MOBILE DEVICE ASSISTED SECURE COMPUTER NETWORK COMMUNICATION
    1.
    发明申请
    MOBILE DEVICE ASSISTED SECURE COMPUTER NETWORK COMMUNICATION 有权
    移动设备辅助安全计算机网络通信

    公开(公告)号:US20090287921A1

    公开(公告)日:2009-11-19

    申请号:US12122126

    申请日:2008-05-16

    IPC分类号: H04L9/32

    摘要: Mobile device assisted secure computer network communications embodiments are presented that employ a mobile device (e.g., a mobile phone, personal digital assistant (PDA), and the like) to assist in user authentication. In general, this is accomplished by having a user enter a password into a client computer which is in contact with a server associated with a secure Web site. This password is integrated with a secret value, which is generated in real time by the mobile device. The secret value is bound to both the mobile device's hardware and the secure Web site being accessed, such that it is unique to both. In this way, a different secret value is generated for each secure Web site accessed, and another user cannot impersonate the user and log into a secure Web site unless he or she knows the password and possesses the user's mobile device simultaneously.

    摘要翻译: 提出了使用移动设备(例如,移动电话,个人数字助理(PDA)等)的移动设备辅助的安全计算机网络通信实施例来协助用户认证。 一般来说,这是通过使用户将密码输入到与与安全网站相关联的服务器联系的客户端计算机来实现的。 这个密码是与移动设备实时生成的秘密值集成的。 秘密值绑定到移动设备的硬件和被访问的安全网站,这两者都是唯一的。 以这种方式,为所访问的每个安全网站生成不同的秘密值,而另一个用户不能模拟用户并登录到安全网站,除非他或她知道密码并同时拥有用户的移动设备。

    Efficient Certified Email Protocol
    2.
    发明申请
    Efficient Certified Email Protocol 有权
    高效的认证电子邮件协议

    公开(公告)号:US20090094452A1

    公开(公告)日:2009-04-09

    申请号:US11868872

    申请日:2007-10-08

    IPC分类号: H04L9/00

    摘要: An exemplary optimistic protocol for a two-party transaction includes a setup sub-protocol that includes an authorized Diffie-Hellman key agreement, an exchange sub-protocol that includes sending a certificate from a sending party to a receiving party and sending a receipt from the receiving party to the sending party and a dispute sub-protocol that includes a dispute resolution mechanism for resolving disputes between the sending party and the receiving party due to sending of an invalid certificate, due to sending an invalid receipt, or due to abortion of the exchange sub-protocol. Other exemplary methods, systems, etc., are also disclosed.

    摘要翻译: 用于双方交易的示例性乐观协议包括设置子协议,其包括授权的Diffie-Hellman密钥协议,交换子协议,其包括从发送方向接收方发送证书,并从 发送方接收方和争议解决协议,包括解决发送方与接收方之间的争议的争议解决机制,因为发送无效证书,由于发送无效收据,或因堕胎 交换子协议。 还公开了其它示例性方法,系统等。

    Efficient certified email protocol
    3.
    发明授权
    Efficient certified email protocol 有权
    高效的认证电子邮件协议

    公开(公告)号:US08341410B2

    公开(公告)日:2012-12-25

    申请号:US11868872

    申请日:2007-10-08

    IPC分类号: H04L29/06

    摘要: An exemplary optimistic protocol for a two-party transaction includes a setup sub-protocol that includes an authorized Diffie-Hellman key agreement, an exchange sub-protocol that includes sending a certificate from a sending party to a receiving party and sending a receipt from the receiving party to the sending party and a dispute sub-protocol that includes a dispute resolution mechanism for resolving disputes between the sending party and the receiving party due to sending of an invalid certificate, due to sending an invalid receipt, or due to abortion of the exchange sub-protocol. Other exemplary methods, systems, etc., are also disclosed.

    摘要翻译: 用于双方交易的示例性乐观协议包括设置子协议,其包括授权的Diffie-Hellman密钥协议,交换子协议,其包括从发送方向接收方发送证书,并从 发送方接收方和争议解决协议,包括解决发送方与接收方之间的争议的争议解决机制,因为发送无效证书,由于发送无效收据,或因堕胎 交换子协议。 还公开了其它示例性方法,系统等。

    Mobile device assisted secure computer network communication
    4.
    发明授权
    Mobile device assisted secure computer network communication 有权
    移动设备辅助安全计算机网络通信

    公开(公告)号:US08209744B2

    公开(公告)日:2012-06-26

    申请号:US12122126

    申请日:2008-05-16

    IPC分类号: G06F21/00

    摘要: Mobile device assisted secure computer network communications embodiments are presented that employ a mobile device (e.g., a mobile phone, personal digital assistant (PDA), and the like) to assist in user authentication. In general, this is accomplished by having a user enter a password into a client computer which is in contact with a server associated with a secure Web site. This password is integrated with a secret value, which is generated in real time by the mobile device. The secret value is bound to both the mobile device's hardware and the secure Web site being accessed, such that it is unique to both. In this way, a different secret value is generated for each secure Web site accessed, and another user cannot impersonate the user and log into a secure Web site unless he or she knows the password and possesses the user's mobile device simultaneously.

