KEY TREE CONSTRUCTION AND KEY DISTRIBUTION METHOD FOR HIERARCHICAL ROLE-BASED ACCESS CONTROL
    2.
    发明申请
    KEY TREE CONSTRUCTION AND KEY DISTRIBUTION METHOD FOR HIERARCHICAL ROLE-BASED ACCESS CONTROL 有权
    用于基于层次角色访问控制的关键树构造和关键分配方法

    公开(公告)号:US20110150224A1

    公开(公告)日:2011-06-23

    申请号:US12786811

    申请日:2010-05-25

    IPC分类号: H04L9/00

    CPC分类号: H04L9/0836

    摘要: A key tree construction and key distribution method for hierarchical role-based access control, includes: constructing a key tree including relationships between a hierarchical structure of role groups and data; performing encryption and decryption of data keys and role keys; and generating a key table, in which the data keys required to decrypt encrypted data and the role keys required to decrypt encrypted data keys are stored, with reference to the key tree. Further, the key tree construction and key distribution method for hierarchical role-based access control includes performing management such that a specific role group can obtain a data key by performing decryption based on its own role key by using both the key tree and the key table.

    摘要翻译: 层次化角色访问控制的关键树结构和密钥分配方法,包括:构建一个包括角色组和数据层次结构之间关系的密钥树; 执行数据密钥和角色密钥的加密和解密; 并且生成密钥表,其中参照密钥树存储解密加密数据所需的数据密钥和解密加密数据密钥所需的角色密钥。 此外,层次化的基于角色的访问控制的密钥树构造和密钥分发方法包括执行管理,使得特定角色组可以通过使用密钥树和密钥表两者通过基于其自己的角色密钥执行解密来获得数据密钥 。

    PORTABLE MOBILE APPARATUS PROVIDING SUPPLEMENTARY SERVICE FOR USER AND METHOD THEREOF
    3.
    发明申请
    PORTABLE MOBILE APPARATUS PROVIDING SUPPLEMENTARY SERVICE FOR USER AND METHOD THEREOF 有权
    便携式移动设备为用户提供补充服务及其方法

    公开(公告)号:US20120083213A1

    公开(公告)日:2012-04-05

    申请号:US13248761

    申请日:2011-09-29

    IPC分类号: H04W88/02 H04B7/00

    摘要: The prevent invention relates to a portable mobile apparatus for a user for providing a supplementary service and a method for providing a supplementary service by using the same, and more particularly, to an apparatus and a method for providing supplementary enhanced services by using an application run in a portable mobile terminal when the portable mobile terminal such as a cellular phone or a smart phone is used for a service through short-range RF communication. The present invention can provide a variety of supplementary services to the user by using an operation function included in the application in the mobile terminal when performing the services through the short-range RF communication. Specifically, it is possible to automate the supplementary function or provide convenience to the user and interact with the user.

    摘要翻译: 本发明涉及一种用于用户提供补充业务的便携式移动装置和一种通过使用该补充业务提供补充业务的方法,更具体地说,涉及一种通过使用应用程序运行来提供补充增强业务的装置和方法 在便携式移动终端中,当诸如蜂窝电话或智能电话的便携式移动终端被用于通过短程RF通信的服务时。 本发明可以通过在通过短距离RF通信执行服务时使用包括在移动终端中的应用中的操作功能来向用户提供各种补充服务。 具体地,可以使辅助功能自动化或者为用户提供便利并与用户交互。

    Portable mobile apparatus providing supplementary service for user and method thereof
    4.
    发明授权
    Portable mobile apparatus providing supplementary service for user and method thereof 有权
    为用户提供补充服务的便携式移动装置及其方法

    公开(公告)号:US08731472B2

    公开(公告)日:2014-05-20

    申请号:US13248761

    申请日:2011-09-29

    摘要: The prevent invention relates to a portable mobile apparatus for a user for providing a supplementary service and a method for providing a supplementary service by using the same, and more particularly, to an apparatus and a method for providing supplementary enhanced services by using an application run in a portable mobile terminal when the portable mobile terminal such as a cellular phone or a smart phone is used for a service through short-range RF communication. The present invention can provide a variety of supplementary services to the user by using an operation function included in the application in the mobile terminal when performing the services through the short-range RF communication. Specifically, it is possible to automate the supplementary function or provide convenience to the user and interact with the user.

