User identity privacy in authorization certificates
    1.
    发明申请
    User identity privacy in authorization certificates 审中-公开
    授权证书中的用户身份隐私

    公开(公告)号:US20070005989A1

    公开(公告)日:2007-01-04

    申请号:US10549885

    申请日:2004-03-18

    IPC分类号: G06F12/14

    CPC分类号: G06F21/6254 G06F21/10

    摘要: The present invention relates to methods, devices, computer program products as well as a signal for providing privacy to a user in relation to data, which data can be a content identifier (cr_id) for identifying content. For that reason a usage right certificate (UR) generated in relation to the data, includes the data (cr_id), concealed user identifying information (for example by using (H(PK//RAN)) and random data (RAN)) enabling the verification of the user identity in the user identifying information. In this way a user is guaranteed privacy in relation to information, such as content he has purchased.

    摘要翻译: 本发明涉及方法,设备,计算机程序产品以及用于向用户提供关于数据的隐私的信号,哪些数据可以是用于识别内容的内容标识符(cr_id)。 为此,相对于数据生成的使用权证书(UR)包括数据(cr_id),隐藏的用户识别信息(例如通过使用(H(PK // RAN))和随机数据(RAN))使能 在用户识别信息中验证用户身份。 以这种方式,用户可以保证与信息有关的隐私,例如他购买的内容。

    Method and system for enabling remote message composition
    2.
    发明申请
    Method and system for enabling remote message composition 审中-公开
    启用远程消息组合的方法和系统

    公开(公告)号:US20060098841A1

    公开(公告)日:2006-05-11

    申请号:US10548251

    申请日:2004-03-01

    IPC分类号: G06K9/00

    摘要: A method of and server (100) for enabling composition of a message at a remote terminal (101). The method comprises generating an image comprising a plurality of symbols representing input means, the symbols having an associated particular visual characteristic which is mutually different for at least two of the symbols, transmitting the image for display on the remote terminal (101), receiving a sequence of coordinates from the remote terminal (101), reconstructing the message as a sequence of input means represented by the symbols comprised in the image at the received coordinates, constructing an authentication code as a sequence of visual characteristics associated with the symbols comprised in the image at the received coordinates, and accepting the message as authentic if the authentication code matches a predetermined sequence of visual characteristics.

    摘要翻译: 一种用于启用在远程终端(101)处的消息组合的方法和服务器(100)。 该方法包括生成包括表示输入装置的多个符号的图像,所述符号具有相关联的特定视觉特征,对于至少两个符号相互不同,发送用于在远程终端(101)上显示的图像,接收 将来自远程终端(101)的坐标序列重建为由接收到的坐标处的图像中包含的符号表示的输入装置的序列,构建认证码作为与包含在所述图像中的符号相关联的视觉特征序列 图像,并且如果认证码与预定的视觉特征序列匹配,则将该消息接受为真实的。

    RFID TAG
    3.
    发明申请
    RFID TAG 审中-公开
    RFID标签

    公开(公告)号:US20100154484A1

    公开(公告)日:2010-06-24

    申请号:US12296158

    申请日:2007-03-23

    IPC分类号: D06F35/00 H04Q5/22

    摘要: A radio frequency identification, RHD, device (116) for use at an article (114) is described that communicates information with a washing machine (100). The RFID device (116) comprises RFID circuitry (118), an antenna (120) connected to the RFID circuitry (118), as well as switching means (122) connected to any of the RFID circuitry (118) and the antenna (120) and configured to react to contact with a fluid (108) in the washing machine (100) by switching the RFID circuitry (118) from a first mode of operation to a second mode of operation. The two modes of operation comprise at least a respective first and second ability to communicate with the washing machine (100).

    摘要翻译: 描述了用于在物品(114)上使用的射频识别(RHD)装置(116),其与洗衣机(100)通信信息。 RFID设备(116)包括RFID电路(118),连接到RFID电路(118)的天线(120)以及连接到任何RFID电路(118)和天线(120)的开关装置(122) ),并且被配置为通过将RFID电路(118)从第一操作模式切换到第二操作模式来与洗衣机(100)中的流体(108)反应。 两种操作模式至少包括与洗衣机(100)通信的相应的第一和第二能力。

    Screen image authentication
    4.
    发明申请
    Screen image authentication 审中-公开
    屏幕图像认证

    公开(公告)号:US20070058835A1

    公开(公告)日:2007-03-15

    申请号:US10576313

    申请日:2004-10-14

    IPC分类号: G06K9/00

    CPC分类号: H04N1/32101 H04N2201/0418

    摘要: A method of verifying the authenticity of an image (1) rendered on a display screen (10) involves using a graphical representation of an authentication code (2) associated with the image. The graphical representation of the authentication code is also rendered on the display screen, while optional guide marks (3) may also be displayed. Both the image (1) and the associated authentication code (2) are read using a scanner (20), preferably a handheld linear scanner. The scanner calculates an authentication code based upon the image and compares the calculated authentication code with the authentication code read from the display.

