Sharing management system, sharing management method and program
    1.
    发明授权
    Sharing management system, sharing management method and program 有权
    共享管理系统,共享管理方法和程序

    公开(公告)号:US08332908B2

    公开(公告)日:2012-12-11

    申请号:US12305992

    申请日:2007-06-12

    IPC分类号: G06F21/00

    CPC分类号: G06F21/6245 H04L67/306

    摘要: In a policy-change input unit (10), a policy recalculation unit (133) compares, upon occurring of a change request of a privacy policy from a user, an existing policy against an updating policy, recalculates a transmission policy to be transmitted to other providers based on the result of comparison, and transmits the recalculated policy to the other policy. The policy recalculation unit (133) transmits a deletion request of personal information to another provider by using a deletion-request creation unit, upon judging that the another provider cannot use the personal information due to the change of privacy policy.

    摘要翻译: 在策略改变输入单元(10)中,策略重新计算单元(133)根据来自用户的隐私策略的改变请求发生与更新策略相关的现有策略,比较要发送的传输策略 基于比较结果的其他提供商,并将重新计算的策略传输到其他策略。 策略重新计算单元(133)通过使用删除请求创建单元在由于隐私策略的改变而判断另一个提供者不能使用个人信息时,向其他提供者发送个人信息的删除请求。

    Personal information distribution management system, personal information distribution management method, personal information service program, and personal information utilization program
    2.
    发明申请
    Personal information distribution management system, personal information distribution management method, personal information service program, and personal information utilization program 有权
    个人信息分发管理系统,个人信息分配管理方法,个人信息服务程序和个人信息利用程序

    公开(公告)号:US20060294024A1

    公开(公告)日:2006-12-28

    申请号:US11450391

    申请日:2006-06-12

    IPC分类号: G06Q99/00

    CPC分类号: G06Q10/109 G06Q20/401

    摘要: The present invention is intended to allow distribution of personal information to be managed on the basis of not only a personal information management policy defined by a personal information producer but also management policies of all apparatuses which handle personal information when the distribution of personal information is managed between apparatuses. In its configuration, personal information generation apparatus 1 encapsulates personal information together with a transmission policy to generate a personal information capsule which is transmitted to personal information utilization apparatus 2. Personal information utilization apparatus 2 receives and holds the personal information capsule for utilization. In this event, personal information generation apparatus 1 transmits a transmission policy defined by the personal information producer. Personal information utilization apparatus 2 in turn transmits a reception policy defined by a personal information user. Then, personal information generation apparatus 1 and personal information utilization apparatus 2 determine a contractual coverage in regard to personal information to be distributed, and generate contract information. Eventually, the personal information is distributed from personal information generation apparatus 1 to personal information utilization apparatus 2 based on the generated contract information.

    摘要翻译: 本发明旨在不仅基于由个人信息生成者定义的个人信息管理策略来管理个人信息的分发,而且还能够在管理个人信息的分发时处理个人信息的所有设备的管理策略 在设备之间。 在其结构中,个人信息生成装置1将个人信息与发送策略一起进行封装,生成发送给个人信息利用装置2的个人信息包。 个人信息利用装置2接收并保持用于使用的个人信息包。 在这种情况下,个人信息生成装置1发送由个人信息生成者定义的传输策略。 个人信息利用装置2依次发送由个人信息用户定义的接收策略。 然后,个人信息生成装置1和个人信息使用装置2确定关于要分发的个人信息的合同范围,并生成合同信息。 最终,个人信息基于生成的合同信息从个人信息生成装置1分发到个人信息利用装置2。

    Distributed authentication system and distributed authentication method
    3.
    发明授权
    Distributed authentication system and distributed authentication method 有权
    分布式认证系统和分布式认证方式

    公开(公告)号:US08332919B2

    公开(公告)日:2012-12-11

    申请号:US12224095

    申请日:2007-02-14

    IPC分类号: H04L29/06

    摘要: [Subject] In a distributed authentication system, if a terminal including a plurality of communication devices changes a communication device to another communication device during using a service, the service under use can be used in succession, and the number of times for execution by the user can reduced.[Solving Means] An authentication-information management unit (5) registers authentication information of the user authenticated by each authentication unit (4), and allows sharing of said authentication information. A session-information management device (24) of a service providing unit (2) manages session information including a session identifier of a session established between the same and the terminal unit (3). More specifically, the service providing unit 2 performs individualized management of sessions established between the same and the terminal unit (3). The session-information management device (24) achieves a continuous provision of the service by authorization of provision of the service to the terminal unit (3) based on the individualized management of said session information.

