System and method for enabling bulk retrieval of certificates
    71.
    发明授权
    System and method for enabling bulk retrieval of certificates 有权
    允许批量检索证书的系统和方法

    公开(公告)号:US08301878B2

    公开(公告)日:2012-10-30

    申请号:US12194768

    申请日:2008-08-20

    IPC分类号: H04L29/06

    摘要: A system and method for searching and retrieving certificates, which may be used in the processing of encoded messages. In one embodiment, a certificate synchronization application is programmed to perform certificate searches by querying one or more certificate servers for all of the certificates on those certificate servers. If all of the certificates on a certificate server cannot be successfully retrieved using a single search query, due to a search quota on the certificate server being exceeded for example, the search is re-performed through multiple queries, each corresponding to a narrower subsearch. Embodiments described herein enable large amounts of certificates to be automatically searched for and retrieved from certificate servers, thereby minimizing the need for users to manually search for individual certificates.

    摘要翻译: 用于搜索和检索证书的系统和方法,其可以用于编码消息的处理。 在一个实施例中,证书同步应用程序被编程为通过向一个或多个证书服务器查询那些证书服务器上的所有证书来执行证书搜索。 如果证书服务器上的所有证书都无法使用单个搜索查询成功检索,因为例如超过了证书服务器上的搜索配额,则通过多个查询重新执行搜索,每个查询对应于较窄的子搜索。 本文描述的实施例能够从证书服务器自动搜索和检索大量证书,从而最小化对用户手动搜索单个证书的需要。

    MESSAGE-HANDLING SERVER AND METHOD FOR HANDLING SECURE MESSAGE ATTACHMENTS FOR A MOBILE DEVICE
    73.
    发明申请
    MESSAGE-HANDLING SERVER AND METHOD FOR HANDLING SECURE MESSAGE ATTACHMENTS FOR A MOBILE DEVICE 有权
    消息处理服务器和用于处理移动设备的安全消息附件的方法

    公开(公告)号:US20120159164A1

    公开(公告)日:2012-06-21

    申请号:US13285548

    申请日:2011-10-31

    IPC分类号: G06F15/16 H04W8/00 H04L9/28

    摘要: A secure message that includes an attachment is received at a server. The secure message may have a secure layer that indicates that the secure message is at least digitally signed. The secure message may be provided without the attachment to the mobile device over a wireless network. A request may be received from the mobile device to access the attachment. The request may include an attachment identifier (ID) that identifies the attachment in accordance with a message-attachment indexing system. In response to the request to access the attachment, the server may perform an index lookup to find the attachment based upon the attachment ID, may look through the secure layer of the secure message in order to locate the attachment within the secure message, and may render at least an initial portion of the attachment by the server in a format for viewing by the mobile device.

    摘要翻译: 在服务器处接收到包含附件的安全消息。 安全消息可以具有指示安全消息至少被数字签名的安全层。 可以在无需通过无线网络连接到移动设备的情况下提供安全消息。 可以从移动设备接收到访问附件的请求。 请求可以包括根据消息附着索引系统标识附件的附件标识符(ID)。 响应于访问附件的请求,服务器可以基于附件ID执行索引查找以查找附件,可以通过安全消息的安全层来查看安全消息中的附件,并且可以 以服务器的至少一个附件的初始部分呈现为由移动设备观看的格式。

    System and method for securing data
    74.
    发明授权
    System and method for securing data 有权
    用于保护数据的系统和方法

    公开(公告)号:US08130957B2

    公开(公告)日:2012-03-06

    申请号:US10984331

    申请日:2004-11-09

    IPC分类号: H04K1/00

    摘要: In accordance with the teachings described herein, systems and methods are provided for securing data for transmission to a wireless device. The disclosed systems and methods may include an electronic messaging system used to send and receive data over a first network and also used to forward data to a wireless device operable in a second network. The electronic messaging system may receive an electronic message encrypted with a first encryption algorithm and addressed to a message recipient in the first network, the message recipient having an associated wireless device operable in the second network. The electronic messaging system may determine that the electronic message is to be transported across the second network to the wireless device, and in response to determining that the electronic message is to be transported across the second network, encrypt the electronic message using a second encryption algorithm and transmit the encrypted message over the second network to the wireless device, with the second encryption algorithm being a stronger encryption algorithm than the first encryption algorithm.

