Compatible trust in a computing device
    2.
    发明授权
    Compatible trust in a computing device 有权
    兼容计算设备的信任

    公开(公告)号:US08789037B2

    公开(公告)日:2014-07-22

    申请号:US13542518

    申请日:2012-07-05

    CPC分类号: G06F21/577 G06F21/575

    摘要: A method and apparatus for executing a first executable code image having a first version number into a memory of a device in an attempt to establish an operating environment of the device are described. The first executable code image retrieves a second version number from the second executable code image after successfully authenticating the second executable code image. If the first version number and the second version number do not satisfy a predetermined relationship, the second executable code image is prevented from being loaded by the first executable code image.

    摘要翻译: 描述了用于执行具有第一版本号的第一可执行代码图像到设备的存储器中以尝试建立该设备的操作环境的方法和装置。 第一可执行代码图像在成功验证第二可执行代码图像之后从第二可执行代码图像检索第二版本号。 如果第一版本号和第二版本号不满足预定关系,则防止第二可执行代码图像被第一可执行代码图像加载。

    OVER-THE-AIR DEVICE CONFIGURATION
    3.
    发明申请
    OVER-THE-AIR DEVICE CONFIGURATION 有权
    超大型设备配置

    公开(公告)号:US20120309377A1

    公开(公告)日:2012-12-06

    申请号:US13487052

    申请日:2012-06-01

    IPC分类号: H04W4/00

    CPC分类号: H04W8/245 H04W88/06

    摘要: Methods, program products, and systems of over-the-air device configuration are disclosed. In general, in one aspect, a mobile device can determine, in an application subsystem of the mobile device, that the mobile device requests an initial setup. The application subsystem can send a request to a baseband subsystem of the mobile device. The request can include an indicator specifying that the baseband subsystem is to operate in a service configuration mode. The mobile device can request the configuration information from a registration server using the baseband subsystem that operates under the service configuration mode. Requesting the configuration information from the server can include connecting to the server over the air using a cellular network, through a specified carrier and under a specified data transfer cap. The mobile device can then configure the mobile device using configuration information received from the server.

    摘要翻译: 公开了空中设备配置的方法,程序产品和系统。 通常,在一个方面,移动设备可以在移动设备的应用子系统中确定移动设备请求初始设置。 应用子系统可以向移动设备的基带子系统发送请求。 该请求可以包括指示基带子系统在服务配置模式下操作的指示符。 移动设备可以使用在服务配置模式下操作的基带子系统从注册服务器请求配置信息。 从服务器请求配置信息可以包括使用蜂窝网络通过指定的载体和指定的数据传输上限连接到服务器。 然后,移动设备可以使用从服务器接收的配置信息来配置移动设备。

    COMPATIBLE TRUST IN A COMPUTING DEVICE
    4.
    发明申请
    COMPATIBLE TRUST IN A COMPUTING DEVICE 有权
    计算设备中的兼容信任

    公开(公告)号:US20120278597A1

    公开(公告)日:2012-11-01

    申请号:US13542518

    申请日:2012-07-05

    IPC分类号: G06F21/00

    CPC分类号: G06F21/577 G06F21/575

    摘要: A method and apparatus for executing a first executable code image having a first version number into a memory of a device in an attempt to establish an operating environment of the device are described. The first executable code image retrieves a second version number from the second executable code image after successfully authenticating the second executable code image. If the first version number and the second version number do not satisfy a predetermined relationship, the second executable code image is prevented from being loaded by the first executable code image.

    摘要翻译: 描述了用于执行具有第一版本号的第一可执行代码图像到设备的存储器中以尝试建立该设备的操作环境的方法和装置。 第一可执行代码图像在成功验证第二可执行代码图像之后从第二可执行代码图像检索第二版本号。 如果第一版本号和第二版本号不满足预定关系,则防止第二可执行代码图像被第一可执行代码图像加载。

    Service provider activation with subscriber identity module policy
    5.
    发明授权
    Service provider activation with subscriber identity module policy 有权
    服务提供商激活与用户身份模块策略

