DATA ENCRYPTION
    1.
    发明申请
    DATA ENCRYPTION 有权
    数据加密

    公开(公告)号:US20140082361A1

    公开(公告)日:2014-03-20

    申请号:US14114396

    申请日:2012-04-13

    IPC分类号: H04L9/32

    摘要: Public key encryption methods and apparatus are provided for encrypting secret data under a public key in a data processing system (1). The secret data is provided as a message (m) comprising at least one element of a pair of base groups G1, G2 satisfying a bilinear map ê: G1×G2→GT where GT is a target group. The message (m) is encrypted using said public key to produce an encrypted message (c). A consistency component (v) is generated using the encrypted message (c) and said bilinear map whereby the consistency component (v) permits validation of the encrypted message without revealing the encrypted message. The output ciphertext (ct) comprises the encrypted message (c) and the consistency component (v).

    摘要翻译: 提供公钥加密方法和装置,用于在数据处理系统(1)中的公共密钥下加密秘密数据。 提供秘密数据作为消息(m),其包括满足双线性映射ê:G1×G2→GT的一对基组G1,G2中的至少一个元素,其中GT是目标组。 使用所述公钥对消息(m)进行加密以产生加密消息(c)。 使用加密消息(c)和所述双线性映射生成一致性组件(v),由此一致性组件(v)允许加密消息的验证而不显示加密的消息。 输出密文(ct)包括加密消息(c)和一致性组件(v)。

    Transaction auditing for data security devices
    2.
    发明授权
    Transaction auditing for data security devices 有权
    数据安全设备的事务审计

    公开(公告)号:US08667287B2

    公开(公告)日:2014-03-04

    申请号:US13614985

    申请日:2012-09-13

    IPC分类号: G06F21/00

    CPC分类号: G06F21/62 G06F21/33 G06F21/55

    摘要: Data security devices are provided which store user data and interact with terminal devices to provide information about the stored user data. Security device has memory for storing user data, an interface for transmission of data communications connectable to a data communications network, and a controller. The controller processes a request from the terminal device for information about said user data by first generating a message. The message is generated to permit verification, using secret data, that the message was generated by the controller. The controller sends the message to the terminal device for communication to a publication entity for publication of the message. The controller then receives from the terminal device a cryptographic construction. The controller checks validity of the cryptographic construction for said message, and subsequent supply of the information requested about the user data to the terminal device is then dependent on said cryptographic construction.

    摘要翻译: 提供数据安全设备,其存储用户数据并与终端设备交互以提供关于所存储的用户数据的信息。 安全装置具有用于存储用户数据的存储器,用于传输可连接到数据通信网络的数据通信的接口和控制器。 控制器通过首先生成消息来处理来自终端设备的关于所述用户数据的信息的请求。 生成消息以允许使用秘密数据验证该消息是由控制器生成的。 控制器将消息发送到终端设备以通信给发布实体以发布消息。 然后,控制器从终端设备接收密码结构。 控制器检查所述消息的加密结构的有效性,随后向终端设备提供关于用户数据的信息的随后提供依赖于所述密码结构。

    FORMING CREDENTIALS
    3.
    发明申请
    FORMING CREDENTIALS 审中-公开
    形成证明

    公开(公告)号:US20120210406A1

    公开(公告)日:2012-08-16

    申请号:US13453374

    申请日:2012-04-23

    IPC分类号: G06F21/00

    摘要: Techniques are disclosed for issuing inoperative credentials, and making the inoperative credential operative at a subsequent point in time. For example, a method of forming a credential comprises the step of forming, at a first point in time, an inoperative credential. The inoperative credential is adapted to become operative, at a second point in time, to form an operative credential. The second point in time occurs after the first point in time.

    摘要翻译: 公开了用于发出不可操作凭证的技术,并使得不合格证书在随后的时间点上操作。 例如,形成证书的方法包括在第一时间点形成不合格证书的步骤。 不合格证书适应于在第二时间点起作用,以形成有效的凭证。 第二个时间点在第一个时间点之后。

    Data encryption
    4.
    发明授权
    Data encryption 有权
    数据加密

    公开(公告)号:US09544144B2

    公开(公告)日:2017-01-10

    申请号:US14114396

    申请日:2012-04-13

    摘要: Public key encryption methods and apparatus are provided for encrypting secret data under a public key in a data processing system (1). The secret data is provided as a message (m) comprising at least one element of a pair of base groups G1, G2 satisfying a bilinear map ê: G1×G2→GT where GT is a target group. The message (m) is encrypted using the public key to produce an encrypted message (c). A consistency component (v) is generated using the encrypted message (c) and the bilinear map whereby the consistency component (v) permits validation of the encrypted message without revealing the encrypted message. The output ciphertext (ct) comprises the encrypted message (c) and the consistency component (v).

