Method and System for Access Control and Data Protection in Digital Memories, Related Digital Memory and Computer Program Product Therefor
    1.
    发明申请
    Method and System for Access Control and Data Protection in Digital Memories, Related Digital Memory and Computer Program Product Therefor 有权
    数字存储器中的访问控制和数据保护方法与系统,相关数字存储器及其计算机程序产品

    公开(公告)号:US20080089517A1

    公开(公告)日:2008-04-17

    申请号:US11793239

    申请日:2004-12-22

    IPC分类号: H04L9/30 H04L9/32 H04K1/00

    摘要: A digital memory such as a memory card for mobile communication equipment, is adapted to be accessed by a plurality of users and have protected data stored therein. The memory is dynamically partitionable in private memory areas for storing data therein and has associated therewith a secrecy tool for securely allocating to the users respective private areas and permitting the users to access the respective private areas via a secure session channel to perform read/write commands in the respective private areas. Typically, the memory/card includes: a card interface controller for managing a physical communication layer between the digital memory and external host equipment, an internal memory having associated therewith a hardware lock to control access to the internal memory, a set of cryptographic modules to manage the secure session channel between the users and the digital memory, and a memory certificate for certifying a public key associated with the digital memory.

    摘要翻译: 诸如用于移动通信设备的存储卡的数字存储器适于被多个用户访问并且具有存储在其中的保护数据。 存储器在专用存储器区域中是可动态分区的,用于在其中存储数据,并且具有与其相关联的保密工具,用于安全地向用户分配各自的专用区域,并允许用户经由安全会话通道访问相应的专用区域以执行读/写命令 在各自的私人地区。 通常,存储器/卡包括:用于管理数字存储器和外部主机设备之间的物理通信层的卡接口控制器,具有与其相关联的硬件锁定以控制对内部存储器的访问的内部存储器,一组加密模块, 管理用户和数字存储器之间的安全会话通道,以及用于验证与数字存储器相关联的公钥的存储器证书。

    Method and system for access control and data protection in digital memories, related digital memory and computer program product therefor
    2.
    发明授权
    Method and system for access control and data protection in digital memories, related digital memory and computer program product therefor 有权
    数字存储器,相关数字存储器及其计算机程序产品中的访问控制和数据保护的方法和系统

    公开(公告)号:US08789195B2

    公开(公告)日:2014-07-22

    申请号:US11793239

    申请日:2004-12-22

    IPC分类号: G06F21/00

    摘要: A digital memory such as a memory card for mobile communication equipment, is adapted to be accessed by a plurality of users and have protected data stored therein. The memory is dynamically partitionable in private memory areas for storing data therein and has associated therewith a secrecy tool for securely allocating to the users respective private areas and permitting the users to access the respective private areas via a secure session channel to perform read/write commands in the respective private areas. Typically, the memory/card includes: a card interface controller for managing a physical communication layer between the digital memory and external host equipment, an internal memory having associated therewith a hardware lock to control access to the internal memory, a set of cryptographic modules to manage the secure session channel between the users and the digital memory, and a memory certificate for certifying a public key associated with the digital memory.

    摘要翻译: 诸如用于移动通信设备的存储卡的数字存储器适于被多个用户访问并且具有存储在其中的保护数据。 存储器在专用存储器区域中是可动态分区的,用于在其中存储数据,并且具有与其相关联的保密工具,用于安全地向用户分配各自的专用区域,并允许用户经由安全会话通道访问相应的专用区域以执行读/写命令 在各自的私人地区。 通常,存储器/卡包括:用于管理数字存储器和外部主机设备之间的物理通信层的卡接口控制器,具有与其相关联的硬件锁定以控制对内部存储器的访问的内部存储器,一组加密模块, 管理用户和数字存储器之间的安全会话通道,以及用于验证与数字存储器相关联的公钥的存储器证书。

    Method and system for controlling resources via a mobile terminal, related network and computer program product therefor
    3.
    发明申请
    Method and system for controlling resources via a mobile terminal, related network and computer program product therefor 有权
    通过移动终端,相关网络和计算机程序产品来控制资源的方法和系统

    公开(公告)号:US20070054655A1

    公开(公告)日:2007-03-08

    申请号:US10575621

    申请日:2003-10-14

    IPC分类号: H04M1/66 H04M1/68

    摘要: Access to resources is controlled via a mobile terminal operatively connected to a network operator, wherein the mobile terminal has an associated authentication module configured for authenticating the mobile terminal with the network operator. The method includes the steps of providing in the mobile terminal at least one facility having authentication capability and adapted for accessing the resources, and authenticating the authentication module with the at least one facility, whereby the at least one facility is authenticated with the network operator via the authentication module.