    摘要翻译: 根据本文所描述的教导,提供了用于保护用于传输到无线设备的数据的系统和方法。 所公开的系统和方法可以包括用于通过第一网络发送和接收数据的电子消息系统,并且还用于将数据转发到在第二网络中可操作的无线设备。 电子消息传送系统可以接收利用第一加密算法加密并且寻址到第一网络中的消息接收者的电子消息,消息接收者具有可在第二网络中操作的相关联的无线设备。 电子消息系统可以确定电子消息将通过第二网络传输到无线设备,并且响应于确定电子消息要跨越第二网络传输,使用第二加密算法对电子消息进行加密 并且通过第二网络将加密的消息发送到无线设备,其中第二加密算法是比第一加密算法更强的加密算法。

    SYSTEM AND METHOD TO FORCE A MOBILE DEVICE INTO A SECURE STATE
    75.
    发明申请
    SYSTEM AND METHOD TO FORCE A MOBILE DEVICE INTO A SECURE STATE 有权
    将移动设备强加于安全状态的系统和方法

    公开(公告)号:US20120036582A1

    公开(公告)日:2012-02-09

    申请号:US13274964

    申请日:2011-10-17

    IPC分类号: G06F21/00

    摘要: Embodiments relate to systems and methods for implementation on a mobile device to force the mobile device into a secure state upon detection or determination of a triggering event. Once it is determined that a triggering event has occurred, each application operating on the mobile device is caused to immediately unreference sensitive objects and a secure garbage collection operation is performed upon the unreferenced sensitive objects to render data associated therewith unreadable. The mobile device is then caused to enter a secure state, in which the mobile device cannot be accessed without authorization. A microprocessor within the mobile device is configured to determine the existence of the triggering event according to a configuration data structure and to perform the secure garbage collection.

    摘要翻译: 实施例涉及用于在移动设备上实现的系统和方法,以在检测或确定触发事件时强制移动设备进入安全状态。 一旦确定已经发生触发事件,则导致在移动设备上操作的每个应用程序立即不敏感的对象,并且对未引用的敏感对象执行安全的垃圾回收操作,以使与其相关联的数据不可读。 然后使移动设备进入安全状态,在该状态下移动设备无法在未经授权的情况下被访问。 移动设备内的微处理器被配置为根据配置数据结构确定触发事件的存在并执行安全垃圾收集。

    Automated key management system and method
    77.
    发明授权
    Automated key management system and method 有权
    自动化密钥管理系统和方法

    公开(公告)号:US08023656B2

    公开(公告)日:2011-09-20

    申请号:US12404749

    申请日:2009-03-16

    IPC分类号: H04L9/00 G06F7/04

    摘要: A system and method for automatic key and certificate management is disclosed. In particular, a key store in a base computer contains both new and previously viewed cryptographic keys. In one embodiment, for each new key, if a corresponding certificate matches an existing certificate, the new certificate may be automatically downloaded to a mobile communications device without prompting a user.

