: a processor; a channel manager responsive to the processor for interfacing with the smart card; a communication interface responsive to the channel manager for communicating with the plurality of accessing devices; and wherein, when a session is open on a first channel between a first accessing device and the smart card and the channel manager is configured to issue an open channel command to the smart card to cause the smart card to open a second channel between the smart card and the second accessing device in response to the session request.

    摘要翻译: 所描述的实施例一般涉及用于通过多个访问设备管理对诸如智能卡的存储卡的访问的设备,方法和系统。 某些实施例涉及用于管理多个访问设备对智能卡的并发访问的智能卡读取器(SCR),该SCR包括:处理器; 响应于所述处理器与所述智能卡接口的频道管理器; 响应于所述信道管理器与所述多个接入设备进行通信的通信接口; 并且其中当在第一访问设备和所述智能卡之间的第一信道上打开会话并且所述频道管理器被配置为向所述智能卡发出开放频道命令以使所述智能卡在所述智能卡之间打开第二频道 卡和第二接入设备响应于会话请求。

    System and method for application authorization
    69.
    发明授权
    System and method for application authorization 有权
    系统和应用程序授权方法

    公开(公告)号:US07805755B2

    公开(公告)日:2010-09-28

    申请号:US10996406

    申请日:2004-11-26

    摘要: A method and system for authorization of applications executing on a device having a key store. Applications obtain an application-level ticket to permit access to one or more key values located in the key store. Each ticket is securely associated with an application and being generated on the determination that the application is a trusted application. Tickets are potentially associated with one key value in the key store, with a subset of key values in the key store, or with all key values in the key store. Access to key values by an application is possible independently of a user providing a password for each such access.

    摘要翻译: 一种用于在具有密钥存储的设备上执行的应用的授权的方法和系统。 应用程序获得一个应用程序级票证,以允许访问位于密钥存储区中的一个或多个密钥值。 每个票据与应用程序安全地相关联,并且在确定应用程序是可信应用程序时生成。 门票可能与密钥库中的一个密钥值相关联,密钥存储中的密钥值的子集或密钥存储中的所有密钥值。 可以独立于为每个这样的访问提供密码的用户访问应用的密钥值。

    SYSTEM AND METHOD FOR ASSOCIATING MESSAGE ADDRESSES WITH CERTIFICATES
    70.
    发明申请
    SYSTEM AND METHOD FOR ASSOCIATING MESSAGE ADDRESSES WITH CERTIFICATES 有权
    与证书相关的信息地址的系统和方法

    公开(公告)号:US20100235893A1

    公开(公告)日:2010-09-16

    申请号:US12788709

    申请日:2010-05-27

    IPC分类号: H04L29/06

    摘要: A system and method for associating message addresses with certificates, in which one or more secondary message addresses are identified and associated with a user-selected certificate. The secondary message addresses are saved in a data structure that resides in a secure data store on a computing device, such as a mobile device. When a message is to be encrypted and sent to an individual using a particular certificate, an address mismatch would not be detected so long as the address to which the message is to be sent matches any of the message addresses associated with the certificate. The message addresses associated with the certificate include any message addresses contained within the certificate itself (“primary message addresses”) as well as any secondary message addresses that have been subsequently associated with the certificate.

    摘要翻译: 用于将消息地址与证书相关联的系统和方法,其中识别一个或多个辅助消息地址并与用户选择的证书相关联。 辅助消息地址被保存在位于诸如移动设备的计算设备上的安全数据存储中的数据结构中。 当使用特定证书将消息加密并发送给个人时,只要要发送消息的地址与证书相关联的任何消息地址匹配,就不会检测到地址不匹配。 与证书相关联的消息地址包括证书本身(“主消息地址”)中包含的任何消息地址以及随后与证书相关联的任何辅助消息地址。