Time of day synchronization and distribution within a multiprocessor embedded system and related methods
    1.
    发明申请
    Time of day synchronization and distribution within a multiprocessor embedded system and related methods 有权
    多处理器嵌入式系统中的时间同步和分配及相关方法

    公开(公告)号:US20070087734A1

    公开(公告)日:2007-04-19

    申请号:US11252123

    申请日:2005-10-17

    IPC分类号: H04M3/00

    摘要: A software-defined radio includes a pair of radio subsystems such as a red (command) and black (data) radio subsystem having an operating environment conforming to the Software Communications Architecture (SCA) specification, for example, as used for Joint Tactical Radio System (JTRS). A clock is read by at least one of the radio subsystems for determining time of day. A processor of the radio subsystem is operative for distributing the time of day to the radio subsystems using a global hardware timing pulse. Each processor can include a free-running timer to which any time sources within the pair of radio subsystems are set.

    摘要翻译: 软件定义的无线电装置包括一对无线电子系统,例如红色(命令)和黑色(数据)无线电子系统,其具有符合软件通信架构(SCA)规范的操作环境,例如用于联合战术无线电系统 (JTRS)。 用于确定一天中的时间的至少一个无线电子系统读取时钟。 无线电子系统的处理器用于使用全局硬件定时脉冲将时间分配到无线电子系统。 每个处理器可以包括一个自由运行的定时器,其中设置该对无线电子系统内的任何时间源。

    Computer architecture for an electronic device providing SLS access to MLS file system with trusted loading and protection of program execution memory
    2.
    发明申请
    Computer architecture for an electronic device providing SLS access to MLS file system with trusted loading and protection of program execution memory 有权
    电子设备的计算机体系结构,提供SLS访问MLS文件系统,并具有受信任的加载和保护程序执行存储器

    公开(公告)号:US20070226493A1

    公开(公告)日:2007-09-27

    申请号:US11387744

    申请日:2006-03-23

    摘要: System for providing a secure file service includes an MLS file service module (300) comprised of a cryptographic processor (302). The MLS file service module also includes an MLS file system (301) hosted by the cryptographic processor. A secure user processor (402) includes programming and communications hardware for requesting at least one classified file from the MLS file service module. The cryptographic processor includes cryptographic hardware and software to decrypt the classified file. The cryptographic processor is also performs an integrity check on the classified file. Once the file is decrypted and its integrity checked by the cryptographic processor, the MLS file service module serves the classified file to the secure user processor in decrypted form. If the classified file is an executable file, the method also includes selectively enabling a write function for program memory of the secure user processor. This write function is disabled immediately after the classified executable file has been loaded into the program memory to guard against self modifying programs.

    摘要翻译: 用于提供安全文件服务的系统包括由密码处理器(302)组成的MLS文件服务模块(300)。 MLS文件服务模块还包括由密码处理器托管的MLS文件系统(301)。 安全用户处理器(402)包括用于从MLS文件服务模块请求至少一个分类文件的编程和通信硬件。 密码处理器包括用于解密分类文件的密码硬件和软件。 密码处理器还对分类文件执行完整性检查。 一旦文件被解密并且由加密处理器检查其完整性,则MLS文件服务模块以解密的形式将分类文件提供给安全用户处理器。 如果分类文件是可执行文件,则该方法还包括选择性地启用安全用户处理器的程序存储器的写入功能。 在将分类的可执行文件加载到程序存储器中以防止自修改程序之后,该写入功能立即被禁止。

    Computer architecture for a handheld electronic device with a shared human-machine interface
    3.
    发明申请
    Computer architecture for a handheld electronic device with a shared human-machine interface 有权
    具有共享人机界面的手持电子设备的计算机体系结构

    公开(公告)号:US20070223689A1

    公开(公告)日:2007-09-27

    申请号:US11385063

    申请日:2006-03-21

    IPC分类号: H04L9/30

    摘要: Mobile PDA computer system (300) includes a secure user processor (302), a non-secure user processor (306), a cryptographic engine (304), and a shared human/machine interface (HMI) (308). The secure user processor (302) can be comprised of a first trusted microprocessor and a first trusted operating system executing on the first trusted microprocessor. The non-secure user processor (306) can be comprised of a second non-trusted microprocessor and a second non-trusted operating system executing on the second non-trusted microprocessor. A cryptographic engine (304) can be comprised of a third trusted cryptographic processor and a third trusted operating system executing on the third trusted cryptographic processor. The cryptographic engine can be configured for encrypting and decrypting data. A first data communication link (303) communicates data between the secure user processor and the cryptographic engine. A second data communication link (305) communicates data between the cryptographic engine and the non-secure user processor. In this way, the cryptographic engine forms a bridge between the secure user processor and the non-secure user processor. An HMI (308) comprised of trusted hardware for user input and output is time-multiplex-shared among the secure user processor (302), the non-secure user processor (304), and the cryptographic engine (306) in a secure fashion.

