Message filter program for a communication device
    81.
    发明授权
    Message filter program for a communication device 有权
    用于通信设备的消息过滤器程序

    公开(公告)号:US08805426B2

    公开(公告)日:2014-08-12

    申请号:US13371156

    申请日:2012-02-10

    IPC分类号: H04W4/00

    摘要: A communication device is configured to receive messages. The communication device may comprise a display screen upon which messages are displayed. A microprocessor configured to execute at least one message management program on the communication device, filters incoming messages. The message management program comprising a message filter application filters received messages based on a comparison of sender identification data associated with a received message to approved sender identification data.

    摘要翻译: 通信设备被配置为接收消息。 通信设备可以包括显示消息的显示屏幕。 被配置为在通信设备上执行至少一个消息管理程序的微处理器,对输入消息进行过滤。 包括消息过滤器应用的消息管理程序基于与接收到的消息相关联的发送者标识数据与批准的发送者标识数据的比较来过滤接收到的消息。

    Systems and methods to securely generate shared keys
    83.
    发明授权
    Systems and methods to securely generate shared keys 有权
    安全生成共享密钥的系统和方法

    公开(公告)号:US08693695B2

    公开(公告)日:2014-04-08

    申请号:US13530593

    申请日:2012-06-22

    IPC分类号: H04L9/08

    摘要: A method for secure bidirectional communication between two systems is described. A first key pair and a second key pair are generated, the latter including a second public key that is generated based upon a shared secret. First and second public keys are sent to a second system, and third and fourth public keys are received from the second system. The fourth public key is generated based upon the shared secret. A master key for encrypting messages is calculated based upon a first private key, a second private key, the third public key and the fourth public key. For re-keying, a new second key pair having a new second public key and a new second private key is generated, and a new fourth public key is received. A new master key is calculated using elliptic curve calculations using the new second private key and the new fourth public key.

    摘要翻译: 描述了两个系统之间的安全双向通信的方法。 产生第一密钥对和第二密钥对,后者包括基于共享秘密生成的第二公钥。 第一和第二公钥被发送到第二系统,并且从第二系统接收第三和第四公钥。 第四个公钥是基于共享的秘密生成的。 基于第一私钥,第二私钥,第三公钥和第四公钥来计算用于加密消息的主密钥。 为了重新键入,生成具有新的第二公钥和新的第二私钥的新的第二密钥对,并接收新的第四公钥。 使用新的第二私钥和新的第四公钥,使用椭圆曲线计算来计算新的主密钥。

    Method and apparatus for contactless payment authentication
    84.
    发明授权
    Method and apparatus for contactless payment authentication 有权
    用于非接触式支付认证的方法和装置

    公开(公告)号:US08640950B2

    公开(公告)日:2014-02-04

    申请号:US13584096

    申请日:2012-08-13

    IPC分类号: G06K5/00

    摘要: The present disclosure relates generally to the authentication of contactless payments attempted by a device having embedded contactless payment functionality. In particular, the disclosure is directed to systems and methods that utilize authentication schemes that already exist on a device in which the contactless payment functionality is embedded. One example of such authentication schemes is the use of password protection to lock or unlock the device in which the contactless payment functionality is embedded. Using the password protection functionality may provide varying levels of authentication protection based on the desires of the user. A number of exemplary uses of such a method and apparatus are disclosed herein.

