-
公开(公告)号:US10785025B1
公开(公告)日:2020-09-22
申请号:US16171971
申请日:2018-10-26
Applicant: Cisco Technology, Inc.
Inventor: Matthew A. Miller , Andrew Biggs , Bo Zou , Panos Kozanian
Abstract: Presented herein are techniques for synchronizing a cloud service and a key management service via a single indirect synchronous message sent by a client device. In particular, a cloud service receives a service request message sent by a client device. Embedded into the service request message is an encrypted key management message. The cloud service is configured to extract the encrypted key management message from the service request message and then send the encrypted key management message to the key management service.
-
公开(公告)号:US10230703B1
公开(公告)日:2019-03-12
申请号:US15335928
申请日:2016-10-27
Applicant: Cisco Technology, Inc.
Inventor: Michael P. Lepore , Scot DeDeo , Carl M. Phillips , Andrew Biggs , Matthew A. Miller
Abstract: A first data item is encrypted at a client device using a first encryption key. The encrypted first data item is included in a data object. A second encryption key is received at the client device from a key management device. The first encryption key is encrypted using the second encryption key. The encrypted first encryption key is included in the data object, and the data object is stored at a storage device.
-
公开(公告)号:US10158486B1
公开(公告)日:2018-12-18
申请号:US15231878
申请日:2016-08-09
Applicant: Cisco Technology, Inc.
Inventor: Matthew A. Miller , Andrew Biggs , Bo Zou , Panos Kozanian
Abstract: Presented herein are techniques for synchronizing a cloud service and a key management service via a single indirect synchronous message sent by a client device. In particular, a cloud service receives a service request message sent by a client device. Embedded into the service request message is an encrypted key management message. The cloud service is configured to extract the encrypted key management message from the service request message and then send the encrypted key management message to the key management service.
-
公开(公告)号:US10171496B2
公开(公告)日:2019-01-01
申请号:US15000507
申请日:2016-01-19
Applicant: Cisco Technology, Inc.
Inventor: Sean Whitsell , Cullen Jennings , Andrew Biggs , Patrick Linskey
Abstract: In one embodiment, a beacon signal is received from a beacon device. Either a mobile device or a server identifies a beacon authentication value from the beacon signal. Either the mobile device or the server calculates a local verification value from a security algorithm. A comparison of the authentication value to the local verification value is performed, and a location service is provided based on the comparison.
-
公开(公告)号:US20170208091A1
公开(公告)日:2017-07-20
申请号:US15000507
申请日:2016-01-19
Applicant: Cisco Technology, Inc.
Inventor: Sean Whitsell , Cullen Jennings , Andrew Biggs , Patrick Linskey
CPC classification number: H04L63/1483 , H04L63/0838 , H04W4/023 , H04W64/00
Abstract: In one embodiment, a beacon signal is received from a beacon device. Either a mobile device or a server identifies a beacon authentication value from the beacon signal. Either the mobile device or the server calculates a local verification value from a security algorithm. A comparison of the authentication value to the local verification value is performed, and a location service is provided based on the comparison.
-
公开(公告)号:US10104084B2
公开(公告)日:2018-10-16
申请号:US14942195
申请日:2015-11-16
Applicant: Cisco Technology, Inc.
Inventor: Andrew Biggs , Shaun Cooley , Matt Miller , Hua Cui , Ian Remmel
Abstract: Techniques are provided for augmenting the capabilities of the standard OAuth2 authorization framework in such a way as to allow clients to consume the services of multiple resource servers residing in disjoint security domains while requiring only a single one-time user authentication. An access token that provides access to resource services distributed across a plurality of security domains is partitioned into a plurality of reduced-scope access tokens. Each reduced-scope access token is limited to a subset of authorization scopes of the access token, providing access to a resource service in a particular security domain based upon the subset.
-
公开(公告)号:US09871775B2
公开(公告)日:2018-01-16
申请号:US14943184
申请日:2015-11-17
Applicant: Cisco Technology, Inc.
Inventor: Andrew Biggs , Shaun Cooley , Matt Miller , Sean Whitsell
CPC classification number: H04L63/065 , H04L9/0833 , H04L9/3242 , H04L9/3255 , H04L51/04 , H04L63/0435 , H04L63/123
Abstract: A system and method for achieving authorization in confidential group communications in terms of an ordered list of data blocks representing a tamper-resistant chronological account of group membership updates. This method permits ad-hoc and decentralized group definition, dynamic and decentralized membership updates, open sharing, tamper resistance, and tracking of membership history. There are many applications of these techniques. One such application is enabling end-to-end encryption of instant messaging, content sharing, and streamed media.
-
公开(公告)号:US10021080B2
公开(公告)日:2018-07-10
申请号:US15830291
申请日:2017-12-04
Applicant: Cisco Technology, Inc.
Inventor: Andrew Biggs , Shaun Cooley , Matt Miller , Sean Whitsell
CPC classification number: H04L63/065 , H04L9/0833 , H04L9/3242 , H04L9/3255 , H04L51/04 , H04L63/0435 , H04L63/123
Abstract: A system and method for achieving authorization in confidential group communications in terms of an ordered list of data blocks representing a tamper-resistant chronological account of group membership updates. This method permits ad-hoc and decentralized group definition, dynamic and decentralized membership updates, open sharing, tamper resistance, and tracking of membership history. There are many applications of these techniques. One such application is enabling end-to-end encryption of instant messaging, content sharing, and streamed media.
-
公开(公告)号:US20180091489A1
公开(公告)日:2018-03-29
申请号:US15830291
申请日:2017-12-04
Applicant: Cisco Technology, Inc.
Inventor: Andrew Biggs , Shaun Cooley , Matt Miller , Sean Whitsell
CPC classification number: H04L63/065 , H04L9/0833 , H04L9/3242 , H04L9/3255 , H04L51/04 , H04L63/0435 , H04L63/123
Abstract: A system and method for achieving authorization in confidential group communications in terms of an ordered list of data blocks representing a tamper-resistant chronological account of group membership updates. This method permits ad-hoc and decentralized group definition, dynamic and decentralized membership updates, open sharing, tamper resistance, and tracking of membership history. There are many applications of these techniques. One such application is enabling end-to-end encryption of instant messaging, content sharing, and streamed media.
-
公开(公告)号:US20170048217A1
公开(公告)日:2017-02-16
申请号:US14943184
申请日:2015-11-17
Applicant: Cisco Technology, Inc.
Inventor: Andrew Biggs , Shaun Cooley , Matt Miller , Sean Whitsell
CPC classification number: H04L63/065 , H04L9/0833 , H04L9/3242 , H04L9/3255 , H04L51/04 , H04L63/0435 , H04L63/123
Abstract: A system and method for achieving authorization in confidential group communications in terms of an ordered list of data blocks representing a tamper-resistant chronological account of group membership updates. This method permits ad-hoc and decentralized group definition, dynamic and decentralized membership updates, open sharing, tamper resistance, and tracking of membership history. There are many applications of these techniques. One such application is enabling end-to-end encryption of instant messaging, content sharing, and streamed media.
Abstract translation: 关于代表组成员更新的防篡改时间表的数据块的有序列表,在机密组通信中实现授权的系统和方法。 这种方法允许临时和分散的组定义,动态和分散的成员资格更新,公开分享,篡改阻力和跟踪成员资格历史。 这些技术有很多应用。 一种这样的应用是实现即时消息,内容共享和流媒体的端到端加密。
-
-
-
-
-
-
-
-
-