    摘要翻译: 本发明涉及一种用于用户提供补充业务的便携式移动装置和一种通过使用该补充业务提供补充业务的方法,更具体地说,涉及一种通过使用应用程序运行来提供补充增强业务的装置和方法 在便携式移动终端中,当诸如蜂窝电话或智能电话的便携式移动终端被用于通过短程RF通信的服务时。 本发明可以通过在通过短距离RF通信执行服务时使用包括在移动终端中的应用中的操作功能来向用户提供各种补充服务。 具体地,可以使辅助功能自动化或者为用户提供便利并与用户交互。

    Mobile terminal for sharing resources, method of sharing resources within mobile terminal and method of sharing resources between web server and terminal
    5.
    发明授权
    Mobile terminal for sharing resources, method of sharing resources within mobile terminal and method of sharing resources between web server and terminal 有权
    用于共享资源的移动终端,移动终端内共享资源的方法和Web服务器与终端之间共享资源的方法

    公开(公告)号:US08504832B2

    公开(公告)日:2013-08-06

    申请号:US13189352

    申请日:2011-07-22

    IPC分类号: H04L29/06 H04L9/32

    摘要: Provided are a mobile terminal for sharing resources, a method of sharing resources within a mobile terminal and a method of sharing resources between a web server and a terminal. The mobile terminal for sharing resources includes a web browser using a web standard protocol to display a first random value, an authentication number, and a Distinguished Name (DN) of web server transferred from the web server after it has been determined that there is no key information in a cookie; and a resource when the first random value and the DN are received from the web browser, being terminated after storing the first random value and the DN, and when the resource is re-executed and the authentication number is input by a user, verifying the first random value, generating a second random value and a shared key from the first random value and generating a symmetric key using a part of the shared key, wherein the shared key is generated from the second random value based on the symmetric key, and the symmetric key is identical to a symmetric key of the web server generated from a part of the symmetric key, and the web browser and the resources are operated by an execution unit.

    摘要翻译: 提供了用于共享资源的移动终端,在移动终端内共享资源的方法以及在web服务器和终端之间共享资源的方法。 用于共享资源的移动终端包括使用网络标准协议的Web浏览器,以便在确定没有网络服务器之后显示从web服务器传送的web服务器的第一随机值,认证号码和识别名称(DN) cookie中的关键信息; 以及当从web浏览器接收到第一随机值和DN时的资源,在存储第一随机值和DN之后被终止,并且当资源被重新执行并且认证号码被用户输入时,验证 第一随机值,从第一随机值生成第二随机值和共享密钥,并使用共享密钥的一部分生成对称密钥,其中,基于对称密钥从第二随机值生成共享密钥,并且 对称密钥与从对称密钥的一部分生成的Web服务器的对称密钥相同,并且Web浏览器和资源由执行单元操作。

    Key tree construction and key distribution method for hierarchical role-based access control
    6.
    发明授权
    Key tree construction and key distribution method for hierarchical role-based access control 有权
    基于层次化角色访问控制的密钥树构建和密钥分发方法

    公开(公告)号:US08447037B2

    公开(公告)日:2013-05-21

    申请号:US12786811

    申请日:2010-05-25

    CPC分类号: H04L9/0836

    摘要: A key tree construction and key distribution method for hierarchical role-based access control, includes: constructing a key tree including relationships between a hierarchical structure of role groups and data; performing encryption and decryption of data keys and role keys; and generating a key table, in which the data keys required to decrypt encrypted data and the role keys required to decrypt encrypted data keys are stored, with reference to the key tree. Further, the key tree construction and key distribution method for hierarchical role-based access control includes performing management such that a specific role group can obtain a data key by performing decryption based on its own role key by using both the key tree and the key table.

    摘要翻译: 层次化角色访问控制的关键树结构和密钥分配方法,包括:构建一个包括角色组和数据层次结构之间关系的密钥树; 执行数据密钥和角色密钥的加密和解密; 并且生成密钥表,其中参照密钥树存储解密加密数据所需的数据密钥和解密加密数据密钥所需的角色密钥。 此外,层次化的基于角色的访问控制的密钥树构造和密钥分发方法包括执行管理,使得特定角色组可以通过使用密钥树和密钥表两者通过基于其自己的角色密钥执行解密来获得数据密钥 。

    APPARATUS AND METHOD FOR COOPERATIVELY OPERATING WEB BROWSER AND LOCAL RESOURCE IN MOBILE TERMINAL
    7.
    发明申请
    APPARATUS AND METHOD FOR COOPERATIVELY OPERATING WEB BROWSER AND LOCAL RESOURCE IN MOBILE TERMINAL 审中-公开
    网络浏览器和移动终端当地资源的合作操作的方法和方法

    公开(公告)号:US20110264770A1

    公开(公告)日:2011-10-27

    申请号:US13091767

    申请日:2011-04-21

    IPC分类号: G06F15/16

    CPC分类号: G06F16/972

    摘要: An apparatus for cooperatively operating a Web browser and a local resource in a mobile terminal includes a Web browser for receiving a Web page requesting a local resource from a Web server connected to the mobile terminal; and a gateway server for controlling the local resource with parameters of the Web page and transmitting information regarding execution results of the local resource to the Web server by way of the Web browser. The parameters of the Web page include at least one of an ID of the Web server, a callback address (CallbackURL), a requested local resource function, and signature information.