    公开(公告)号:US08032181B2

    公开(公告)日:2011-10-04

    申请号:US12014089

    申请日:2008-01-14

    IPC分类号: H04B1/38

    摘要: Systems and methods for activating a mobile device for use with a service provider are described. In one exemplary method, a mobile device having a currently inserted SIM card may be prepared for activation using a signing process in which an activation server generates a signed activation ticket encoded with SIM policy data that corresponds to the combination of the device and one of a number of SIM cards belonging to a set of SIM cards defined by the SIM policy data. The activation ticket is securely stored on the mobile device. In another exemplary method the mobile device may be activated in an activation process in which the device verifies an activation ticket against information specific to the device and SIM card in accordance with the SIM policy in the activation ticket, and initiates activation when the verification of the activation ticket is successful.

    摘要翻译: 描述用于激活与服务提供商一起使用的移动设备的系统和方法。 在一个示例性方法中,具有当前插入的SIM卡的移动设备可以准备用于使用签名过程进行激活,其中激活服务器生成用SIM策略数据编码的签名激活票据,SIM策略数据对应于该设备的组合和 属于由SIM策略数据定义的一组SIM卡的SIM卡的数量。 激活票安全地存储在移动设备上。 在另一示例性方法中,可以在激活过程中激活移动设备,其中设备根据激活票中的SIM策略来验证针对设备和SIM卡特有的信息的激活票,并且当验证 激活票成功。

    Run-time code injection to perform checks
    6.
    发明授权
    Run-time code injection to perform checks 有权
    运行时代码注入来执行检查

    公开(公告)号:US07694341B2

    公开(公告)日:2010-04-06

    申请号:US11207045

    申请日:2005-08-18

    IPC分类号: H04L9/32

    摘要: A digital rights management system permits an application owner to cause code to be injected into the application's run-time instruction stream so as to restrict execution of that application to specific hardware platforms. In a first phase, an authorizing entity (e.g., an application owner or platform manufacturer) authorizes one or more applications to execute on a given hardware platform. Later, during application run-time, code is injected that performs periodic checks are made to determine if the application continues to run on the previously authorized hardware platform. If a periodic check fails, at least part of the application's execution string is terminated—effectively rendering the application non-usable. The periodic check is transparent to the user and difficult to circumvent.

    摘要翻译: 数字版权管理系统允许应用所有者将代码注入到应用的运行时指令流中,以便将该应用的执行限制到特定的硬件平台。 在第一阶段,授权实体(例如,应用所有者或平台制造商)授权一个或多个应用在给定硬件平台上执行。 之后,在应用程序运行期间,注入代码,执行定期检查以确定应用程序是否继续在以前授权的硬件平台上运行。 如果定期检查失败,至少部分应用程序的执行字符串将被终止 - 有效地使应用程序无法使用。 定期检查对用户是透明的,难以规避。

    Compatible trust in a computing device
    7.
    发明申请
    Compatible trust in a computing device 有权
    兼容计算设备的信任

    公开(公告)号:US20090063108A1

    公开(公告)日:2009-03-05

    申请号:US11897655

    申请日:2007-08-31

    IPC分类号: G06F9/00

    CPC分类号: G06F21/577 G06F21/575

    摘要: A method and apparatus for executing a first executable code image having a first version number into a memory of a device in an attempt to establish an operating environment of the device are described. The first executable code image retrieves a second version number from the second executable code image after successfully authenticating the second executable code image. If the first version number and the second version number do not satisfy a predetermined relationship, the second executable code image is prevented from being loaded by the first executable code image.

    摘要翻译: 描述了用于执行具有第一版本号的第一可执行代码图像到设备的存储器中以尝试建立该设备的操作环境的方法和装置。 第一可执行代码图像在成功验证第二可执行代码图像之后从第二可执行代码图像检索第二版本号。 如果第一版本号和第二版本号不满足预定关系,则防止第二可执行代码图像被第一可执行代码图像加载。

    RUN-TIME CODE INJECTION TO PERFORM CHECKS
    8.
    发明申请
    RUN-TIME CODE INJECTION TO PERFORM CHECKS 有权
    执行代码注射执行检查

    公开(公告)号:US20070288886A1

    公开(公告)日:2007-12-13

    申请号:US11741067

    申请日:2007-04-27

    IPC分类号: G06F9/44

    CPC分类号: G06F21/121

    摘要: A digital rights management system permits an application owner to cause code to be injected into the application's run-time instruction stream so as to restrict execution of that application to specific hardware platforms. In a first phase, an authorizing entity (e.g., an application owner or platform manufacturer) authorizes one or more applications to execute on a given hardware platform. Later, during application run-time, code is injected that performs periodic checks are made to determine if the application continues to run on the previously authorized hardware platform. If a periodic check fails, at least part of the application's execution string is terminated—effectively rendering the application non-usable. The periodic check is transparent to the user and difficult to circumvent.