    摘要翻译: 提出了使用移动设备(例如,移动电话,个人数字助理(PDA)等)的移动设备辅助的安全计算机网络通信实施例来协助用户认证。 一般来说,这是通过使用户将密码输入到与与安全网站相关联的服务器联系的客户端计算机来实现的。 这个密码是与移动设备实时生成的秘密值集成的。 秘密值绑定到移动设备的硬件和被访问的安全网站,这两者都是唯一的。 以这种方式,为所访问的每个安全网站生成不同的秘密值,而另一个用户不能模拟用户并登录到安全网站,除非他或她知道密码并同时拥有用户的移动设备。

    SYSTEM TO FACILITATE ONLINE SHOPPING
    5.
    发明申请
    SYSTEM TO FACILITATE ONLINE SHOPPING 审中-公开
    制定在线购物体系

    公开(公告)号:US20090299875A1

    公开(公告)日:2009-12-03

    申请号:US12129701

    申请日:2008-05-30

    IPC分类号: G06Q30/00

    CPC分类号: G06Q30/06 G06Q30/0601

    摘要: A system for facilitating online shopping that includes one or more content providers of a first domain, one or more online merchants of a second domain, and a framework. Web pages may be aggregated from the content providers. Descriptions of products for sale may be aggregated from the online merchants. The products for sale may be matched with the web pages based on relevancy. A list of descriptions of products that are relevant to each web page may be provided. A shopping cart list may be maintained by the framework. The shopping cart list may facilitate payment for the products for sale selected from different web pages.

    摘要翻译: 一种用于促进在线购物的系统,其包括第一域的一个或多个内容提供商,第二域的一个或多个在线商家和框架。 可以从内容提供商聚合网页。 可以从在线商家汇总出售产品的描述。 出售的产品可能会根据相关性与网页匹配。 可以提供与每个网页相关的产品的描述的列表。 框架可以维护购物车列表。 购物车列表可以促进从不同网页选择的销售产品的支付。

    Elliptic curve point multiplication
    6.
    发明授权
    Elliptic curve point multiplication 有权
    椭圆曲线点乘法

    公开(公告)号:US07602907B2

    公开(公告)日:2009-10-13

    申请号:US11173251

    申请日:2005-07-01

    IPC分类号: H04K1/00 H04K3/00

    摘要: Systems and methods configured for recoding an odd integer and elliptic curve point multiplication are disclosed, having general utility and also specific application to elliptic curve point multiplication and cryptosystems. In one implementation, the recoding is performed by converting an odd integer k into a binary representation. The binary representation could be, for example, coefficients for powers of two representing the odd integer. The binary representation is then configured as comb bit-columns, wherein every bit-column is a signed odd integer. Another implementation applies this recoding method and discloses a variation of comb methods that computes elliptic curve point multiplication more efficiently and with less saved points than known comb methods. The disclosed point multiplication methods are then modified to be Simple Power Analysis (SPA)-resistant.

    摘要翻译: 公开了用于重新编码奇整数和椭圆曲线点乘法的系统和方法,其具有一般实用性,并且还具体应用于椭圆曲线点乘法和密码系统。 在一个实现中,通过将奇数整数k转换成二进制表示来执行重新编码。 二进制表示可以是例如表示奇整数的两个幂的系数。 然后将二进制表示配置为梳状位列,其中每个位列是带符号的奇整数。 另一种实现方式应用这种重新编码方法,并且公开了一种梳理方法的变体,它们比已知的梳理方法更有效地计算椭圆曲线点乘积并且具有较少的保存点。 然后将所公开的点乘法方法修改为抗电阻简单功率分析(SPA)。

    Content Encryption Schema For Integrating Digital Rights Management With Encrypted Multicast
    7.
    发明申请
    Content Encryption Schema For Integrating Digital Rights Management With Encrypted Multicast 有权
    用于将数字版权管理与加密组播集成的内容加密模式

    公开(公告)号:US20080165956A1

    公开(公告)日:2008-07-10

    申请号:US11621445

    申请日:2007-01-09

    申请人: Bin Zhu Min Feng

    发明人: Bin Zhu Min Feng

    摘要: Systems and methods provide a content encryption schema for integrating digital rights management (DRM) in a multicast/broadcast encryption system. In one implementation, an exemplary integrated key schema provides content encryption keys that can be employed by a multicast or broadcast process, while providing DRM protection of recorded multicast content via a single DRM decryption secret. The integrated key schema provides high security and allows encrypted multicast content to be saved directly to local files. A license server can efficiently manage and generate DRM keys to be delivered to clients because only a single key needs to be delivered per license to a client. The integrated key schema can be applied together with conventional broadcast or multicast encryption techniques.

