Installation of black box for trusted component for digital rights management (DRM) on computing device
    1.
    发明授权
    Installation of black box for trusted component for digital rights management (DRM) on computing device 有权
    在计算设备上安装用于数字版权管理(DRM)的受信任组件的黑盒

    公开(公告)号:US08136166B2

    公开(公告)日:2012-03-13

    申请号:US11516813

    申请日:2006-09-06

    IPC分类号: G06F21/02 H04L29/06 H04L9/30

    CPC分类号: G06F21/10 G06F2221/0797

    摘要: To install a black box on a computing device, an administrator has access to the computing device and queries same for machine properties thereof. The administrator sends the machine properties of the computing device to a black box server as part of a request for a new black box for the computing device. The black box server in response constructs the new black box based in part on the machine properties so as to tie the new black box to the computing device, and delivers the new black box to the administrator. The administrator thereafter installs the new black box on the computing device. The administrator may include an activation provider running on the computing device and an activation manager in communication with the activation provider. The administrator may also deactivate the black box if it determines that the black box is no longer trustworthy.

    摘要翻译: 要在计算设备上安装黑盒子,管理员可以访问计算设备,并对其机器属性进行查询。 管理员将计算设备的机器属性发送到黑盒服务器,作为计算设备的新黑盒的请求的一部分。 黑匣子服务器在响应中构建了新的黑匣子,部分基于机器属性,以便将新的黑盒子绑定到计算设备,并将新的黑盒子交给管理员。 然后管理员将新的黑盒子安装在计算设备上。 管理员可以包括在计算设备上运行的激活提供者和与激活提供者通信的激活管理器。 如果确定黑匣子不再值得信任,管理员也可以取消激活黑匣子。

    Updating trusted root certificates on a client computer
    4.
    发明授权
    Updating trusted root certificates on a client computer 有权
    在客户端计算机上更新受信任的根证书

    公开(公告)号:US06816900B1

    公开(公告)日:2004-11-09

    申请号:US09542669

    申请日:2000-04-04

    IPC分类号: G06F15173

    摘要: An update process is used to update root certificates in a root certificate store of a client computer, maintaining the integrity of the existing root certificates as well as any new root certificates. In one embodiment, the root certificate store is updated by adding root certificates to the store, removing root certificates from the store, or modifying usage restrictions of root certificates in the store. A cryptographically signed message including a certificate trust list, as well as any new root certificates to be added to the root certificate store, is accessed by an update root control to update the root certificates in the root certificate store. The update root control verifies the integrity of the message, and thus the integrity of the certificate trust list contained therein. Once such integrity is verified, the update root control proceeds to update the root certificate store in accordance with the information in the certificate trust list. In another embodiment, root certificates in the root certificate store are updated when a World Wide Web web page is accessed by the client. A check is made during the access as to whether the client's root certificate store should be updated (e.g., a new root certificate is needed in order to access the web page). If the store should be updated, then the client is redirected to another web page that hosts the update root control. The update root control executes to update the client's certificate store, and then redirects the client back to the originally requested web page.

    摘要翻译: 更新过程用于更新客户端计算机的根证书库中的根证书,维护现有根证书的完整性以及任何新的根证书。 在一个实施例中,通过向存储添加根证书来更新根证书存储,从商店中移除根证书,或修改存储库中根证书的使用限制。 包含证书信任列表以及要添加到根证书存储区的任何新根证书的加密签名消息由更新根控制器访问,以更新根证书存储库中的根证书。 更新根控制验证消息的完整性,从而验证其中包含的证书信任列表的完整性。 一旦验证完整性,更新根控制就会根据证书信任列表中的信息进行更新根证书存储。 在另一个实施例中,当客户端访问万维网网页时,更新根证书存储库中的根证书。 在访问期间检查客户端的根证书存储是否应该被更新(例如,为了访问网页需要新的根证书)。 如果应该更新商店,那么客户端将重定向到另一个托管更新根控制的网页。 执行更新根控制以更新客户端的证书存储,然后将客户端重定向回原来请求的网页。

    Installation of black box for trusted component for digital rights management (DRM) on computing device
    5.
    发明授权
    Installation of black box for trusted component for digital rights management (DRM) on computing device 有权
    在计算设备上安装用于数字版权管理(DRM)的受信任组件的黑盒

    公开(公告)号:US07152245B2

    公开(公告)日:2006-12-19

    申请号:US10274630

    申请日:2002-10-21

    CPC分类号: G06F21/10 G06F2221/0797

    摘要: To install a black box on a computing device, an administrator has access to the computing device and queries same for machine properties thereof. The administrator sends the machine properties of the computing device to a black box server as part of a request for a new black box for the computing device. The black box server in response constructs the new black box based in part on the machine properties so as to tie the new black box to the computing device, and delivers the new black box to the administrator. The administrator thereafter installs the new black box on the computing device. The administrator may include an activation provider running on the computing device and an activation manager in communication with the activation provider. The administrator may also deactivate the black box if it determines that the black box is no longer trustworthy.

    摘要翻译: 要在计算设备上安装黑盒子,管理员可以访问计算设备,并对其机器属性进行查询。 管理员将计算设备的机器属性发送到黑盒服务器,作为计算设备的新黑盒的请求的一部分。 黑匣子服务器在响应中构建了新的黑匣子,部分基于机器属性,以便将新的黑盒子绑定到计算设备,并将新的黑盒子交给管理员。 然后管理员将新的黑盒子安装在计算设备上。 管理员可以包括在计算设备上运行的激活提供者和与激活提供者通信的激活管理器。 如果确定黑匣子不再值得信任,管理员也可以取消激活黑匣子。