Merging external NVRAM with full disk encryption
    1.
    发明授权
    Merging external NVRAM with full disk encryption 有权
    将外部NVRAM与全磁盘加密合并

    公开(公告)号:US09323956B2

    公开(公告)日:2016-04-26

    申请号:US11865049

    申请日:2007-09-30

    IPC分类号: G06F12/14 G06F21/80 G06F21/79

    CPC分类号: G06F21/80 G06F21/79

    摘要: Methods and arrangements for managing a flash drive, hard disk, or connection between the two, in a manner to ensure that sensitive data is not decrypted at any time when it would be vulnerable. Accordingly, in a first implementation, the data may preferably be encrypted as it first goes into a flash drive and decrypted when it comes out of the flash drive. In another implementation, the flash drive may be logically bound to the hard disk, so that they would both use the same encryption key. In yet another implementation, if a hard disk is moved to another system, then the flash drive may also preferably be simultaneously moved.

    摘要翻译: 用于管理闪存驱动器,硬盘或两者之间的连接的方法和布置,以确保敏感数据在易受攻击的任何时候不被解密。 因此,在第一实现中,数据可以优选地被加密,因为它们首先进入闪存驱动器并且当它从闪存驱动器出来时被解密。 在另一个实现中,闪存驱动器可以逻辑地绑定到硬盘,使得它们都将使用相同的加密密钥。 在又一实施方式中,如果将硬盘移动到另一系统,则闪存驱动器也可以优选地同时移动。

    Audit trails for electronic financial transactions
    2.
    发明授权
    Audit trails for electronic financial transactions 有权
    审计跟踪电子金融交易

    公开(公告)号:US09015078B2

    公开(公告)日:2015-04-21

    申请号:US12748423

    申请日:2010-03-28

    摘要: An exemplary method includes transmitting, via a network interface, at least a currency amount in an attempt to confirm a financial transaction; responsive to the transmitting, receiving a confirmation indicator for the financial transaction; storing at least the currency amount in non-volatile memory; hashing at least the currency amount to generate a hash and storing the hash in a secure non-volatile memory; hashing at least the currency amount stored in the non-volatile memory to generate a verification hash; and in an attempt to verify at least the financial transaction, comparing the verification hash to the hash stored in the secure non-volatile memory. Various other apparatuses, systems, methods, etc., are also disclosed.

    摘要翻译: 一种示例性方法包括经由网络接口​​至少发送货币金额来尝试确认金融交易; 响应于发送,接收金融交易的确认指标; 将至少存储在非易失性存储器中的货币量; 至少散列货币量以产生散列并将散列存储在安全的非易失性存储器中; 至少散列存储在非易失性存储器中的货币量以产生验证散列; 并且尝试至少验证金融交易,将验证散列与存储在安全非易失性存储器中的散列进行比较。 还公开了各种其它装置,系统,方法等。

    Password management outside of a BIOS
    3.
    发明授权
    Password management outside of a BIOS 有权
    BIOS之外的密码管理

    公开(公告)号:US08566600B2

    公开(公告)日:2013-10-22

    申请号:US12040535

    申请日:2008-02-29

    IPC分类号: G06F21/00

    CPC分类号: G06F21/31 G06F21/575

    摘要: In accordance with at least one presently preferred embodiment of the present invention, there is broadly contemplated herein the managing of a POP not solely in the BIOS but at least partly in a more secure location. In accordance with a particularly preferred embodiment of the present invention, this location could be in a NVRAM (non-volatile random access memory) inside a TPM (trusted platform module). Most preferably, this location will contain code that the BIOS preferably will need to access and employ in order to complete the booting of the system.

    摘要翻译: 根据本发明的至少一个目前优选的实施例,这里广泛考虑到不仅在BIOS中管理POP,而且至少部分地在更安全的位置。 根据本发明的特别优选的实施例,该位置可以在TPM(可信平台模块)内的NVRAM(非易失性随机存取存储器)中。 最优选地,该位置将包含BIOS优选地需要访问和应用以便完成系统引导的代码。

    MANAGEMENT OF HARDWARE PASSWORDS
    6.
    发明申请
    MANAGEMENT OF HARDWARE PASSWORDS 有权
    硬件密码管理

    公开(公告)号:US20100162373A1

    公开(公告)日:2010-06-24

    申请号:US12341512

    申请日:2008-12-22

    IPC分类号: H04L9/32

    CPC分类号: G06F21/34

    摘要: In the context of computer systems, the generation of preboot passwords at a server instead of at a client. Preferably, preboot passwords generated at the server are distributed to the client, and a process is offered whereby a user can establish his/her own proxy, not known to the server, that can be used to release the stored passwords to the client hardware. Since the passwords are generated at the server, management of the passwords is greatly facilitated since they are generated at the site where they are stored. This also makes it easy to implement management features such as a group policy, since the password generation software will be able to make logical connections between users and hardware.

    摘要翻译: 在计算机系统的上下文中,在服务器而不是在客户端生成预引导密码。 优选地,在服务器处生成的预引导密码被分发给客户端,并且提供一个过程,由此用户可以建立他/她自己的代理(服务器不知道),可以用于将存储的密码释放到客户端硬件。 由于密码是在服务器上生成的,因此密码的管理因其在存储位置生成而大大方便。 这也使得容易实现诸如组策略的管理功能,因为密码生成软件将能够在用户和硬件之间进行逻辑连接。

    METHOD AND SYSTEM FOR ESTABLISHING NETWORK CONNECTIONS
    10.
    发明申请
    METHOD AND SYSTEM FOR ESTABLISHING NETWORK CONNECTIONS 失效
    建立网络连接的方法和系统

    公开(公告)号:US20080320135A1

    公开(公告)日:2008-12-25

    申请号:US12200781

    申请日:2008-08-28

    IPC分类号: G06F15/173

    CPC分类号: H04L69/40

    摘要: A method, computer readable medium and computer system for repairing a failed network connection between a client system and a network is disclosed. In a first aspect, the method preferably includes collecting real time connectivity information by the client system and utilizing the real time connectivity information by the client system to establish a connection with the network. In a second aspect, a computer system coupled to a network includes at least one network adapter for monitoring and collecting real time connectivity information from the network, memory for storing the real time connectivity information, and a processor coupled to the memory and to the at least one network adapter, where the processor is configured to execute program instructions for utilizing the real time connectivity information to repair a failed network connection between the computer system and the network.

    摘要翻译: 公开了一种用于修复客户端系统和网络之间的故障网络连接的方法,计算机可读介质和计算机系统。 在第一方面,该方法优选地包括由客户端系统收集实时连接性信息,并利用客户端系统建立与网络的连接的实时连接信息。 在第二方面,耦合到网络的计算机系统包括至少一个网络适配器,用于监视和收集来自网络的实时连接信息,用于存储实时连接性信息的存储器以及耦合到存储器和处理器的处理器 至少一个网络适配器,其中所述处理器被配置为执行用于利用所述实时连接信息来修复所述计算机系统和所述网络之间的故障网络连接的程序指令。