    摘要翻译: 在分发认证系统中,如果包括多个通信设备的终端在使用服务期间将通信设备改变为另一通信设备,则可以连续使用正在使用的服务,并且执行的次数由 用户可以减少 [解决方案]认证信息管理单元(5)登记由每个认证单元(4)认证的用户的认证信息,并且允许所述认证信息的共享。 服务提供单元(2)的会话信息管理设备(24)管理会话信息,该会话信息包括在同一终端单元(3)之间建立的会话的会话标识符。 更具体地,服务提供单元2对在同一终端单元(3)之间建立的会话进行个性化管理。 会话信息管理装置(24)基于对所述会话信息的个性化管理,通过向终端单元(3)提供服务的授权来实现服务的连续提供。

    Personal information distribution management system, personal information distribution management method, personal information service program, and personal information utilization program
    4.
    发明授权
    Personal information distribution management system, personal information distribution management method, personal information service program, and personal information utilization program 有权
    个人信息分发管理系统,个人信息分配管理方法,个人信息服务程序和个人信息利用程序

    公开(公告)号:US08245034B2

    公开(公告)日:2012-08-14

    申请号:US12648101

    申请日:2009-12-28

    CPC分类号: G06Q10/109 G06Q20/401

    摘要: The present invention is intended to allow distribution of personal information to be managed on the basis of not only a personal information management policy defined by a personal information producer but also management policies of all apparatuses which handle personal information when the distribution of personal information is managed between apparatuses. In its configuration, personal information generation apparatus 1 encapsulates personal information together with a transmission policy to generate a personal information capsule which is transmitted to personal information utilization apparatus 2. Personal information utilization apparatus 2 receives and holds the personal information capsule for utilization. In this event, personal information generation apparatus 1 transmits a transmission policy defined by the personal information producer. Personal information utilization apparatus 2 in turn transmits a reception policy defined by a personal information user. Then, personal information generation apparatus 1 and personal information utilization apparatus 2 determine a contractual coverage in regard to personal information to be distributed, and generate contract information. Eventually, the personal information is distributed from personal information generation apparatus 1 to personal information utilization apparatus 2 based on the generated contract information.

    摘要翻译: 本发明旨在不仅基于由个人信息生成者定义的个人信息管理策略来管理个人信息的分发,而且还能够在管理个人信息的分发时处理个人信息的所有设备的管理策略 在设备之间。 在其结构中,个人信息生成装置1将个人信息与发送策略一起进行封装,生成发送给个人信息利用装置2的个人信息包。个人信息利用装置2接收并保持用于使用的个人信息包。 在这种情况下,个人信息生成装置1发送由个人信息生成者定义的传输策略。 个人信息利用装置2依次发送由个人信息用户定义的接收策略。 然后,个人信息生成装置1和个人信息使用装置2确定关于要分发的个人信息的合同范围,并生成合同信息。 最终,个人信息基于生成的合同信息从个人信息生成装置1分发到个人信息利用装置2。

    Distributed Authentication System and Distributed Authentication Method
    5.
    发明申请
    Distributed Authentication System and Distributed Authentication Method 有权
    分布式认证系统和分布式认证方法

    公开(公告)号:US20090055904A1

    公开(公告)日:2009-02-26

    申请号:US12224095

    申请日:2007-02-14

    IPC分类号: H04L9/32

    摘要: [Subject] In a distributed authentication system, if a terminal including a plurality of communication devices changes a communication device to another communication device during using a service, the service under use can be used in succession, and the number of times for execution by the user can reduced.[Solving Means] An authentication-information management unit (5) registers authentication information of the user authenticated by each authentication unit (4), and allows sharing of said authentication information. A session-information management device (24) of a service providing unit (2) manages session information including a session identifier of a session established between the same and the terminal unit (3). More specifically, the service providing unit 2 performs individualized management of sessions established between the same and the terminal unit (3). The session-information management device (24) achieves a continuous provision of the service by authorization of provision of the service to the terminal unit (3) based on the individualized management of said session information.