    摘要翻译: 公开了一种自动密钥和证书管理的系统和方法。 特别地,基本计算机中的密钥存储器包含新的和先前查看的加密密钥。 在一个实施例中,对于每个新密钥,如果对应证书与现有证书匹配,则新证书可以被自动下载到移动通信设备而不提示用户。

    Wireless communication device with duress password protection and related method
    78.
    发明授权
    Wireless communication device with duress password protection and related method 有权
    无线通信设备具有胁迫密码保护及相关方法

    公开(公告)号:US07948938B2

    公开(公告)日:2011-05-24

    申请号:US10835260

    申请日:2004-04-30

    IPC分类号: H04Q7/00

    摘要: A wireless communication device (and its related method of operation) includes, if invoked, password protected access to data stored therewithin and/or to normal device operations and further includes duress password checking logic that automatically causes a duress message to be sent if a duress password has been entered. The duress message is preferably sent without maintaining any user accessible indication of such sending. It is also preferred that the password checking logic automatically cause an end-of-duress message to be sent if a normal password is entered after a duress password has been entered. A plurality of different duress passwords may be entered into a duress password portion of data memory in the device.

    摘要翻译: 无线通信设备(及其相关操作方法)如果被调用,则包含密码保护对其中存储的数据和/或正常设备操作的访问,并且还包括胁迫密码检查逻辑,如果胁迫则自动导致胁迫消息被发送 密码已输入。 优先发送胁迫消息,而不保持这种发送的任何用户可访问的指示。 如果在输入胁迫密码之后输入正常密码,则密码检查逻辑也优选地自动导致发送结束消息。 可以将多个不同的胁迫密码输入到设备中的数据存储器的胁迫密码部分。

    System and method for application authorization
    79.
    发明授权
    System and method for application authorization 有权
    系统和应用程序授权方法

    公开(公告)号:US07805755B2

    公开(公告)日:2010-09-28

    申请号:US10996406

    申请日:2004-11-26

    摘要: A method and system for authorization of applications executing on a device having a key store. Applications obtain an application-level ticket to permit access to one or more key values located in the key store. Each ticket is securely associated with an application and being generated on the determination that the application is a trusted application. Tickets are potentially associated with one key value in the key store, with a subset of key values in the key store, or with all key values in the key store. Access to key values by an application is possible independently of a user providing a password for each such access.

    摘要翻译: 一种用于在具有密钥存储的设备上执行的应用的授权的方法和系统。 应用程序获得一个应用程序级票证,以允许访问位于密钥存储区中的一个或多个密钥值。 每个票据与应用程序安全地相关联,并且在确定应用程序是可信应用程序时生成。 门票可能与密钥库中的一个密钥值相关联,密钥存储中的密钥值的子集或密钥存储中的所有密钥值。 可以独立于为每个这样的访问提供密码的用户访问应用的密钥值。

    SYSTEM AND METHOD FOR ASSOCIATING MESSAGE ADDRESSES WITH CERTIFICATES
    80.
    发明申请
    SYSTEM AND METHOD FOR ASSOCIATING MESSAGE ADDRESSES WITH CERTIFICATES 有权
    与证书相关的信息地址的系统和方法

    公开(公告)号:US20100235893A1

    公开(公告)日:2010-09-16

    申请号:US12788709

    申请日:2010-05-27

    IPC分类号: H04L29/06

    摘要: A system and method for associating message addresses with certificates, in which one or more secondary message addresses are identified and associated with a user-selected certificate. The secondary message addresses are saved in a data structure that resides in a secure data store on a computing device, such as a mobile device. When a message is to be encrypted and sent to an individual using a particular certificate, an address mismatch would not be detected so long as the address to which the message is to be sent matches any of the message addresses associated with the certificate. The message addresses associated with the certificate include any message addresses contained within the certificate itself (“primary message addresses”) as well as any secondary message addresses that have been subsequently associated with the certificate.

    摘要翻译: 用于将消息地址与证书相关联的系统和方法,其中识别一个或多个辅助消息地址并与用户选择的证书相关联。 辅助消息地址被保存在位于诸如移动设备的计算设备上的安全数据存储中的数据结构中。 当使用特定证书将消息加密并发送给个人时,只要要发送消息的地址与证书相关联的任何消息地址匹配,就不会检测到地址不匹配。 与证书相关联的消息地址包括证书本身(“主消息地址”)中包含的任何消息地址以及随后与证书相关联的任何辅助消息地址。