Information processing terminal and status notification method
    72.
    发明授权
    Information processing terminal and status notification method 有权
    信息处理终端和状态通知方式

    公开(公告)号:US08086861B2

    公开(公告)日:2011-12-27

    申请号:US12305126

    申请日:2007-06-14

    IPC分类号: H04L9/00 H04L9/32

    摘要: The present invention aims at providing an information processing terminal, a status notification system, and a status notification method that can protect both privacy and security when a status of the information processing terminal is notified to a server. An information processing terminal 10 has a disclosure/nondisclosure determination section 1001 that determines a notifiable server for each entry; a log concealing section 1002 that conceals an entry; a multi-log measurement section 1003 that commands to update hashes as to a plurality of parties; a log configuration section 1004 that configures a log directed at a notified party and that causes performance of signing action; a verification request section 1005 that requests verification; a policy storage section 1006 that stores a policy used for determining a party that can be notified; and a log storage section 1007 for storing the entry. The information processing terminal 10 commands accumulation, into a hash, of entries subjected to processing suitable for each notified party, such as concealing operation.

    摘要翻译: 本发明旨在提供一种信息处理终端,状态通知系统和状态通知方法,当信息处理终端的状态被通知给服务器时,可以保护隐私和安全。 信息处理终端10具有确定每个条目的通知服务器的公开/非公开确定部分1001; 隐藏条目的日志隐藏部分1002; 命令更新关于多个方的散列的多对数测量部分1003; 日志配置部分1004,其配置针对被通知方的日志并导致签名动作的执行; 请求验证的验证请求部分1005; 存储用于确定可以通知的一方的策略的策略存储部分1006; 以及用于存储条目的日志存储部分1007。 信息处理终端10向诸如隐藏操作之类的处理适合于每个被通知方的处理的条目进行散列散列。

    INFORMATION SECURITY DEVICE AND INFORMATION SECURITY SYSTEM
    75.
    发明申请
    INFORMATION SECURITY DEVICE AND INFORMATION SECURITY SYSTEM 有权
    信息安全设备和信息安全系统

    公开(公告)号:US20100332820A1

    公开(公告)日:2010-12-30

    申请号:US12865894

    申请日:2009-02-23

    IPC分类号: H04L9/00

    摘要: The present invention provides a migration apparatus that realizes safe migration of data between devise that use different encryption algorithms and different security authentication levels. The fourth electronic terminal device 2502 sends, to the migration authority 2501, a request for migration of a virtual machine to the fifth electronic terminal device 2503. If the fifth electronic terminal device 2503 is not an illegitimate device, the migration authority 2501 sends a migration request to the fifth electronic terminal device 2503. The fifth electronic terminal device 2503 sends, to the migration authority 2501, a digital signature and so on, together with the request. The migration authority 2501 makes a judgment. If the result is “OK”, the migration authority 2501 sends the result “OK” to the fifth electronic terminal device 2503. The fourth electronic terminal device 2502 encrypts a migration package and sends the encrypted migration package to the migration authority 2501, and sends the virtual machine to the fifth electronic terminal device 2503.

    摘要翻译: 本发明提供了一种迁移装置,其实现了使用不同加密算法和不同安全认证级别的设备之间的数据的安全迁移。 第四电子终端装置2502向迁移机构2501发送虚拟机迁移到第五电子终端装置2503的请求。如果第五电子终端装置2503不是非法装置,则迁移机构2501发送迁移 请求到第五电子终端装置2503.第五电子终端装置2503与请求一起发送到移动局2501的数字签名等。 迁移管理机构2501进行判断。 如果结果为“OK”,则迁移机构2501将结果“OK”发送到第五电子终端装置2503.第四电子终端装置2502对迁移包进行加密,并将加密的迁移包发送到迁移机构2501,并发送 虚拟机到第五电子终端设备2503。

    INFORMATION TERMINAL, SECURITY DEVICE, DATA PROTECTION METHOD, AND DATA PROTECTION PROGRAM
    77.
    发明申请
    INFORMATION TERMINAL, SECURITY DEVICE, DATA PROTECTION METHOD, AND DATA PROTECTION PROGRAM 有权
    信息终端,安全设备,数据保护方法和数据保护程序

    公开(公告)号:US20100011225A1

    公开(公告)日:2010-01-14

    申请号:US12376195

    申请日:2007-12-26

    申请人: Hisashi Takayama

    发明人: Hisashi Takayama

    IPC分类号: G06F21/24 G06F12/14

    摘要: An information terminal that decrypts sealed data without returning program data after update to the state before update. The information terminal includes update certificate storage unit 102 storing an update certificate for certifying update of the program data to be executed by CPU 101, and a selection unit 103 which, when the CPU 101 is to execute program data, judges whether or not digest of the post-update program data in the update certificate matches digest of the program data to be executed, and selects digest of the pre-update program data in the update certificate when it judges that they match. The CPU 101 executes the post-update program data. The information terminal further includes a security device that stores an extend value of a program data digest when the pre-update program data is executed by the CPU according to a request from the selection unit 103.