    摘要翻译: 用于在移动终端中协同操作Web浏览器和本地资源的装置包括:Web浏览器,用于从连接到移动终端的Web服务器接收请求本地资源的网页; 以及网关服务器,用于通过所述网页的参数来控制所述本地资源,并且通过所述Web浏览器向所述Web服务器发送关于所述本地资源的执行结果的信息。 Web页面的参数包括Web服务器的ID,回调地址(CallbackURL),请求的本地资源功能和签名信息中的至少一个。

    Method and system for transmitting and receiving user's personal information using agent
    8.
    发明授权
    Method and system for transmitting and receiving user's personal information using agent 有权
    使用代理人发送和接收用户个人信息的方法和系统

    公开(公告)号:US08769276B2

    公开(公告)日:2014-07-01

    申请号:US12097179

    申请日:2006-12-06

    IPC分类号: H04L9/32

    CPC分类号: G06F21/51 G06F21/6245

    摘要: A method and system for transmitting and receiving user's personal information using an agent are provided. An information management server managing user's personal information provides an agent including user's personal information in response to a user's personal information request message from a client. A client receives the agent and requests user's personal information from the agent. Then, the agent determines whether the client is authorized and provides the user's personal information to the client when it is determined that the client is authorized. Accordingly, the user's personal information is safely managed and transmitted.

    摘要翻译: 提供了一种使用代理发送和接收用户个人信息的方法和系统。 管理用户个人信息的信息管理服务器响应于来自客户端的用户的个人信息请求消息提供包括用户个人信息的代理。 客户端接收代理并从代理请求用户的个人信息。 然后,当确定客户端被授权时,代理确定客户端是否被授权并且向客户端提供用户的个人信息。 因此,用户的个人信息被安全地管理和发送。

    Internet Access Time Control Method Using Authentication Assertion
    9.
    发明申请
    Internet Access Time Control Method Using Authentication Assertion 审中-公开
    使用认证断言的互联网访问时间控制方法

    公开(公告)号:US20080172721A1

    公开(公告)日:2008-07-17

    申请号:US11720911

    申请日:2005-02-24

    IPC分类号: G06F21/20

    摘要: An Internet access time control method using an authentication assertion is provided. In the method, a user ID is registered in an asserting party site in a single sign-on (SSO) environment by using a user terminal. The asserting party site manages user IDs for providing an SSO service. Control setup values are set in the asserting party site by using the user terminal. Here, the control setup values include an Internet usage duration and an Internet access-restricted time band for the user. A service time of a relying party site accessed by the user terminal is controlled according to an authentication assertion containing the control setup values. Accordingly, the method makes it possible not only to control Internet usage time, but also to prevent the child from unreasonably using the Internet.

    摘要翻译: 提供了使用认证断言的因特网访问时间控制方法。 在该方法中,通过使用用户终端,在单点登录(SSO)环境中的用户ID登记在断言方站点。 断言方站点管理用于提供SSO服务的用户ID。 使用用户终端在断言方站点中设置控制设置值。 这里,控制设置值包括用户的因特网使用持续时间和因特网访问受限时间带。 根据包含控制设置值的认证断言来控制由用户终端访问的依赖方站点的服务时间。 因此,该方法不仅可以控制因特网使用时间,而且可以防止孩子不合理地使用因特网。

    METHOD AND APPARATUS FOR TRANSMITTING MESSAGE IN HETEROGENEOUS FEDERATED ENVIRONMENT, AND METHOD AND APPARATUS FOR PROVIDING SERVICE USING THE MESSAGE
    10.
    发明申请
    METHOD AND APPARATUS FOR TRANSMITTING MESSAGE IN HETEROGENEOUS FEDERATED ENVIRONMENT, AND METHOD AND APPARATUS FOR PROVIDING SERVICE USING THE MESSAGE 审中-公开
    在异源联合环境中传输消息的方法和装置,以及使用消息提供服务的方法和装置

    公开(公告)号:US20100191954A1

    公开(公告)日:2010-07-29

    申请号:US12095560

    申请日:2006-12-01

    IPC分类号: G06F15/16 G06F21/00 H04L9/00

    CPC分类号: H04L63/0815 H04L63/0428

    摘要: Provided are a method and apparatus for transmitting a message in a heterogeneous federated environment, and a method and apparatus for providing a service according to the message. In the method of transmitting a message to an external domain in the heterogeneous federated environment, a service server of a domain creates a transmission message to be transmitted to the external domain and supplies it to a protocol interpretation unit of the domain. The protocol interpretation unit detects protocol information of the external domain, interprets the created transmission message based on the detected protocol information, and supplies the interpreted transmission message to the service server. The service server then supplies the interpreted transmission message to the external domain. Accordingly, two service servers in different domains with different protocol information can exchange messages with each other while guaranteeing security.

    摘要翻译: 提供了一种用于在异构联合环境中发送消息的方法和装置,以及根据该消息提供服务的方法和装置。 在异构联盟环境中向外部域发送消息的方法中,域的服务服务器创建要发送到外部域的传输消息并将其提供给域的协议解释单元。 协议解读单元检测外部域的协议信息,根据检测到的协议信息对创建的传输消息进行解释,并将解释后的传输消息提供给业务服务器。 然后,服务服务器将解释的传输消息提供给外部域。 因此,具有不同协议信息的不同域中的两个服务服务器可以彼此交换消息,同时保证安全性。