    摘要翻译: 本公开一般涉及具有嵌入式非接触式支付功能的设备尝试的非接触支付的认证。 具体地,本公开涉及利用已经存在于其中嵌入非接触式支付功能的设备的认证方案的系统和方法。 这种认证方案的一个示例是使用密码保护来锁定或解锁嵌入非接触式支付功能的设备。 使用密码保护功能可以基于用户的期望来提供不同级别的认证保护。 这里公开了这种方法和装置的许多示例性用途。

    Systems and methods for server aided processing of a signed receipt
    86.
    发明授权
    Systems and methods for server aided processing of a signed receipt 有权
    服务器辅助处理签收收据的系统和方法

    公开(公告)号:US08429413B2

    公开(公告)日:2013-04-23

    申请号:US13118513

    申请日:2011-05-30

    IPC分类号: H04L9/32 G06F7/04

    摘要: A method for processing security communication protocol compliant signed receipts at a mobile communication device linked to a host system is provided. The host system receives an email message linked to a digital signature, and a signed receipt. The host system redirects the signed receipt to the mobile communication device. The host system determines if the email message is available at the mobile communication device, and if not, the host system retrieves the email message and redirects the email message to the mobile communication device. The mobile communication device can then verify the signed receipt based on the email message. Optionally, rather than the email message, the host system retrieves and/or recalculates data elements associated with the email message and required to verify the signed receipt, and redirects these data elements to the mobile communication device. A related system is provided, as well as server computer program for the host system, and device computer program for the mobile communication device.

    摘要翻译: 提供了一种在与主机系统连接的移动通信设备处理与安全通信协议兼容的签名收据的方法。 主机系统接收与数字签名相关联的电子邮件消息和签名收据。 主机系统将签名的收据重定向到移动通信设备。 主机系统确定电子邮件消息在移动通信设备上是否可用,如果不是,则主机系统检索电子邮件消息并将该电子邮件消息重定向到移动通信设备。 然后,移动通信设备可以基于电子邮件消息来验证签名的收据。 可选择地,主机系统而不是电子邮件消息检索和/或重新计算与电子邮件消息相关联的数据元素,并且需要验证签名的收据,并将这些数据元素重定向到移动通信设备。 提供了相关系统,以及用于主机系统的服务器计算机程序,以及用于移动通信设备的设备计算机程序。

    Transmission of status updates responsive to status of recipient application
    87.
    发明授权
    Transmission of status updates responsive to status of recipient application 有权
    响应于收件人应用程序的状态传输状态更新

    公开(公告)号:US08429236B2

    公开(公告)日:2013-04-23

    申请号:US12645873

    申请日:2009-12-23

    IPC分类号: G06F15/16 G06F12/00

    摘要: Selecting and modifying the transmission rates and sizes of status update messages transmitted by a mobile communications device to a recipient application based on use of the updates by the recipient application improves resource utilization or accuracy. During one mode of operation, a mobile communications device transmits status messages using a conservative message transmission mode. This allows the mobile communications device to transmit a greater number of status updates for future processing by the recipient application while conserving resources. When the recipient application is actively processing status updates from the mobile communications device, the mobile communications device transmits the status messages using an accelerated message transmission mode with a different number of status updates in each status message and different delay between status messages, which may reduce delay or improve accuracy. Similarly, the mobile communications device may reduce the number of status updates transmitted by applying algorithm-based filters described herein based on the expected usage by the recipient application.

    摘要翻译: 基于使用接收方应用的更新,选择和修改由移动通信设备发送到接收方应用的状态更新消息的传输速率和大小可提高资源利用率或准确性。 在一种操作模式中,移动通信设备使用保守消息传输模式发送状态消息。 这允许移动通信设备发送更多数量的状态更新,以供接收应用程序的将来处理同时节省资源。 当接收者应用程序正在主动地处理来自移动通信设备的状态更新时,移动通信设备使用每个状态消息中具有不同数量的状态更新的加速消息传输模式来发送状态消息,并且可以减少状态消息之间的不同延迟 延迟或提高准确性。 类似地,移动通信设备可以基于接收者应用的预期使用来减少通过应用基于算法的过滤器发送的状态更新的数量。

    GENERATING STATE-DRIVEN ROLE-BASED LANDING PAGES
    88.
    发明申请
    GENERATING STATE-DRIVEN ROLE-BASED LANDING PAGES 审中-公开
    基于状态驱动的基于角色的登陆页面