    摘要翻译: 一种信息终端,在更新到更新之前的状态时,将密码数据解密而不返回程序数据。 信息终端包括更新证书存储单元102,存储用于验证要由CPU 101执行的程序数据的更新的更新证书;以及选择单元103,当CPU 101执行程序数据时,判断是否消除 更新证书中的更新后程序数据与要执行的程序数据的摘要相匹配,并且当判断为匹配时,选择更新证书中的更新前程序数据的摘要。 CPU 101执行更新后程序数据。 信息终端还包括安全装置,当根据来自选择单元103的请求由CPU执行预更新程序数据时,存储程序数据摘要的扩展值。

    SECURE DEVICE, INFORMATION PROCESSING TERMINAL, SERVER, AND AUTHENTICATION METHOD
    79.
    发明申请
    SECURE DEVICE, INFORMATION PROCESSING TERMINAL, SERVER, AND AUTHENTICATION METHOD 审中-公开
    安全设备,信息处理终端,服务器和认证方法

    公开(公告)号:US20090287939A1

    公开(公告)日:2009-11-19

    申请号:US12096454

    申请日:2006-12-07

    摘要: A secure device can make contents of terminal application authentication information calculation a different complicated calculation process at each time while suppressing the processing load in the secure device and a card application code size to low values. When issuing of a terminal application (302) is requested from an application loader (301) to an application management unit (1011), an instruction content execution unit (1012) embeds authentication information used for calculation of an authentication key required for authentication with an application causing an information processing terminal (30) to perform a process, into the terminal application (302). A calculation complicating unit (1013) creates a calculation problem having a calculation result as an answer and embeds it as a part of the authentication information calculation into the terminal application (302). An authentication information calculation unit (1014) calculates authentication information with the calculation result to create an authentication key. An authentication processing unit (1032) performs authentication of the terminal application (302) by the authentication key. This does not complicate the calculation process while making the authentication information calculation of the terminal application (302) a different complicated calculation at each time.

    摘要翻译: 安全装置可以使终端应用认证信息的内容在每一时刻都能够计算不同的复杂计算过程,同时抑制安全装置中的处理负荷和卡应用程序代码大小到低值。 当从应用程序加载程序(301)向应用程序管理单元(1011)请求发出终端应用程序(302)时,指令内容执行单元(1012)将用于验证所需的认证密钥的认证信息嵌入到 使得信息处理终端(30)执行处理的应用到终端应用(302)中。 计算复杂单元(1013)产生具有计算结果作为答案的计算问题,并将其作为认证信息计算的一部分嵌入到终端应用程序(302)中。 认证信息计算单元(1014)使用计算结果计算认证信息以创建认证密钥。 认证处理单元(1032)通过认证密钥进行终端应用程序(302)的认证。 这不会使计算过程复杂化,同时使终端应用(302)的认证信息计算在每次都进行不同的复杂计算。

    Ticket management system, terminal device, ticket management server, register device, value conversion method, computer program, and recording medium
    80.
    发明授权
    Ticket management system, terminal device, ticket management server, register device, value conversion method, computer program, and recording medium 有权
    票务管理系统,终端设备,票据管理服务器,注册设备,价值转换方法,计算机程序和记录介质

    公开(公告)号:US07427022B2

    公开(公告)日:2008-09-23

    申请号:US10594060

    申请日:2005-03-31

    IPC分类号: G06K7/08

    摘要: A ticket management system is provided which can perform adjustments using a ticket to which non-updatable value information is assigned together with an electronic value, according to a payment form. The ticket management system includes an IC tag attached to a money ticket, a money ticket management server and a mobile terminal. The IC tag holds a money ticket ID for identifying the money ticket and reads the money ticket ID. The money ticket management server includes a storage unit, receives the money ticket ID from the mobile terminal and writes a valid money ticket ID to the storage unit. The mobile terminal includes a storage unit, acquires the money ticket ID held in the IC tag, transmits the acquired money ticket ID to the money ticket management server, and writes amount information of the money ticket identified by the valid money ticket ID to the storage unit.

    摘要翻译: 提供了一种票据管理系统,其可以根据付款形式使用不可更新价值信息被分配到电子票据的票据进行调整。 票证管理系统包括附加到货币单,IC卡管理服务器和移动终端的IC标签。 IC标签保存用于识别钱票的钱票ID,并读取钱票ID。 货币单管理服务器包括存储单元,从移动终端接收到钱票ID,并向存储单元写入有效的钱票ID。 移动终端包括存储单元,获取保存在IC标签中的钱票ID,将所获取的钱票ID发送到钱票管理服务器,并且将由有效票证ID识别的钱票的金额信息写入到存储器 单元。