-
公开(公告)号:US20060101265A1
公开(公告)日:2006-05-11
申请号:US10527331
申请日:2003-09-17
申请人: Kazuo Omori , Akira Honjo , Masahiro Sueyoshi , Naofumi Hanaki , Kei Tateno
发明人: Kazuo Omori , Akira Honjo , Masahiro Sueyoshi , Naofumi Hanaki , Kei Tateno
IPC分类号: H04L9/00
CPC分类号: G07F7/1008 , G06F21/34 , G06F21/35 , G06F21/445 , G06Q20/341 , G06Q20/40975 , H04L9/3273 , H04L2209/80
摘要: Synthetic key data hard to restore mutual authentication key data is generated by using the mutual authentication key data related to processing permitted to a user card 73 among processing relating SAM unit 9a and 9b. Then, the synthetic key data and key designation key data designating mutual authentication key data used for generating the synthetic data is written in the user card 73.
摘要翻译: 通过在与SAM单元9a和9b相关的处理中使用与用户卡73所允许的处理相关的相互认证密钥数据来生成难以恢复相互认证密钥数据的合成密钥数据。 然后,将用于生成合成数据的相互认证密钥数据的合成密钥数据和密钥指定密钥数据写入用户卡73。
-
2.
公开(公告)号:US07716477B2
公开(公告)日:2010-05-11
申请号:US10527651
申请日:2003-09-17
申请人: Kazuo Omori , Akira Honjo , Masahiro Sueyoshi , Naofumi Hanaki , Kei Tateno
发明人: Kazuo Omori , Akira Honjo , Masahiro Sueyoshi , Naofumi Hanaki , Kei Tateno
CPC分类号: H04L63/0428 , G06F21/34 , G06F21/35 , G06F21/445 , H04L9/3273 , H04L63/0869 , H04L2209/80
摘要: Mutual authentication is performed by using first and second authentication key data between a first data processing device and a second data processing device. When the mutual authentication is succeeded, the first data processing device uses encryption key data for encrypting predetermined data and outputs the data to the second data processing device. The second data processing device decrypts the encrypted data by using decryption key data and judges whether the data is adequate or not for making the data to effective.
摘要翻译: 通过在第一数据处理装置和第二数据处理装置之间使用第一和第二认证密钥数据来执行相互认证。 当相互认证成功时,第一数据处理装置使用加密密钥数据来加密预定数据,并将数据输出到第二数据处理装置。 第二数据处理装置通过使用解密密钥数据来解密加密数据,并判断数据是否足以使数据有效。
-
公开(公告)号:US20060039557A1
公开(公告)日:2006-02-23
申请号:US10527072
申请日:2003-09-17
申请人: Kazuo Omori , Akira Honjo , Masahiro Sueyoshi , Naofumi Hanaki , Kei Tateno
发明人: Kazuo Omori , Akira Honjo , Masahiro Sueyoshi , Naofumi Hanaki , Kei Tateno
IPC分类号: H04L9/00
CPC分类号: G06F21/445 , G06F21/34 , G06F21/35
摘要: A management device 20 outputs key designation data read from a card to a SAM unit 9a. The SAM unit 9a uses mutual authentication key data designated by key designation data to generate synthetic key data. The management device 20 and the SAM unit 9a use the synthetic key data for authentication. When the SAM unit 9a confirms the legitimacy of the management device 20, it executes processing related to one or more mutual authentication key data used for generating the synthetic key data.
摘要翻译: 管理装置20将从卡读取的键指定数据输出到SAM单元9a。 SAM单元9a使用由密钥指定数据指定的相互验证密钥数据来生成合成密钥数据。 管理装置20和SAM单元9a使用合成密钥数据进行认证。 当SAM单元9a确认管理装置20的合法性时,执行与用于生成合成密钥数据的一个或多个相互验证密钥数据有关的处理。
-
公开(公告)号:US20060155992A1
公开(公告)日:2006-07-13
申请号:US10527651
申请日:2003-09-17
申请人: Kazuo Omori , Akira Honji , Masahiro Sueyoshi , Naofumi Hanaki , Kei Tateno
发明人: Kazuo Omori , Akira Honji , Masahiro Sueyoshi , Naofumi Hanaki , Kei Tateno
IPC分类号: H04L9/00
CPC分类号: H04L63/0428 , G06F21/34 , G06F21/35 , G06F21/445 , H04L9/3273 , H04L63/0869 , H04L2209/80
摘要: Mutual authentication is performed by using first and second authentication key data between a first data processing device and a second data processing device. When the mutual authentication is succeeded, the first data processing device uses encryption key data for encrypting predetermined data and outputs the data to the second data processing device. The second data processing device decrypts the encrypted data by using decryption key data and judges whether the data is adequate or not for making the data to effective.
