Method and system for accessing java applications
    1.
    发明授权
    Method and system for accessing java applications 失效
    访问java应用程序的方法和系统

    公开(公告)号:US06473759B1

    公开(公告)日:2002-10-29

    申请号:US09412170

    申请日:1999-10-05

    IPC分类号: G06F700

    摘要: Java methods contained in a Java class and method database are accessed by a non-Java application running on a local machine or a remote machine. The non-Java application generates a standard TCP/IP communication call for a method of a Java class in the database. A Java service server running on a Java VM on the local machine receives the method call and related parameter data and performs their processing including a conversion of the call and of related parameter data from a transport format into Java native data types. The converted data is used for invoking a Java method for execution by applying the method to the converted parameter data. The result data of the method execution is converted from the Java format into the transport format in which they are transmitted to the non-Java application.

    摘要翻译: 包含在Java类和方法数据库中的Java方法由在本地机器或远程机器上运行的非Java应用程序访问。 非Java应用程序为数据库中的Java类的方法生成标准TCP / IP通信调用。 在本地机器上的Java VM上运行的Java服务服务器接收方法调用和相关参数数据,并执行其处理,包括将调用和相关参数数据从传输格式转换为Java本机数据类型。 转换的数据用于通过将该方法应用于已转换的参数数据来调用Java方法来执行。 方法执行的结果数据从Java格式转换为传输到非Java应用程序的传输格式。

    System method and article of manufacture for accessing and processing smart card information
    2.
    发明授权
    System method and article of manufacture for accessing and processing smart card information 有权
    用于访问和处理智能卡信息的系统方法和制造

    公开(公告)号:US06481621B1

    公开(公告)日:2002-11-19

    申请号:US09443406

    申请日:1999-11-19

    IPC分类号: G06K500

    CPC分类号: H04L29/06 H04L69/08

    摘要: A system and method for processing information contained in a smart card (130) uses a local computer (100) on which a proxy server (120) is installed. The local computer is connected to a data communication network (110), such as the Internet, and comprises a network browser which is used to generate access requests to data stored on a smart card and in a local storage (122). The requests are received by an HTTP server (210) and passed to request brokers (214, 215, 216). In response to a request parsing operation access functions (226, 228, 340, 440, 350, 460) are activated for accessing the local storage and a smart card (130). Data read from a smart card may be inserted into a HTML document accessed in the local storage, and data from the local storage or from remote sources may be uploaded to a smart card. Data modifier means (232, 234, 236) are provided to translate data read from the smart card into a data format corresponding to a user interface, and for translating data to be uploaded to said smart card into a predetermined smart card data format. The proxy server may be readily adapted to any smart card data format, and it may provide data security functions and data compression/decompression facilities.

    摘要翻译: 用于处理包含在智能卡(130)中的信息的系统和方法使用其上安装有代理服务器(120)的本地计算机(100)。 本地计算机连接到诸如因特网的数据通信网络(110),并且包括用于生成对存储在智能卡上和本地存储器(122)中的数据的访问请求的网络浏览器。 所述请求由HTTP服务器(210)接收并被传递给请求代理(214,215,216)。 响应于请求解析操作访问功能(226,228,340,440,350,460)被激活以访问本地存储器和智能卡(130)。 从智能卡读取的数据可以插入到本地存储器中访问的HTML文档中,并且来自本地存储器或来自远程源的数据可以被上传到智能卡。 提供数据修改装置(232,234,236)以将从智能卡读取的数据转换为对应于用户界面的数据格式,并将用于上传到所述智能卡的数据转换成预定的智能卡数据格式。 代理服务器可以容易地适应于任何智能卡数据格式,并且它可以提供数据安全功能和数据压缩/解压缩设施。

    Method and system for secure pervasive access
    3.
    发明授权
    Method and system for secure pervasive access 有权
    安全普遍访问的方法和系统

    公开(公告)号:US06859879B2

    公开(公告)日:2005-02-22

    申请号:US09810354

    申请日:2001-03-16

    IPC分类号: H04L29/06 H04L29/08 G06F17/00

    摘要: The present invention relates to a client-server system having a security system for controlling access to application functions. The security system separated from the clients and the application functions routes all incoming requests created by various PVC-devices to a centralized security system providing an authentication component and a security component. The authentication component provides several authentication mechanisms which may be selected by information contained in the client's request. The authentication mechanism may be changed or extended without changing conditions on the client as well on the server or application side. The security component provides a security policy describing security requirements for accessing application functions which may be invoked by the security component. If the selected authentication mechanism succeeds and fulfills the security policy associated to that application function then the application function will be invoked by the security component.

    摘要翻译: 本发明涉及具有用于控制对应用功能的访问的安全系统的客户机 - 服务器系统。 与客户端分离的安全系统和应用功能将由各种PVC设备创建的所有传入请求路由到提供认证组件和安全组件的集中式安全系统。 认证组件提供可以由客户端请求中包含的信息选择的几种认证机制。 认证机制可以在客户端以及服务器或应用侧也不改变条件的情况下进行更改或扩展。 该安全组件提供了一个描述安全性要求的安全策略,用于访问可能由安全组件调用的应用程序功能。 如果所选择的认证机制成功并且满足与该应用功能相关联的安全策略,那么应用功能将被安全组件调用。

    Extended card file system
    4.
    发明授权
    Extended card file system 失效
    扩展卡文件系统

    公开(公告)号:US06612490B1

    公开(公告)日:2003-09-02

    申请号:US09465169

    申请日:1999-12-17

    IPC分类号: G06F1900

    摘要: An Extended SmartCard file system is proposed which resides in one flat file within the ISO file system of a SmartCard. A second file containing user information like size of the file system, owner information, and key fields is used to configure the file system driver dynamically. However, this file may be omitted if the file system driver is statically initialized. The nested file system of the present invention has the advantage that files can be fully dynamically accessed and edited without affecting the underlying ISO file layout, i.e. the outer fixed structure of the outer file system. Further, data integrity and consistency are achieved by a transaction oriented commit concept. Additionally, all security mechanisms of the underlying SmartCards in terms of data protection are fully maintained and are enhanced in cases of power loss or unexpected card removal as two distinct directories are provided for data management.

    摘要翻译: 提出了一种扩展SmartCard文件系统,它驻留在SmartCard的ISO文件系统中的一个平面文件中。 包含用户信息(如文件系统大小,所有者信息和关键字段)的第二个文件用于动态配置文件系统驱动程序。 但是,如果文件系统驱动程序被静态初始化,则该文件可能会被省略。 本发明的嵌套文件系统的优点在于可以完全动态地访问和编辑文件,而不影响底层的ISO文件布局,即外部文件系统的外部固定结构。 此外,通过面向事务的提交概念实现数据完整性和一致性。 此外,底层智能卡在数据保护方面的所有安全机制都得到充分维护,并且在为数据管理提供了两个不同的目录时,在断电或意外卡删除的情况下得到增强。