    摘要翻译: 系统和方法提供了一种用于在多播/广播加密系统中集成数字版权管理(DRM)的内容加密模式。 在一个实现中,示例性集成密钥模式提供可以由多播或广播过程采用的内容加密密钥,同时通过单个DRM解密秘密提供对所记录的多播内容的DRM保护。 集成密钥架构提供高安全性,并允许将加密的多播内容直接保存到本地文件。 许可证服务器可以有效地管理和生成要发送到客户端的DRM密钥,因为每个许可证只需要将一个密钥交付给客户端。 集成密钥模式可以与传统的广播或多播加密技术一起应用。

    Secure key management for scalable codestreams
    8.
    发明申请
    Secure key management for scalable codestreams 有权
    可扩展的码流的安全密钥管理

    公开(公告)号:US20070009103A1

    公开(公告)日:2007-01-11

    申请号:US11178943

    申请日:2005-07-11

    IPC分类号: H04K1/00 H04L9/00 G06F17/60

    摘要: Key management is performed to generate a single key allowing of the decoding of all authorized levels of a plurality of access types within a scalable codestream. An access node set is derived from sets representing access types having hierarchies representable by fully ordered sets, such as resolution and layer levels, and hierarchies representable by partially ordered sets, such as tile and precinct levels. The access node set derived is a partially ordered set representing the combinations of levels of the access types included within the codestream. A hierarchical key management system is applied to the access node set to assign a key to each of the access nodes, generate content encryption keys, and encrypt the codestream. A client receiving the codestream, access node set, and other public information uses the key to derive additional keys to decrypt the codestream.

    摘要翻译: 执行密钥管理以生成允许在可缩放码流内解码多个接入类型的所有授权级别的单个密钥。 访问节点集是从表示具有可由完全有序集合表示的层次的访问类型的集合导出的,例如分辨率和层级,以及可由部分有序集合表示的层次,例如平铺和区域级别。 导出的访问节点集是表示码流内包括的访问类型的级别的组合的部分有序集合。 分层密钥管理系统被应用于接入节点集合,以将密钥分配给每个接入节点,生成内容加密密钥和加密码流。 接收码流,接入节点集和其他公共信息的客户端使用密钥来导出附加密钥来解密码流。

    Content encryption schema for integrating digital rights management with encrypted multicast
    9.
    发明授权
    Content encryption schema for integrating digital rights management with encrypted multicast 有权
    用于将数字版权管理与加密多播集成的内容加密模式

    公开(公告)号:US07978848B2

    公开(公告)日:2011-07-12

    申请号:US11621445

    申请日:2007-01-09

    申请人: Bin Zhu Min Feng

    发明人: Bin Zhu Min Feng

    IPC分类号: H04L9/00

    摘要: Systems and methods provide a content encryption schema for integrating digital rights management (DRM) in a multicast/broadcast encryption system. In one implementation, an exemplary integrated key schema provides content encryption keys that can be employed by a multicast or broadcast process, while providing DRM protection of recorded multicast content via a single DRM decryption secret. The integrated key schema provides high security and allows encrypted multicast content to be saved directly to local files. A license server can efficiently manage and generate DRM keys to be delivered to clients because only a single key needs to be delivered per license to a client. The integrated key schema can be applied together with conventional broadcast or multicast encryption techniques.

    摘要翻译: 系统和方法提供了一种用于在多播/广播加密系统中集成数字版权管理(DRM)的内容加密模式。 在一个实现中,示例性集成密钥模式提供可以由多播或广播过程采用的内容加密密钥,同时通过单个DRM解密秘密提供对所记录的多播内容的DRM保护。 集成密钥架构提供高安全性,并允许将加密的多播内容直接保存到本地文件。 许可证服务器可以有效地管理和生成要发送到客户端的DRM密钥,因为每个许可证只需要将一个密钥交付给客户端。 集成密钥模式可以与传统的广播或多播加密技术一起应用。

    Securing Communications for Web Mashups
    10.
    发明申请
    Securing Communications for Web Mashups 审中-公开
    保护Web Mashup的通信

    公开(公告)号:US20100180330A1

    公开(公告)日:2010-07-15

    申请号:US12351198

    申请日:2009-01-09

    申请人: Bin Zhu Min Feng Rui Guo

    发明人: Bin Zhu Min Feng Rui Guo

    IPC分类号: H04L9/32 G06F21/00

    摘要: Techniques described herein provide security for communications in web mashups. Some implementations secure web mashups by specifying and monitoring a lifecycle of one or more web applications that communicate with each other through implementation of lifecycle declarations. Furthermore, some implementations herein may use access tickets to provide access control between web applications in a web mashup.

    摘要翻译: 这里描述的技术提供了网络混搭中的通信的安全性。 一些实现通过指定和监视通过实现生命周期声明来相互通信的一个或多个Web应用程序的生命周期来保护Web混搭。 此外,本文中的一些实现可以使用访问机票来提供web混搭中的web应用之间的访问控制。