    摘要翻译: 提供公钥加密方法和装置,用于在数据处理系统(1)中的公共密钥下加密秘密数据。 提供秘密数据作为消息(m),其包括满足双线性映射ê:G1×G2→GT的一对基组G1,G2中的至少一个元素,其中GT是目标组。 使用公钥加密消息(m)以产生加密消息(c)。 使用加密消息(c)和双线性映射生成一致性组件(v),由此一致性组件(v)允许加密消息的验证而不显示加密的消息。 输出密文(ct)包括加密消息(c)和一致性组件(v)。

    Anonymous separation of duties with credentials
    5.
    发明授权
    Anonymous separation of duties with credentials 失效
    匿名分离职责与凭证

    公开(公告)号:US08688591B2

    公开(公告)日:2014-04-01

    申请号:US12536874

    申请日:2009-08-06

    IPC分类号: G06Q20/00

    摘要: A system for anonymous separation of duties with credentials includes an identity provider, the identity provider configured to issue anonymous credentials to a user based on one or more attributes of the user; a service provider, the service provider configured to issue a pseudonym to the user based on the user's anonymous credentials, and to associate the user's pseudonym with a step of an instance of a business process hosted on the service provider, the step being completed by the user; and an auditor, the auditor configured to determine if the completion of the step of the instance of the business process by the user is compliant with a separation of duties policy.

    摘要翻译: 用于凭借凭证匿名分离职责的系统包括身份提供者,身份提供者被配置为基于用户的一个或多个属性向用户发布匿名凭证; 服务提供商,所述服务提供商被配置为基于所述用户的匿名凭证向所述用户发布假名,并且将所述用户的假名与所述服务提供商上托管的业务流程的实例的步骤相关联,所述步骤由 用户; 和审核员,审核员被配置为确定用户完成业务流程实例的步骤是否符合职责分离政策。

    Joint encryption of data
    6.
    发明授权
    Joint encryption of data 失效
    联合加密数据

    公开(公告)号:US08661240B2

    公开(公告)日:2014-02-25

    申请号:US13438987

    申请日:2012-04-04

    IPC分类号: H04L29/06 H04K1/00

    摘要: A method for joint generation of a ciphertext by devices of a data processing system includes providing, by a first device, a first message, representing secret data of the first device, generating an initial ciphertext comprising an initial blinded encrypted message, in which the first message is encrypted under a public key of a trusted entity, and an initial consistency component for validating the initial ciphertext using the bilinear map; and sending the initial ciphertext to a second device; wherein the second device provides a second message, representing secret data of the second device, generates an updated ciphertext comprising an updated blinded encrypted message and an updated consistency component for validating the updated ciphertext, and generating a final ciphertext comprising the final encrypted message and a final consistency component for validating the final ciphertext, wherein the final consistency component is generated using the updated consistency component and the bilinear map.

    摘要翻译: 一种用于由数据处理系统的设备联合生成密文的方法包括由第一设备提供表示第一设备的秘密数据的第一消息,生成包括初始盲加密消息的初始密文,其中第一 消息在可信实体的公钥下进行加密,以及初始一致性组件,用于使用双线性映射来验证初始密文; 以及将所述初始密文发送到第二设备; 其中所述第二设备提供表示所述第二设备的秘密数据的第二消息,生成包括更新的盲密码加密消息的更新密文和用于验证所述更新密文的更新的一致性组件,以及生成包括最终加密消息的最终密文和 用于验证最终密文的最终一致性组件,其中使用更新的一致性组件和双线性映射生成最终一致性组件。

    Joint encryption of data
    7.
    发明授权

    公开(公告)号:US08654975B2

    公开(公告)日:2014-02-18

    申请号:US13562934

    申请日:2012-07-31

    IPC分类号: H04K1/00 H04L29/06

    摘要: A method for joint generation of a ciphertext by devices of a data processing system includes providing, by a first device, a first message, representing secret data of the first device, generating an initial ciphertext comprising an initial blinded encrypted message, in which the first message is encrypted under a public key of a trusted entity, and an initial consistency component for validating the initial ciphertext using the bilinear map; and sending the initial ciphertext to a second device; wherein the second device provides a second message, representing secret data of the second device, generates an updated ciphertext comprising an updated blinded encrypted message and an updated consistency component for validating the updated ciphertext, and generating a final ciphertext comprising the final encrypted message and a final consistency component for validating the final ciphertext, wherein the final consistency component is generated using the updated consistency component and the bilinear map.