    摘要翻译: 移动PDA计算机系统(300)包括安全用户处理器(302),非安全用户处理器(306),密码引擎(304)和共享人机界面(HMI)(308)。 安全用户处理器(302)可以由在第一可信微处理器上执行的第一可信微处理器和第一可信操作系统组成。 非安全用户处理器(306)可以由在第二不可信微处理器上执行的第二不可信微处理器和第二不可信操作系统组成。 加密引擎(304)可以由在第三可信密码处理器上执行的第三可信密码处理器和第三可信操作系统组成。 密码引擎可以配置为加密和解密数据。 第一数据通信链路(303)在安全用户处理器和密码引擎之间传送数据。 第二数据通信链路(305)在密码引擎和非安全用户处理器之间传送数据。 以这种方式,加密引擎在安全用户处理器和非安全用户处理器之间形成桥梁。 包括用于用户输入和输出的可信硬件的HMI(308)在安全用户处理器(302),非安全用户处理器(304)和密码引​​擎(306)之间以安全方式进行时间复用共享 。

    Method and apparatus for the setting or adjustment of a cardiac pacemaker
    4.
    发明申请
    Method and apparatus for the setting or adjustment of a cardiac pacemaker 有权
    用于设置或调整心脏起搏器的方法和装置

    公开(公告)号:US20050154422A1

    公开(公告)日:2005-07-14

    申请号:US10506612

    申请日:2003-03-11

    摘要: A method of setting or adjusting a cardiac pacemaker in a patient diagnosed with cardiac asynchrony, which method comprises the steps of: i) implanting cardiac pacing wires into at least the right ventricle and the left ventricle of the heart of the patient, ii) continuously monitoring and recording the cardiac output, nominal stroke volume and/or arterial pressure of the patient on a beat-by-beat basis, iii) continuously monitoring and recording the respiratory cycle of the patient, and iv) adjusting the conduction delay between the electronic impulses to the cardiac pacing wires until a synchronization of respiratory changes with changes in the cardiac output, stroke volume or arterial pressure of the patient is obtained.

    摘要翻译: 一种在诊断为心脏不同步的患者中设置或调节心脏起搏器的方法,该方法包括以下步骤:i)将心脏​​起搏线植入患者心脏的至少右心室和左心室,ii)连续地 监测和记录患者的心输出量,标称搏动量和/或动脉压,iii)连续监测和记录患者的呼吸周期,以及iv)调整电子 心脏起搏线的脉冲直到呼吸的同步随着患者的心输出量,中风体积或动脉压的变化而变化。

    Computer architecture for an electronic device providing a secure file system
    6.
    发明申请
    Computer architecture for an electronic device providing a secure file system 有权
    提供安全文件系统的电子设备的计算机体系结构

    公开(公告)号:US20070226517A1

    公开(公告)日:2007-09-27

    申请号:US11387342

    申请日:2006-03-23

    摘要: A secure file service includes a cryptographic processor (302, 602) and a secure file system (301, 601). The cryptographic processor is comprised of a trusted microprocessor and a trusted operating system executing on the trusted cryptographic processor. The cryptographic processor includes hardware and software for accessing at least one classified data file from the secure file system, decrypting the classified data file, and serving the classified data file in decrypted form to a secure user processor (402, 502, 702) that has requested the file. The secure file system can be either a single-level secure file system (301) or a multi-level secure file system (601).

