User opt-in processor feature control capability
    7.
    发明申请
    User opt-in processor feature control capability 有权
    用户选择加入处理器功能控制功能

    公开(公告)号:US20060026525A1

    公开(公告)日:2006-02-02

    申请号:US10900875

    申请日:2004-07-28

    IPC分类号: G06F17/00

    摘要: A processor includes a feature control unit to enable or disable one or more processor features individually in response to a user selectable setting. The feature control unit is adapted to disable the processor feature(s) if the user setting has not been updated in accordance with an input regardless of the value of the user setting prior to the update and to enable or disable the processor feature(s) in accordance with the updated user setting after it has been updated. The feature control unit may also include a lock unit to prevent changes to the updated user setting and a software feature selection unit to enable or disable processor features in response to a software feature selection setting and, optionally, only enable or disable processor features whose corresponding updated user setting is user enabled. The feature control unit may also include mechanisms to detect illegal feature selection conditions.

    摘要翻译: 处理器包括特征控制单元,以响应于用户可选择的设置来单独启用或禁用一个或多个处理器特征。 如果没有根据输入更新用户设置而不考虑更新之前的用户设置的值,并且启用或禁用处理器特征,则特征控制单元适于禁用处理器特征, 根据更新后的用户设置进行更新。 特征控制单元还可以包括用于防止更新的用户设置的改变的锁定单元和软件特征选择单元以响应于软件特征选择设置来启用或禁用处理器特征,并且可选地,仅启用或禁用其相应的处理器特征 更新的用户设置是用户启用的。 特征控制单元还可以包括检测非法特征选择条件的机制。

    Method of delivering direct proof private keys to devices using a distribution CD
    9.
    发明申请
    Method of delivering direct proof private keys to devices using a distribution CD 有权
    使用分发CD向设备提供直接验证私钥的方法

    公开(公告)号:US20060013399A1

    公开(公告)日:2006-01-19

    申请号:US10892265

    申请日:2004-07-14

    IPC分类号: H04L9/00

    摘要: Delivering a Direct Proof private key to a device installed in a client computer system in the field may be accomplished in a secure manner without requiring significant non-volatile storage in the device. A unique pseudo-random value is generated and stored in the device at manufacturing time. The pseudo-random value is used to generate a symmetric key for encrypting a data structure holding a Direct Proof private key and a private key digest associated with the device. The resulting-encrypted data structure is stored on a removable storage medium (such as a CD), and distributed to the owner of the client computer system. When the device is initialized on the client computer system, the system checks if a localized encrypted data structure is present in the system. If not, the system obtains the associated encrypted data structure from the removable storage medium. The device decrypts the encrypted data structure using a symmetric key regenerated from its stored pseudo-random value to obtain the Direct Proof private key. If the private key is valid, it may be used for subsequent authentication processing by the device in the client computer system.

    摘要翻译: 将直接证明私钥提供给安装在该领域中的客户端计算机系统中的设备可以以安全的方式来实现,而不需要设备中的显着的非易失性存储。 在制造时产生并存储在设备中的唯一伪随机值。 伪随机值用于生成用于加密持有Direct Proof私钥和与该设备相关联的私钥摘要的数据结构的对称密钥。 所得到的加密数据结构存储在可移动存储介质(例如CD)上,并分发给客户端计算机系统的所有者。 当在客户端计算机系统上初始化设备时,系统会检查系统中是否存在本地化的加密数据结构。 如果不是,系统从可移动存储介质中获得相关联的加密数据结构。 设备使用从其存储的伪随机值重新生成的对称密钥来解密加密数据结构,以获得直接证明私钥。 如果私钥有效,则其可以用于客户端计算机系统中的设备的后续认证处理。