    摘要翻译: 验证在显示屏幕(10)上呈现的图像(1)的真实性的方法涉及使用与图像相关联的认证码(2)的图形表示。 验证代码的图形表示也显示在显示屏上,而可选择的引导标记(3)也可以显示。 使用扫描器(20),优选地是手持式线性扫描器来读取图像(1)和相关联的认证码(2)。 扫描仪基于图像计算认证码,并将计算的认证码与从显示器读取的认证码进行比较。

    Method and device for authorizing content operations
    5.
    发明申请
    Method and device for authorizing content operations 审中-公开
    用于授权内容操作的方法和设备

    公开(公告)号:US20060021065A1

    公开(公告)日:2006-01-26

    申请号:US10531939

    申请日:2003-10-15

    摘要: Methods of and devices (D1) for authorizing an operation requested by a first user (P2) on a content item (C1) in accordance with a user right (UR1). The user right may identify the first user or a second user (P) and authorizes the user in question to perform the requested operation on the content item. If the user right identifies the second user, the operation is authorized upon receipt of information linking a user right of the first user and the user right of the second user. Preferably the information comprises one or more domain certificates (DC1, DC2) identifying the first and second users as members of the same authorized domain (AD). Preferably a content right (CR1) enabling the operation is used, whereby the user right authorizes the second user to employ the content right.

    摘要翻译: 用于根据用户权限(UR 1)授权第一用户(P 2)对内容项目(C 1)请求的操作的方法和设备(D 1)。 用户权限可以识别第一用户或第二用户(P)并授权有问题的用户对内容项目执行所请求的操作。 如果用户权利识别第二用户,则在接收到链接第一用户的用户权限和第二用户的用户权限的信息时,操作被授权。 优选地,信息包括将第一和第二用户标识为相同授权域(AD)的成员的一个或多个域证书(DC 1,DC 2)。 优选地,使用启用该操作的内容权限(CR 1),由此用户权限授权第二用户使用内容权限。

    Security display
    6.
    发明申请
    Security display 审中-公开
    安全显示

    公开(公告)号:US20070118482A1

    公开(公告)日:2007-05-24

    申请号:US10596459

    申请日:2004-12-13

    IPC分类号: G06Q99/00

    CPC分类号: G06F21/84

    摘要: A device (1) for decrypting encrypted images comprises an array of sensor elements (11) for sensing a first image, for example an encrypted image, and an array of display elements (12) for displaying a second image, for example a decrypted image. At least some display elements comprise integrated sensor elements, thus reducing the number of parts of the device. The integrated display/sensor elements (13) may be constituted by polymeric LED elements. The sensor function of the integrated elements may also be used for positioning the device relative to a terminal, and/or for checking a biometric feature of the user.

    摘要翻译: 用于解密加密图像的设备(1)包括用于感测第一图像(例如加密图像)的传感器元件阵列(11)和用于显示第二图像的显示元件阵列(12),例如解密图像 。 至少一些显示元件包括集成传感器元件,从而减少了设备的部件数量。 集成显示/传感器元件(13)可以由聚合物LED元件构成。 集成元件的传感器功能也可用于相对于终端定位设备,和/或用于检查用户的生物测定特征。

    Trusted display device for visual cryptography
    7.
    发明申请
    Trusted display device for visual cryptography 审中-公开
    用于视觉加密的可信显示设备

    公开(公告)号:US20060179407A1

    公开(公告)日:2006-08-10

    申请号:US10549369

    申请日:2004-03-15

    IPC分类号: G06F3/00

    CPC分类号: G09C5/00 G09G2300/023

    摘要: A trusted display device (1) for, upon being superimposed on an untrusted display (2), reconstructing a graphical message, said device comprising a display screen (1a) having a plurality of independently addressable pixels. A plurality of sensors (1c) are associated with at least a subset of the pixels of said display screen (1a) and arranged such that they, when the displays (1, 2) are superimposed, are able to detect optically encoded information presented by an underlying pixel of the untrusted display (2) and adapt the activation of its pixels based on said information sensed.