    摘要翻译: 安全文件服务包括密码处理器(302,602)和安全文件系统(301,601)。 密码处理器由受信任的微处理器和在可信密码处理器上执行的可信操作系统组成。 加密处理器包括用于从安全文件系统访问至少一个分类数据文件的硬件和软件,解密分类数据文件,以及以解密形式将分类数据文件服务于具有以下功能的安全用户处理器(402,502,702) 请求文件。 安全文件系统可以是单级安全文件系统(301)或多级安全文件系统(601)。

    Computer architecture for an electronic device providing single-level secure access to multi-level secure file system
    8.
    发明申请
    Computer architecture for an electronic device providing single-level secure access to multi-level secure file system 有权
    电子设备的计算机架构,提供对多级安全文件系统的单级安全访问

    公开(公告)号:US20070226494A1

    公开(公告)日:2007-09-27

    申请号:US11387991

    申请日:2006-03-23

    IPC分类号: H04L9/00

    摘要: Method for providing a single level secure (SLS) user processor (402, 502) with access to a multi-level secure (MLS) file system (300). The method begins by authenticating a user to a cryptographic processor (302) by communicating one or more types of user authentication information to the cryptographic processor. Based on such authentication, the MLS file system services are provided such that the SLS user processor (402, 502) has access to files (306, 308, 310, 312, 314) at only one defined security classification level at a time. The method also includes zeroizing one or more data stores used by the SLS user processor each time the SLS user processor transitions between accessing classified data files at a first security classification level and a second security classification level.

    摘要翻译: 用于提供对多级安全(MLS)文件系统(300)的访问的单级安全(SLS)用户处理器(402,502)的方法。 该方法通过将密码处理器(302)的一个或多个类型的用户认证信息传递给密码处理器来认证用户。 基于这种认证,提供MLS文件系统服务,使得SLS用户处理器(402,502)一次只能访问一个定义的安全分类级别的文件(306,308,310,312,314)。 该方法还包括在每次SLS用户处理器在以第一安全级别级别访问分类数据文件和第二安全级别级别之间转换时,对由SLS用户处理器使用的一个或多个数据存储进行归零。

    Data synchronization for a secure electronic device
    9.
    发明申请
    Data synchronization for a secure electronic device 有权
    安全电子设备的数据同步

    公开(公告)号:US20070204331A1

    公开(公告)日:2007-08-30

    申请号:US11363604

    申请日:2006-02-28

    申请人: Terence O'Brien

    发明人: Terence O'Brien

    IPC分类号: H04L9/32

    CPC分类号: H04L63/105

    摘要: Method for synchronizing stored data in one device (102, 106, 202, 206, 210) with other devices (102, 106, 202, 206, 210) at multiple levels of security classification. The methods and systems disclosed herein can advantageously utilize unique protocols and, optionally, cryptographic technologies to effect data synchronization in a secure manner.

    摘要翻译: 用于将一个设备(102,106,202,206,210)中的存储的数据与多个安全分类级别的其他设备(102,106,202,206,210)同步的方法。 本文公开的方法和系统可以有利地利用独特的协议和可选的密码技术来以安全的方式实现数据同步。

    Computer architecture for a handheld electronic device
    10.
    发明申请
    Computer architecture for a handheld electronic device 有权
    手持电子设备的计算机体系结构

    公开(公告)号:US20070199046A1

    公开(公告)日:2007-08-23

    申请号:US11359224

    申请日:2006-02-22

    申请人: Terence O'Brien

    发明人: Terence O'Brien

    IPC分类号: H04L9/32

    摘要: Mobile PDA computer system (300) includes a non-secure processor (306), comprising an untrusted microprocessor and an untrusted operating system executing on the untrusted microprocessor. The system also includes a secure processor (302), comprising a trusted microprocessor and a trusted operating system executing on the trusted microprocessor. A cryptographic engine (304) is provided for encrypting and decrypting data. A first data communication link (303) communicates data between the secure processor and the cryptographic engine. A second data communication link (305) communicates data between the non-secure processor and the cryptographic engine. In this way, the cryptographic engine forms a bridge between the secure user processor and the non-secure user processor.

    摘要翻译: 移动PDA计算机系统(300)包括非安全处理器(306),其包括不可信微处理器和在不可信微处理器上执行的不可信操作系统。 该系统还包括安全处理器(302),其包括可信微处理器和在可信微处理器上执行的可信操作系统。 提供了加密和解密数据的加密引擎(304)。 第一数据通信链路(303)在安全处理器和密码引擎之间传送数据。 第二数据通信链路(305)在非安全处理器和密码引擎之间传送数据。 以这种方式,加密引擎在安全用户处理器和非安全用户处理器之间形成桥梁。