System and method for continuously provisioning a mobile device
    1.
    发明授权
    System and method for continuously provisioning a mobile device 有权
    用于连续配置移动设备的系统和方法

    公开(公告)号:US07529197B2

    公开(公告)日:2009-05-05

    申请号:US11405174

    申请日:2006-04-17

    IPC分类号: H04J12/28

    摘要: Described is a provisioning system for receiving configuration changes to and queries of settings on a mobile device. One implementation includes a router component and a configuration manager component. The router component is responsible for receiving messages delivered to the mobile device and parsing the messages into requests for information. The router component is also responsible for authenticating and decrypting the messages. Once properly authenticated and decrypted, the router component passes the message to the configuration manager component. The configuration manager component is responsible for determining what configuration settings are affected by the message and for processing the requests within the message. The configuration manager component may additionally compose a response document to return in the event that a response has been requested in the message.

    摘要翻译: 描述了用于在移动设备上接收对设置的配置更改和查询的配置系统。 一个实现包括路由器组件和配置管理器组件。 路由器组件负责接收传递到移动设备的消息,并将消息解析为请求信息。 路由器组件还负责认证和解密消息。 一旦正确认证和解密,路由器组件将消息传递给配置管理器组件。 配置管理器组件负责确定哪些配置设置受到消息的影响以及处理消息中的请求。 在消息中已经请求了响应的情况下,配置管理器组件可以另外组成响应文档以返回。

    System and method for continuously provisioning a mobile device

    公开(公告)号:US07295522B2

    公开(公告)日:2007-11-13

    申请号:US09895471

    申请日:2001-06-29

    IPC分类号: H04L12/28

    摘要: Described is a provisioning system for receiving configuration changes to and queries of settings on a mobile device. One implementation includes a router component and a configuration manager component. The router component is responsible for receiving messages delivered to the mobile device and parsing the messages into requests for information. The messages may be delivered in document format, such as in the eXtensible Markup Language (XML) format. The requests may take the form of a request to respond with existing configuration settings, or to set certain configuration settings on the mobile device. The router component is also responsible for authenticating and decrypting the messages. Once properly authenticated and decrypted, the router component passes the message to the configuration manager component. The configuration manager component is responsible for determining what configuration settings are affected by the message and for processing the requests within the message. For example, the configuration manager component may process a request to query a configuration setting by retrieving the requested information from a hardware register or a software registry. The configuration manager component may implement one or more configuration service providers to perform the actual request processing. The configuration manager component may additionally compose a response document to return in the event that a response has been requested in the message. In one implementation, the response may be created by modifying the original message received and returning that message to the router component.

    System and method for over the air configuration security
    3.
    发明授权
    System and method for over the air configuration security 有权
    用于空中配置安全的系统和方法

    公开(公告)号:US07188243B2

    公开(公告)日:2007-03-06

    申请号:US09843901

    申请日:2001-04-27

    摘要: A system and method for assigning security credentials to particular components within a mobile device, and for ensuring that only configuration messages having sufficient access privilege to those components are allowed access, based on the security credentials. The security credentials or “roles” describe which settings a particular configuration message has authority to modify or query. Access is disallowed to settings for which a message does not have adequate security credentials.

    摘要翻译: 一种用于将安全凭证分配给移动设备内的特定组件的系统和方法,并且用于确保只有具有对这些组件的足够访问权限的配置消息被允许基于安全证书进行访问。 安全凭证或“角色”描述特定配置消息有权修改或查询的设置。 对于消息没有足够的安全凭证的设置,不允许访问。

    System and method for continuously provisioning a mobile device
    4.
    发明授权
    System and method for continuously provisioning a mobile device 有权
    用于连续配置移动设备的系统和方法

    公开(公告)号:US07187660B2

    公开(公告)日:2007-03-06

    申请号:US11115522

    申请日:2005-04-26

    IPC分类号: H04J12/28

    摘要: Described is a provisioning system for receiving configuration changes to and queries of settings on a mobile device. One implementation includes a router component and a configuration manager component. The router component is responsible for receiving messages delivered to the mobile device and parsing the messages into requests for information. The messages may be delivered in document format, such as in the eXtensible Markup Language (XML) format. The requests may take the form of a request to respond with existing configuration settings, or to set certain configuration settings on the mobile device. The router component is also responsible for authenticating and decrypting the messages. Once properly authenticated and decrypted, the router component passes the message to the configuration manager component. The configuration manager component is responsible for determining what configuration settings are affected by the message and for processing the requests within the message. For example, the configuration manager component may process a request to query a configuration setting by retrieving the requested information from a hardware register or a software registry. The configuration manager component may implement one or more configuration service providers to perform the actual request processing. The configuration manager component may additionally compose a response document to return in the event that a response has been requested in the message. In one implementation, the response may be created by modifying the original message received and returning that message to the router component.

    摘要翻译: 描述了一种用于接收移动设备上的配置更改和设置查询的配置系统。 一个实现包括路由器组件和配置管理器组件。 路由器组件负责接收传递到移动设备的消息,并将消息解析为请求信息。 消息可以以文档格式递送,例如可扩展标记语言(XML)格式。 请求可以采取以现有配置设置进行响应的请求的形式,或者在移动设备上设置某些配置设置。 路由器组件还负责认证和解密消息。 一旦正确认证和解密,路由器组件将消息传递给配置管理器组件。 配置管理器组件负责确定哪些配置设置受到消息的影响以及处理消息中的请求。 例如,配置管理器组件可以通过从硬件寄存器或软件注册表检索所请求的信息来处理查询配置设置的请求。 配置管理器组件可以实现一个或多个配置服务提供者来执行实际的请求处理。 在消息中已经请求了响应的情况下,配置管理器组件可以另外组成响应文档以返回。 在一个实现中,响应可以通过修改接收的原始消息并将该消息返回到路由器组件来创建。

    Secure end-to-end notification
    5.
    发明授权
    Secure end-to-end notification 有权
    安全的端到端通知

    公开(公告)号:US07299349B2

    公开(公告)日:2007-11-20

    申请号:US10062068

    申请日:2002-01-31

    IPC分类号: H04L9/00

    摘要: Providing secure end-to-end notifications from a notification source to a notification sink despite the notification mechanism including one or more message transit points between the notification source and the notification sink. Initially, security information (e.g., the master security, the cryptographic algorithm, and the like) is negotiated out-of-band from the one or more message transit points so that the message transit points are not apprised of the security information. When a designated event occurs, the notification source generates a push message that includes the notification encrypted using the pre-negotiated security information. When the notification sink receives the push message, the notification sink decrypts the notification using the pre-negotiated security information, as well as supplemental information provided in the push message. Thus, the message transit points only have access to the encrypted form of the notification.

    摘要翻译: 提供从通知源到通知接收端的安全的端到端通知,尽管通知机制包括通知源和通知接收器之间的一个或多个消息传输点。 最初,安全信息(例如,主安全性,加密算法等)从一个或多个消息传输点在带外协商,使得消息传送点未被通知安全信息。 当指定的事件发生时,通知源产生包含使用预先协商的安全信息加密的通知的推送消息。 当通知接收器接收到推送消息时,通知接收器使用预先协商的安全信息来解密通知,以及在推送消息中提供的补充信息。 因此,消息传输点只能访问通知的加密形式。