    摘要翻译: 数字版权管理系统允许应用所有者将代码注入到应用的运行时指令流中,以便将该应用的执行限制到特定的硬件平台。 在第一阶段,授权实体(例如,应用所有者或平台制造商)授权一个或多个应用在给定硬件平台上执行。 之后,在应用程序运行期间,注入代码,执行定期检查以确定应用程序是否继续在以前授权的硬件平台上运行。 如果定期检查失败,至少部分应用程序的执行字符串将被终止 - 有效地使应用程序无法使用。 定期检查对用户是透明的,难以规避。

    SERVICE PROVIDER ACTIVATION WITH SUBSCRIBER IDENTITY MODULE POLICY
    9.
    发明申请
    SERVICE PROVIDER ACTIVATION WITH SUBSCRIBER IDENTITY MODULE POLICY 有权
    服务提供商激活与订阅者身份模块政策

    公开(公告)号:US20120021805A1

    公开(公告)日:2012-01-26

    申请号:US13252096

    申请日:2011-10-03

    IPC分类号: H04W88/02

    摘要: Systems and methods for activating a mobile device for use with a service provider are described. In one exemplary method, a mobile device having a currently inserted SIM card may be prepared for activation using a signing process in which an activation server generates a signed activation ticket encoded with SIM policy data that corresponds to the combination of the device and one of a number of SIM cards belonging to a set of SIM cards defined by the SIM policy data. The activation ticket is securely stored on the mobile device. In another exemplary method the mobile device may be activated in an activation process in which the device verifies an activation ticket against information specific to the device and SIM card in accordance with the SIM policy in the activation ticket, and initiates activation when the verification of the activation ticket is successful.

    摘要翻译: 描述用于激活与服务提供商一起使用的移动设备的系统和方法。 在一个示例性方法中,具有当前插入的SIM卡的移动设备可以准备用于使用签名过程进行激活,其中激活服务器生成用SIM策略数据编码的签名激活票据,SIM策略数据对应于该设备的组合和 属于由SIM策略数据定义的一组SIM卡的SIM卡的数量。 激活票安全地存储在移动设备上。 在另一示例性方法中,可以在激活过程中激活移动设备,其中设备根据激活票中的SIM策略来验证针对设备和SIM卡特有的信息的激活票,并且当验证 激活票成功。

    Service Provider Activation
    10.
    发明申请
    Service Provider Activation 有权
    服务提供商激活

    公开(公告)号:US20110195751A1

    公开(公告)日:2011-08-11

    申请号:US13088184

    申请日:2011-04-15

    IPC分类号: H04W60/00

    摘要: Systems and methods for activating a mobile device for use with a service provider are described. In one exemplary method, a mobile device having a currently inserted SIM card may be prepared for activation using a signing process in which an activation server generates a signed activation ticket that uniquely corresponds to the combination of the device and SIM card, and that is securely stored on the mobile device. In another exemplary method the mobile device may be activated in an activation process in which the device verifies an activation ticket against information specific to the device and SIM card, and initiates activation when the verification of the activation ticket is successful.

    摘要翻译: 描述用于激活与服务提供商一起使用的移动设备的系统和方法。 在一个示例性方法中,具有当前插入的SIM卡的移动设备可以准备用于使用签名过程进行激活,其中激活服务器生成唯一对应于设备和SIM卡的组合的签名激活票据,并且是安全的 存储在移动设备上。 在另一示例性方法中,可以在激活过程中激活移动设备,其中设备根据针对设备和SIM卡的特定信息验证激活票,并且当激活票的验证成功时启动激活。