    摘要翻译: 一种信任的显示设备(1),用于在叠加在不可信的显示器(2)上时,重建图形消息,所述设备包括具有多个可独立寻址的像素的显示屏幕(1a)。 多个传感器(1c)与所述显示屏(1a)的像素的至少一个子集相关联并且被布置成使得它们在显示器(1,2)叠加时能够检测光学编码信息 由不可信显示器(2)的底层像素呈现,并且基于所感测的信息调整其像素的激活。

    Polynomial-based multi-user key generation and authentication method and system
    8.
    发明申请
    Polynomial-based multi-user key generation and authentication method and system 审中-公开
    基于多项式的多用户密钥生成和认证方法及系统

    公开(公告)号:US20050265550A1

    公开(公告)日:2005-12-01

    申请号:US10507190

    申请日:2003-02-14

    摘要: A method of generating a common secret between a first party and a second party, preferably devices (101-105) in a home network (100) that operate in accordance with a Digital Rights Management (DRM) framework. The devices calculate the common secret by evaluating the product of two polynomials P(x, y) and Q(x, z) using parameters previously distributed by a Trusted Third Party (TTP) and parameters obtained from the other party. Preferably the parties subsequently verify that the other party has generated the same secret using a zero-knowledge protocol or a commitment-based protocol. The method is particularly suitable for very low power devices such as Chip-In-Disc type devices.

    摘要翻译: 优选地,在第一方和第二方之间生成公共秘密的方法,优选地根据数字版权管理(DRM)框架操作的归属网络(100)中的设备(101-105)。 这些设备通过使用先前由可信第三方(TTP)分发的参数和从对方获得的参数来评估两个多项式P(x,y)和Q(x,z)的乘积来计算公共秘密。 优选地,各方随后使用零知识协议或基于承诺的协议来验证对方已经生成了相同的秘密。 该方法特别适用于非常低功率的器件,例如片内盘式器件。

    Divided rights in authorized domain
    9.
    发明申请
    Divided rights in authorized domain 审中-公开
    授权领域的分权

    公开(公告)号:US20060212400A1

    公开(公告)日:2006-09-21

    申请号:US10539358

    申请日:2003-11-21

    IPC分类号: G06Q99/00

    CPC分类号: G06F21/10

    摘要: To ensure that digital rights cannot be forged or tampered with, they can be digitally signed. However, this means that updating the digital rights is no longer possible, as this would invalidate the digital signature. The present invention proposes that the issuer of digital rights issues rights which are signed in elementary pieces, rather than as a whole. Rather than issuing a right to play back a piece of content three times, the provider issues for example three rights to play back the content once in a particular AD, of which two may be transferred to other domains. The digital rights are individually protected by signatures and it is no longer possible to forge digital rights. As an enhancement the rights that can be transferred are indicated as such and stored securely to prevent tampering. When the right is transferred, it must be signed by the person who originally received it.

    摘要翻译: 为确保数字权利不能被伪造或被篡改,可以进行数字签名。 然而,这意味着不再可能更新数字版权,因为这将使数字签名无效。 本发明提出数字版权发行人的签发单位,而不是整体签字。 提供者不是发布三次播放内容的权利,而是在特定广告中提供三个权利,例如播放内容一次的三个权限,其中两个可以转移到其他域。 数字权利由签名单独保护,不再可能伪造数字版权。 作为增强,可以转让的权利被这样表示并被安全地存储以防止篡改。 当权利被转移时,必须由最初收到的人签名。

    Hybrid device and person based authorized domain architecture
    10.
    发明申请
    Hybrid device and person based authorized domain architecture 有权
    混合设备和基于人员的授权域架构

    公开(公告)号:US20060190621A1

    公开(公告)日:2006-08-24

    申请号:US10565663

    申请日:2004-07-14

    IPC分类号: G06F15/16

    摘要: This invention relates to a system and a method of generating an Authorized Domain (AD) by selecting a domain identifier, and binding at least one user (P1, P, PN1), at least one device (D1, D2, . . . , DM), and at least one content item (C1, C2, . . . , CNZ) to the Authorized Domain (AD) given by the domain identifier (Domain ID). Hereby, a number of verified devices (D1, D2, . . . , DM) and a number of verified persons (P1, P2, . . . , PN1) that is authorized to access a content item of said Authorized Domain (100) is obtained. In this way, access to a content item of an authorized domain by a user operating a device is obtained either by verifying that the content item and the user is linked the same domain or by verifying that the device and the content item is linked to the same domain. Thereby, enhanced flexibility for one or more users when accessing content in an authorized domain is obtained while security of the content is still maintaining. This is further done in a simple, secure and reliable way.

    摘要翻译: 本发明涉及一种通过选择域标识符并绑定至少一个用户(P 1,P,PN 1)至少一个设备(D 1,D 2, ...,DM)以及由域标识符(域ID)给出的至少一个内容项(C 1,C 2,...,CNZ)到授权域(AD)。 因此,被许可验证的设备(D 1,D 2,...,DM)和被许可访问所述的内容项的许多验证人员(P 1,P 2,...,PN 1) 授权域(100)。 以这种方式,通过验证内容项目和用户被链接在同一个域上,或者通过验证设备和内容项目被链接到所述内容项目来获得由操作设备的用户访问授权域的内容项目 同一个域名 因此,在内容的安全性仍然保持的同时获得访问授权域中的内容时对于一个或多个用户的增强的灵活性。 这进一步以简单,安全和可靠的方式完成。