摘要翻译: 通过在第一数据处理装置和第二数据处理装置之间使用第一和第二认证密钥数据来执行相互认证。 当相互认证成功时,第一数据处理装置使用加密密钥数据来加密预定数据,并将数据输出到第二数据处理装置。 第二数据处理装置通过使用解密密钥数据来解密加密数据,并判断数据是否足以使数据有效。
-
公开(公告)号:US07478435B2
公开(公告)日:2009-01-13
申请号:US10282109
申请日:2002-10-29
申请人: Masahiro Sueyoshi , Fumio Kubono , Kei Tateno
发明人: Masahiro Sueyoshi , Fumio Kubono , Kei Tateno
CPC分类号: G06F8/71 , G06F9/44536 , G06F21/6245 , G06F2221/2153
摘要: An application program comprises a plurality of 1st application elements each having a plurality of versions. In this case, the versions are managed by using version management data each used for managing relations between a plurality of 2nd application elements each corresponding to one of the versions and the 1st application elements, and by using management data for managing relations between the 1st application elements and the version management data. As a result, it is possible to provide a data-processing apparatus capable of properly restricting users setting application programs in a server for security reasons.
摘要翻译: 应用程序包括多个第一应用元件,每个应用元件具有多个版本。 在这种情况下,通过使用版本管理数据来管理版本,每个版本管理数据用于管理与版本之一和第一应用元素相对应的多个第二应用元素之间的关系,并且通过使用用于管理第一应用之间的关系的管理数据 元素和版本管理数据。 结果,可以提供一种数据处理装置,出于安全原因能够适当地限制用户设置服务器中的应用程序。
-
公开(公告)号:US08141057B2
公开(公告)日:2012-03-20
申请号:US11688439
申请日:2007-03-20
申请人: Masahiro Sueyoshi , Fumio Kubono , Kei Tateno
发明人: Masahiro Sueyoshi , Fumio Kubono , Kei Tateno
IPC分类号: G06F9/44
CPC分类号: G06F21/34 , G06F9/5038 , G06F21/53 , G06Q20/341 , G07F7/082 , G07F7/1008
摘要: In accordance with a plurality of processing requests, a SAM chip generates IC card entity data including job execution order data showing an order of execution of a plurality of jobs forming processing in accordance with a processing request and status data showing a state of progress of execution of said plurality of jobs for each of said processing requests. Further, the SAM chip selects one entity data from said plurality of entity data, selects and executes the job to be executed next based on the status data and processing order data of said selected entity data, and updates the status data in accordance with execution of said job.
摘要翻译: 根据多个处理请求,SAM芯片产生IC卡实体数据,包括根据处理请求显示多个作业形成处理的执行顺序的作业执行顺序数据和表示执行进度状态的状态数据 的每个所述处理请求的所述多个作业。 此外,SAM芯片从所述多个实体数据中选择一个实体数据,基于所选择的实体数据的状态数据和处理顺序数据来选择并执行下一个要执行的作业,并且根据执行情况更新状态数据 说工作
-
公开(公告)号:US07272715B2
公开(公告)日:2007-09-18
申请号:US10451160
申请日:2002-10-30
申请人: Masahiro Sueyoshi , Fumio Kubono , Kei Tateno
发明人: Masahiro Sueyoshi , Fumio Kubono , Kei Tateno
IPC分类号: G06F1/24
CPC分类号: H04L63/0428 , H04L41/0803 , H04L63/0869
摘要: When transferring elements APE forming an application program between SAM units 9a and 9b, management data which specifies identification data of elements, presence of mutual authentication, mode of reference (usage), and a mutual authentication key of each element is prepared and the elements transferred between the SAM units A and 9b based on the management data.
