-
公开(公告)号:US20100037325A1
公开(公告)日:2010-02-11
申请号:US11612436
申请日:2006-12-18
Applicant: William J. Westerinen , Todd L. Carpenter , Alexander Frank , Shon Schmidt , Stephen Richard Drake , David James Foster , Tse-Ching James Yu
Inventor: William J. Westerinen , Todd L. Carpenter , Alexander Frank , Shon Schmidt , Stephen Richard Drake , David James Foster , Tse-Ching James Yu
IPC: G06F21/02
CPC classification number: H05K1/0275 , G06F21/86 , H05K1/141 , H05K3/3436 , H05K2201/049 , H05K2201/10545 , H05K2201/10674
Abstract: A pay-per-use computer, or other electronic device that uses local security, may use a security module or other circuit for monitoring and enforcement of a usage policy. To help prevent physical attacks on the security module, or the circuit board near the security module, a second circuit may be mounted over the security module to help prevent access to the security module. Both circuits may be mounted on a interposer and the interposer mounted to the circuit board, creating a stack including the first circuit, the interposer, the security module, and a main PC board. When the PC board includes dense signal traces under the security module a three dimensional envelope is created around the security module. When the first circuit is a high value circuit, such as a Northbridge, the risk/reward of attacking the security module is increased substantially and may deter all but the most determined hackers.
Abstract translation: 使用计费器的计算机或使用本地安全的其他电子设备可以使用安全模块或其他电路来监视和执行使用策略。 为了防止对安全模块或安全模块附近的电路板的物理攻击,可以在安全模块上安装第二电路,以帮助防止访问安全模块。 两个电路可以安装在插入器上,并且插入器安装到电路板,产生包括第一电路,插入器,安全模块和主PC板的堆叠。 当PC板在安全模块下面包含密集的信号迹线时,将在安全模块周围创建三维信封。 当第一个电路是诸如北桥的高价值电路时,攻击安全模块的风险/报酬大大增加,并且可能阻止除了最确定的黑客之外的所有电路。
-
公开(公告)号:US07634734B2
公开(公告)日:2009-12-15
申请号:US11044713
申请日:2005-01-28
Applicant: Andrew J. Fuller , Issa Y. Khoury , Allen Marshall , Vikram Madan , Sterling M. Reasor , Ravipal S. Soin , Tse-Ching James Yu
Inventor: Andrew J. Fuller , Issa Y. Khoury , Allen Marshall , Vikram Madan , Sterling M. Reasor , Ravipal S. Soin , Tse-Ching James Yu
CPC classification number: H04N7/163 , H04N21/42646 , H04N21/4325 , H04N21/4751 , H04N21/4753 , Y10S707/99945 , Y10S707/99948
Abstract: In response to a user instruction to initiate media playback, which instruction may come from a dedicated media playback hardware button or from a user interface on a display screen, a computer operating system activates a predesignated media playback user account. The account may be limited to access of media playback applications and files located within shared directories. The operating system also launches a media playback application in response to the user instruction to initiate media playback. Instead of activating an account in response to a media playback instruction, the operating system can execute a media player application within a login screen.
Abstract translation: 响应于用户指令启动媒体回放,哪个指令可能来自专用媒体回放硬件按钮或来自显示屏幕上的用户界面,计算机操作系统激活预先指定的媒体回放用户帐户。 该帐户可能仅限于访问共享目录中的媒体播放应用程序和文件。 操作系统还响应于用户指令启动媒体播放,启动媒体播放应用程序。 响应于媒体播放指令而不是激活帐户,操作系统可以在登录屏幕内执行媒体播放器应用。
-
公开(公告)号:US07979721B2
公开(公告)日:2011-07-12
申请号:US11612436
申请日:2006-12-18
Applicant: William J. Westerinen , Todd L. Carpenter , Alexander Frank , Shon Schmidt , Stephen Richard Drake , David James Foster , Tse-Ching James Yu
Inventor: William J. Westerinen , Todd L. Carpenter , Alexander Frank , Shon Schmidt , Stephen Richard Drake , David James Foster , Tse-Ching James Yu
CPC classification number: H05K1/0275 , G06F21/86 , H05K1/141 , H05K3/3436 , H05K2201/049 , H05K2201/10545 , H05K2201/10674
Abstract: A pay-per-use computer, or other electronic device that uses local security, may use a security module or other circuit for monitoring and enforcement of a usage policy. To help prevent physical attacks on the security module, or the circuit board near the security module, a second circuit may be mounted over the security module to help prevent access to the security module. Both circuits may be mounted on a interposer and the interposer mounted to the circuit board, creating a stack including the first circuit, the interposer, the security module, and a main PC board. When the PC board includes dense signal traces under the security module a three dimensional envelope is created around the security module. When the first circuit is a high value circuit, such as a Northbridge, the risk/reward of attacking the security module is increased substantially and may deter all but the most determined hackers.
Abstract translation: 使用计费器的计算机或使用本地安全的其他电子设备可以使用安全模块或其他电路来监视和执行使用策略。 为了防止对安全模块或安全模块附近的电路板的物理攻击,可以在安全模块上安装第二电路,以帮助防止访问安全模块。 两个电路可以安装在插入器上,并且插入器安装到电路板,产生包括第一电路,插入器,安全模块和主PC板的堆叠。 当PC板在安全模块下面包含密集的信号迹线时,将在安全模块周围创建三维信封。 当第一个电路是诸如北桥的高价值电路时,攻击安全模块的风险/报酬大大增加,并且可能阻止除了最确定的黑客之外的所有电路。
-
公开(公告)号:US20080282017A1
公开(公告)日:2008-11-13
申请号:US11746268
申请日:2007-05-09
Applicant: Todd L. Carpenter , William J. Westerinen , Shon Schmidt , Stephen Richard Drake , Tse-Ching James Yu , Achim Schmidt , Stephan Schoenfeldt , Frank Preiss
Inventor: Todd L. Carpenter , William J. Westerinen , Shon Schmidt , Stephen Richard Drake , Tse-Ching James Yu , Achim Schmidt , Stephan Schoenfeldt , Frank Preiss
IPC: G06F13/38
CPC classification number: G06F13/4291 , G06F21/82
Abstract: An SPI switch allows selection of a BIOS memory transparent to a Southbridge chipset component. The SPI switch provides address translation to a selected BIOS memory area under the control of a security module processor. The SPI switch also provides command filtering to prevent commands that represent a security risk such as bulk erase commands. Because the SPI switch allows transparent redirection between BIOS programs, booting in different operating modes may be supported without any changes to the basic computer architecture or major chipset components.
Abstract translation: SPI开关允许选择对南桥芯片组组件透明的BIOS内存。 SPI开关在安全模块处理器的控制下,向选定的BIOS存储器区域提供地址转换。 SPI开关还提供命令过滤功能,以防止代表诸如批量擦除命令等安全风险的命令。 因为SPI开关允许在BIOS程序之间进行透明重定向,所以可以支持不同操作模式的启动,而不会改变基本的计算机体系结构或主要的芯片组件。
-
-
-