    摘要翻译: 通过可操作地连接到网络运营商的移动终端来控制对资源的访问,其中移动终端具有配置用于与网络运营商认证移动终端的相关联的认证模块。 该方法包括以下步骤:在移动终端中提供具有认证能力并且适于访问资源的至少一个设施,以及用至少一个设施认证认证模块,由此至少一个设施通过网络运营商经过 认证模块。

    Method and system for controlling resources via a mobile terminal, related network and computer program product therefor
    4.
    发明授权
    Method and system for controlling resources via a mobile terminal, related network and computer program product therefor 有权
    通过移动终端,相关网络和计算机程序产品来控制资源的方法和系统

    公开(公告)号:US07734279B2

    公开(公告)日:2010-06-08

    申请号:US10575621

    申请日:2003-10-14

    IPC分类号: H04M1/66

    摘要: Access to resources is controlled via a mobile terminal operatively connected to a network operator, wherein the mobile terminal has an associated authentication module configured for authenticating the mobile terminal with the network operator. The method includes the steps of providing in the mobile terminal at least one facility having authentication capability and adapted for accessing the resources, and authenticating the authentication module with the at least one facility, whereby the at least one facility is authenticated with the network operator via the authentication module.

    摘要翻译: 通过可操作地连接到网络运营商的移动终端来控制对资源的访问,其中移动终端具有配置用于与网络运营商认证移动终端的相关联的认证模块。 该方法包括以下步骤:在移动终端中提供具有认证能力并且适于访问资源的至少一个设施,以及用至少一个设施认证认证模块,由此至少一个设施通过网络运营商经过 认证模块。

    Method of and system for secure management of data stored on electronic tags
    5.
    发明授权
    Method of and system for secure management of data stored on electronic tags 有权
    用于安全管理存储在电子标签上的数据的方法和系统

    公开(公告)号:US08265282B2

    公开(公告)日:2012-09-11

    申请号:US11659946

    申请日:2004-08-13

    IPC分类号: H04L29/06

    摘要: A method of secure management of data records stored in an RFID (Radio Frequency Identification) tag includes data fields whose contents are provided by different parties. Some of the data-fields contain public information data accessible to authorized end users. The data records are stored in encrypted form by encrypting data provided by different parties with different keys so as to set different access rights for contents providers and end users. The end users are supplied only with the keys allowing access to information data fields, whereas proprietary data are accessible only to the data owners. The keys are provided to the users in encrypted form.

    摘要翻译: 存储在RFID(射频识别)标签中的数据记录的安全管理的方法包括其内容由不同方提供的数据字段。 一些数据字段包含授权最终用户可访问的公共信息数据。 数据记录以加密形式存储,通过用不同的密钥加密不同方提供的数据,以便为内容提供商和最终用户设置不同的访问权限。 最终用户只能提供允许访问信息数据字段的密钥,而专有数据只能由数据所有者访问。 密钥以加密形式提供给用户。

    Method of and System For Secure Management of Data Stored on Electronic Tags
    8.
    发明申请
    Method of and System For Secure Management of Data Stored on Electronic Tags 有权
    用于电子标签存储的数据的安全管理的方法和系统

    公开(公告)号:US20080175390A1

    公开(公告)日:2008-07-24

    申请号:US11659946

    申请日:2004-08-13

    IPC分类号: H04L9/08

    摘要: A method of secure management of data records stored in an RFID (Radio Frequency Identification) tag includes data fields whose contents are provided by different parties. Some of the data-fields contain public information data accessible to authorised end users. The data records are stored in encrypted form by encrypting data provided by different parties with different keys so as to set different access rights for contents providers and end users. The end users are supplied only with the keys allowing access to information data fields, whereas proprietary data are accessible only to the data owners. The keys are provided to the users in encrypted form.

    摘要翻译: 存储在RFID(射频识别)标签中的数据记录的安全管理的方法包括其内容由不同方提供的数据字段。 一些数据字段包含授权最终用户可访问的公共信息数据。 数据记录以加密形式存储,通过用不同的密钥加密不同方提供的数据,以便为内容提供商和最终用户设置不同的访问权限。 最终用户只能提供允许访问信息数据字段的密钥,而专有数据只能由数据所有者访问。 密钥以加密形式提供给用户。