摘要翻译: 当在SAM单元9a和9b之间传送形成应用程序的元素APE时,准备指定元素的识别数据,存在相互认证,参考方式(使用)以及每个元素的相互验证密钥的管理数据,并且 基于管理数据在SAM单元A和9b之间传送的元素。
-
公开(公告)号:US07240345B2
公开(公告)日:2007-07-03
申请号:US10257472
申请日:2002-02-15
申请人: Masahiro Sueyoshi , Fumio Kubono , Kei Tateno
发明人: Masahiro Sueyoshi , Fumio Kubono , Kei Tateno
IPC分类号: G06F9/45
CPC分类号: G06F21/34 , G06F9/5038 , G06F21/53 , G06Q20/341 , G07F7/082 , G07F7/1008
摘要: In accordance with a plurality of processing requests, a SAM chip generates IC card entity data including job execution order data showing an order of execution of a plurality of jobs forming processing in accordance with a processing request and status data showing a state of progress of execution of said plurality of jobs for each of said processing requests. Further, the SAM chip selects one entity data from said plurality of entity data, selects and executes the job to be executed next based on the status data and processing order data of said selected entity data, and updates the status data in accordance with execution of said job.
摘要翻译: 根据多个处理请求,SAM芯片产生IC卡实体数据,包括根据处理请求显示多个作业形成处理的执行顺序的作业执行顺序数据和表示执行进度状态的状态数据 的每个所述处理请求的所述多个作业。 此外,SAM芯片从所述多个实体数据中选择一个实体数据,基于所选择的实体数据的状态数据和处理顺序数据来选择并执行下一个要执行的作业,并且根据执行情况更新状态数据 说工作
-
公开(公告)号:US07664953B2
公开(公告)日:2010-02-16
申请号:US10792574
申请日:2004-03-04
IPC分类号: H04L9/32
CPC分类号: G07F7/1008 , G06F21/445 , G06F2221/2129 , G06Q20/02 , G06Q20/341 , G06Q20/3829 , G06Q20/40975 , H04L9/083 , H04L9/0866 , H04L9/0877 , H04L9/3273
摘要: A data processing device, in a system performing authentication among a plurality of storage device (IC cards etc.), able to maintain security of authentication at other device even when secrecy of key data held by part of the devices is lost, wherein a key generation unit generates individual key data unique to an IC card based on identification data unique to the IC cards received from the ICs of the IC cards and a card processing unit performs mutual authentication with the IC based on the individual key data.
摘要翻译: 一种在多个存储装置(IC卡等)之间执行认证的系统中的数据处理装置,即使在由所述装置的一部分保存的密钥数据的秘密丢失的情况下,也能够保持其他装置的认证的安全性,其中,密钥 生成单元基于从IC卡的IC接收到的IC卡唯一的识别数据,生成IC卡唯一的个人密钥数据,并且卡处理单元基于各个密钥数据与IC进行相互认证。
-
公开(公告)号:US07487203B2
公开(公告)日:2009-02-03
申请号:US10283210
申请日:2002-10-30
申请人: Masahiro Sueyoshi , Fumio Kubono , Kei Tateno
发明人: Masahiro Sueyoshi , Fumio Kubono , Kei Tateno
IPC分类号: G06F15/16
CPC分类号: H04L67/2823 , H04L29/06 , H04L67/10 , H04L67/2819 , H04L67/42 , H04L69/329
摘要: How to allow requests and data, which are relevant to a service using an IC (Integrated Circuit), to be exchanged among a SAM unit serving as a data-processing apparatus, a server and the integrated circuit with a high degree of efficiency in an operation to render the service. The server transmits a first command requesting an IC module (the integrated circuit cited above) of a portable communication apparatus to carry out processing to the SAM unit. The SAM unit interprets the first command and transmits a second command for operating the IC module in accordance with a result of interpretation of the first command to the IC module by way of the server. The IC module carries out the processing in accordance with the second command and transmits a first response containing a result of the processing to the SAM unit by way of the server. If an outcome of the judgment formed on basis of the first response indicates that the above processing has been completed, the SAM unit transmits a second response indicating completion of the processing to the server.
摘要翻译: 如何允许使用IC(集成电路)的服务相关的请求和数据在用作数据处理装置的SAM单元,服务器和集成电路之间以高效率交换 操作来呈现服务。 服务器发送请求上述IC模块(上述的集成电路)的第一命令,以便对SAM单元进行处理。 SAM单元解释第一命令,并且通过服务器向IC模块发送根据第一命令的解释结果来操作IC模块的第二命令。 IC模块根据第二命令执行处理,并通过服务器向SAM单元发送包含处理结果的第一响应。 如果基于第一响应形成的判断结果指示上述处理已经完成,则SAM单元向服务器发送指示处理完成的第二响应。
-
-
-
-
-
-
-
-
-