System and method facilitating secure credential management
    1.
    发明授权
    System and method facilitating secure credential management 有权
    促进安全凭证管理的系统和方法

    公开(公告)号:US07783891B2

    公开(公告)日:2010-08-24

    申请号:US10787871

    申请日:2004-02-25

    IPC分类号: G06F21/00 H04L9/32

    CPC分类号: G06F21/83 G06F21/31

    摘要: A system and method facilitating secure credential management is provided. An aspect of the present invention provides for a credential management system including a credential user interface component, a trusted proxy component and a secure user interface component. The system can facilitate the secure acquisition, storage and/or application of credential(s) for a user (e.g., when accessing a particular resource) through a secure, isolated environment. For example, the system can be a core building block for operating system component(s) and/or application(s) that handle credential(s) in a secure manner.

    摘要翻译: 提供了一种促进安全凭证管理的系统和方法。 本发明的一个方面提供了一种包括凭证用户界面组件,可信代理组件和安全用户界面组件的凭证管理系统。 该系统可以通过安全的隔离环境促进对用户的证书的安全获取,存储和/或应用(例如,当访问特定资源时)。 例如,系统可以是用于以安全的方式处理凭​​证的操作系统组件和/或应用的核心构建块。

    Secure privilege elevation by way of secure desktop on computing device
    2.
    发明授权
    Secure privilege elevation by way of secure desktop on computing device 有权
    通过计算设备上的安全桌面的安全特权提升

    公开(公告)号:US07832004B2

    公开(公告)日:2010-11-09

    申请号:US11502813

    申请日:2006-08-10

    IPC分类号: G06F12/00

    CPC分类号: G06F21/74

    摘要: A computing device has a user desktop on which a relatively less-secure user application is executed and a secure desktop elevated from the user desktop on which a relatively more-secure secure application is executed upon a request thereto from the user application. To securely collect information from a user at the computer device with regard to the secure application at the secure desktop, an access interface is securely executed on the secure desktop and is visually presented in conjunction with the requesting user application of the user desktop such that the access interface is visually coupled to the requesting user application and is visually perceived by the user along with such requesting user application.

    摘要翻译: 计算设备具有在其上执行相对较不安全的用户应用程序的用户桌面,并且从用户桌面升级的安全桌面,在用户桌面上,根据用户应用程序的请求,执行相对更安全的安全应用程序。 为了安全地收集来自计算机设备的用户在安全桌面上的安全应用的信息,在安全桌面上安全地执行访问接口,并且与用户桌面的请求用户应用程序可视地呈现,使得 访问接口可视地耦合到请求用户应用,并且与用户应用一起被用户视觉上感知。

    Secure privilege elevation by way of secure desktop on computing device
    3.
    发明申请
    Secure privilege elevation by way of secure desktop on computing device 有权
    通过计算设备上的安全桌面的安全特权提升

    公开(公告)号:US20080040797A1

    公开(公告)日:2008-02-14

    申请号:US11502813

    申请日:2006-08-10

    IPC分类号: G06F12/14

    CPC分类号: G06F21/74

    摘要: A computing device has a user desktop on which a relatively less-secure user application is executed and a secure desktop elevated from the user desktop on which a relatively more-secure secure application is executed upon a request thereto from the user application. To securely collect information from a user at the computer device with regard to the secure application at the secure desktop, an access interface is securely executed on the secure desktop and is visually presented in conjunction with the requesting user application of the user desktop such that the access interface is visually coupled to the requesting user application and is visually perceived by the user along with such requesting user application.

    摘要翻译: 计算设备具有在其上执行相对较不安全的用户应用程序的用户桌面,并且从用户桌面升级的安全桌面,在用户桌面上,根据用户应用程序的请求,执行相对更安全的安全应用程序。 为了安全地收集来自计算机设备的用户在安全桌面上的安全应用的信息,在安全桌面上安全地执行访问接口,并且与用户桌面的请求用户应用程序可视地呈现,使得 访问接口可视地耦合到请求用户应用,并且与用户应用一起被用户视觉上感知。

    Controlling computer applications' access to data
    5.
    发明授权
    Controlling computer applications' access to data 有权
    控制计算机应用程序访问数据

    公开(公告)号:US07802294B2

    公开(公告)日:2010-09-21

    申请号:US11046281

    申请日:2005-01-28

    IPC分类号: G06F7/04

    摘要: Systems and methods are described that control attempts made by an application to access data. In one embodiment, the application is associated with a security token that includes an application ID. In operation, the system receives a request, initiated by the application, for access to the data. The system is configured to evaluate the request for access based in part on comparison of the security token and a listing of approved application IDs associated with the data.

    摘要翻译: 描述了控制由应用访问数据的尝试的系统和方法。 在一个实施例中,该应用与包括应用ID的安全令牌相关联。 在操作中,系统接收由应用程序启动的用于访问数据的请求。 该系统被配置为基于安全令牌的比较和与数据相关联的已批准应用ID的列表来部分地评估访问请求。

    Performance optimized smartcard transaction management
    7.
    发明授权
    Performance optimized smartcard transaction management 有权
    性能优化智能卡交易管理

    公开(公告)号:US07783573B2

    公开(公告)日:2010-08-24

    申请号:US10756045

    申请日:2004-01-13

    IPC分类号: G06Q99/00

    摘要: Methods and apparatuses are provided for use with smartcards or other like shared computing resources. By selectively granting exclusive use to a requesting entity for a period of time, performance is improved by reducing unnecessary redundant overhead data, communication, storage and/or processing for an applicable series of transactions associated with a granted access request operation.

    摘要翻译: 提供了与智能卡或其他类似的共享计算资源一起使用的方法和装置。 通过选择性地向请求实体授权一段时间,通过减少对与授权的访问请求操作相关联的一系列适用的事务的不必要的冗余开销数据,通信,存储和/或处理来提高性能。

    Global smartcard cache methods and apparatuses
    10.
    发明授权
    Global smartcard cache methods and apparatuses 有权
    全球智能卡缓存方法和设备

    公开(公告)号:US07664916B2

    公开(公告)日:2010-02-16

    申请号:US10752745

    申请日:2004-01-06

    IPC分类号: G06F12/00

    摘要: Methods and apparatuses are provided for use with smartcards or other like shared computing resources. A global smartcard cache is maintained on one or more computers to reduce the burden on the smartcard. The global smartcard cache data is associated with a freshness indicator that is compared to the current freshness indicator from the smartcard to verify that the cached item data is current.

    摘要翻译: 提供了与智能卡或其他类似的共享计算资源一起使用的方法和装置。 在一台或多台计算机上维护全球智能卡缓存,以减轻智能卡的负担。 全局智能卡高速缓存数据与新鲜度指示器相关联,其与来自智能卡的当前新鲜度指示符进行比较,以验证缓存的项目数据是否为当前值。