    公开(公告)号:US20130086479A1

    公开(公告)日:2013-04-04

    申请号:US13459953

    申请日:2012-04-30

    IPC分类号: G06F3/01 G06F15/16 G06F21/24

    CPC分类号: G06F17/30893 G06F21/6218

    摘要: A method, computer system, and computer program product for generating state-driven role-based landing pages. An enterprise application user in a secure enterprise application environment provides user-specified content relevant to the user's role in the enterprise, and when the user invokes an enterprise application, initial screens displayed by the enterprise application are displayed as landing pages using the user-specified content. The method commences by validating an enterprise application user using a user profile and a security model where the security model serves to distinguish permitted or allowed enterprise application user activities from denied enterprise application activities. Once validated, then the method identifies a user's role or roles, and further, identifies the user's selection of subscriptions (e.g., subscriptions pertaining to content related to the user's role). Given the user role and the user's selection of subscriptions, systems keep track of user states to use when populating landing pages with subscription content.

    摘要翻译: 一种用于生成国家驱动的基于角色的着陆页的方法,计算机系统和计算机程序产品。 安全企业应用程序环境中的企业应用程序用户提供与用户在企业中的角色相关的用户指定内容,当用户调用企业应用程序时,企业应用程序显示的初始屏幕将使用用户指定 内容。 该方法通过使用用户简档和安全模型用于将允许或允许的企业应用程序用户活动与被拒绝的企业应用程序活动区分开的安全模型进行验证来开始。 一旦验证,则该方法识别用户的角色或角色,并进一步识别用户对订阅的选择(例如,与用户角色相关的内容的订阅)。 考虑到用户角色和用户对订阅的选择,系统会跟踪用户在填写具有订阅内容的着陆页时使用的状态。

    System and method for associating message addresses with certificates
    89.
    发明授权
    System and method for associating message addresses with certificates 有权
    将消息地址与证书相关联的系统和方法

    公开(公告)号:US08402523B2

    公开(公告)日:2013-03-19

    申请号:US12788709

    申请日:2010-05-27

    IPC分类号: H04L29/00

    摘要: A system and method for associating message addresses with certificates, in which one or more secondary message addresses are identified and associated with a user-selected certificate that does not contain any e-mail addresses. In certain situations, a message may be encrypted using a certificate that does not contain an e-mail address that matches the e-mail address of the individual to which the message is to be sent, so long as the address to which the message is to be sent matches any of the message addresses associated with the certificate. The message addresses are saved in a data structure that resides in a secure data store on a computing device, such as a mobile device.

    摘要翻译: 用于将消息地址与证书相关联的系统和方法,其中识别一个或多个辅助消息地址并与不包含任何电子邮件地址的用户选择的证书相关联。 在某些情况下,可以使用不包含与要发送消息的个人的电子邮件地址匹配的电子邮件地址的证书来加密消息,只要该消息的地址 要发送匹配与证书相关联的任何消息地址。 消息地址被保存在位于诸如移动设备的计算设备上的安全数据存储中的数据结构中。

    System and method for securely adding redundancy to an electronic message

    公开(公告)号:US08375282B2

    公开(公告)日:2013-02-12

    申请号:US12463878

    申请日:2009-05-11

    IPC分类号: H03M13/09 G09C5/00

    CPC分类号: H04L1/0083

    摘要: A system for adding a redundancy check to an electronic message to discourage tampering and facilitate identification of altered messages provides a communication device for composing message content, a messaging module with a formatting and encoding layer for encoding the message content with header information in a series of message blocks, and an encryption layer for calculating a redundancy check value and inserting the value in one or more locations within the series of message blocks according a rule defined by a characteristic of the message content or the header information, and encrypting the message for delivery to a recipient. Upon receipt, the recipient communication device decrypts the message, extracts the redundancy check value from the message, and compares a calculated redundancy check value with the extracted redundancy check value to determine if the message had been altered before receipt.