    TRANSACTION AUDITING FOR DATA SECURITY DEVICES
    8.
    发明申请
    TRANSACTION AUDITING FOR DATA SECURITY DEVICES 失效
    数据安全设备的交易审核

    公开(公告)号:US20120324226A1

    公开(公告)日:2012-12-20

    申请号:US13580222

    申请日:2011-02-16

    IPC分类号: G06F21/00

    CPC分类号: G06F21/62 G06F21/33 G06F21/55

    摘要: Data security devices are provided which store user data and interact with terminal devices to provide information about the stored user data. Security device has memory for storing user data, an interface for transmission of data communications connectable to a data communications network, and a controller. The controller processes a request from the terminal device for information about said user data by first generating a message. The message is generated to permit verification, using secret data, that the message was generated by the controller. The controller sends the message to the terminal device for communication to a publication entity for publication of the message. The controller then receives from the terminal device a cryptographic construction. The controller checks validity of the cryptographic construction for said message, and subsequent supply of the information requested about the user data to the terminal device is then dependent on said cryptographic construction.

    摘要翻译: 提供数据安全设备,其存储用户数据并与终端设备交互以提供关于所存储的用户数据的信息。 安全装置具有用于存储用户数据的存储器,用于传输可连接到数据通信网络的数据通信的接口和控制器。 控制器通过首先生成消息来处理来自终端设备的关于所述用户数据的信息的请求。 生成消息以允许使用秘密数据验证该消息是由控制器生成的。 控制器将消息发送到终端设备以通信给发布实体以发布消息。 然后,控制器从终端设备接收密码结构。 控制器检查所述消息的加密结构的有效性,随后向终端设备提供关于用户数据的信息的随后提供依赖于所述密码结构。

    CONFIDENTIAL PRESENTATIONS IN VIRTUAL WORLD INFRASTRUCTURE
    9.
    发明申请
    CONFIDENTIAL PRESENTATIONS IN VIRTUAL WORLD INFRASTRUCTURE 有权
    虚拟世界基础设施中的保密性陈述

    公开(公告)号:US20120240199A1

    公开(公告)日:2012-09-20

    申请号:US13480682

    申请日:2012-05-25

    IPC分类号: G06F21/24 G06F21/20

    CPC分类号: H04L63/105

    摘要: Methods and apparatus for forming and presenting confidential presentations within a computing environment associated with a virtual application are presented. For example, a method for forming a confidential presentation includes obtaining a correspondence indicator from an asset server, obtaining a first texture from the asset server, and overlaying the first texture onto a first object. The correspondence indicator indicates the first texture corresponds to the first object. The first object is within the computing environment associated with the virtual application. The first texture and the asset server are inaccessible by the computing environment associated with the virtual application. The confidential presentation comprises the first texture.

    摘要翻译: 提出了在与虚拟应用相关联的计算环境中形成和呈现机密呈现的方法和装置。 例如,用于形成机密呈现的方法包括从资产服务器获取对应指示符,从资产服务器获取第一纹理,并将第一纹理叠加到第一对象上。 对应指示符表示第一个纹理对应于第一个对象。 第一个对象在与虚拟应用程序相关联的计算环境中。 第一个纹理和资产服务器无法通过与虚拟应用程序相关联的计算环境访问。 机密呈现包括第一纹理。

    Providing an ad-hoc 3D GUI within a virtual world to a non-virtual world application
    10.
    发明授权
    Providing an ad-hoc 3D GUI within a virtual world to a non-virtual world application 有权
    在虚拟世界中为非虚拟世界应用程序提供ad-hoc 3D GUI

    公开(公告)号:US08219921B2

    公开(公告)日:2012-07-10

    申请号:US12178129

    申请日:2008-07-23

    IPC分类号: G06F3/048

    CPC分类号: G06F3/0481 G06F9/451

    摘要: A method for receiving input from a user of a virtual world, the method including: interacting with an object displayed in the virtual world; displaying another object in the virtual world in response to the interacting, the another object adapted to interact with the user; displaying at least one of a user specific label and a service specific label in place of a generic label associated with the another object; selecting the another object; and receiving the generic label and the at least one of the user specific label and the service specific label as the input in response to the selecting.

    摘要翻译: 一种用于从虚拟世界的用户接收输入的方法,所述方法包括:与虚拟世界中显示的对象交互; 响应于所述交互而在所述虚拟世界中显示另一对象,所述另一对象适于与所述用户交互; 显示用户特定标签和服务特定标签中的至少一个代替与另一对象相关联的通用标签; 选择另一个对象; 以及响应于所述选择,接收所述通用标签和所述用户特定标签和所述服务特定标签中的至少一个作为所述输入。