    摘要翻译: 在分发认证系统中,如果包括多个通信设备的终端在使用服务期间将通信设备改变为另一通信设备,则可以连续使用正在使用的服务,并且执行的次数由 用户可以减少 [解决方案]认证信息管理单元(5)登记由每个认证单元(4)认证的用户的认证信息,并且允许所述认证信息的共享。 服务提供单元(2)的会话信息管理设备(24)管理会话信息,该会话信息包括在同一终端单元(3)之间建立的会话的会话标识符。 更具体地,服务提供单元2对在同一终端单元(3)之间建立的会话进行个性化管理。 会话信息管理装置(24)基于对所述会话信息的个性化管理,通过向终端单元(3)提供服务的授权来实现服务的连续提供。

    Personal information distribution management system, personal information distribution management method, personal information service program, and personal information utilization program
    6.
    发明授权
    Personal information distribution management system, personal information distribution management method, personal information service program, and personal information utilization program 有权
    个人信息分发管理系统,个人信息分配管理方法,个人信息服务程序和个人信息利用程序

    公开(公告)号:US08255970B2

    公开(公告)日:2012-08-28

    申请号:US11450391

    申请日:2006-06-12

    CPC分类号: G06Q10/109 G06Q20/401

    摘要: A personal information generation apparatus 1 encapsulates personal information together with a transmission policy to generate a personal information capsule which is transmitted to personal information utilization apparatus 2. Personal information utilization apparatus 2 receives and holds the personal information capsule for utilization. In this event, personal information generation apparatus 1 transmits a transmission policy defined by the personal information producer. Personal information utilization apparatus 2 in turn transmits a reception policy defined by a personal information user. Then, personal information generation apparatus 1 and personal information utilization apparatus 2 determine a contractual coverage in regard to personal information to be distributed, and generate contract information. Eventually, the personal information is distributed from personal information generation apparatus 1 to personal information utilization apparatus 2 based on the generated contract information.

    摘要翻译: 个人信息生成装置1将个人信息与发送策略一起进行封装,生成发送到个人信息利用装置2的个人信息包。个人信息利用装置2接收并保持用于使用的个人信息包。 在这种情况下,个人信息生成装置1发送由个人信息生成者定义的传输策略。 个人信息利用装置2依次发送由个人信息用户定义的接收策略。 然后,个人信息生成装置1和个人信息使用装置2确定关于要分发的个人信息的合同范围,并生成合同信息。 最终,个人信息基于生成的合同信息从个人信息生成装置1分发到个人信息利用装置2。

    SHARING MANAGEMENT SYSTEM, SHARING MANAGEMENT METHOD AND PROGRAM
    7.
    发明申请
    SHARING MANAGEMENT SYSTEM, SHARING MANAGEMENT METHOD AND PROGRAM 有权
    共享管理系统,共享管理方法与程序

    公开(公告)号:US20090276825A1

    公开(公告)日:2009-11-05

    申请号:US12305992

    申请日:2007-06-12

    IPC分类号: G06F21/00

    CPC分类号: G06F21/6245 H04L67/306

    摘要: In a policy-change input unit (10), a policy recalculation unit (133) compares, upon occurring of a change request of a privacy policy from a user, an existing policy against an updating policy, recalculates a transmission policy to be transmitted to other providers based on the result of comparison, and transmits the recalculated policy to the other policy. The policy recalculation unit (133) transmits a deletion request of personal information to another provider by using a deletion-request creation unit, upon judging that the another provider cannot use the personal information due to the change of privacy policy.

    摘要翻译: 在策略改变输入单元(10)中,策略重新计算单元(133)根据来自用户的隐私策略的改变请求发生与更新策略相关的现有策略,比较要发送的传输策略 基于比较结果的其他提供商,并将重新计算的策略传输到其他策略。 策略重新计算单元(133)通过使用删除请求创建单元在由于隐私策略的改变而判断另一个提供者不能使用个人信息时,向其他提供者发送个人信息的删除请求。

    Certificate generating/distributing system, certificate generating/distributing method and certificate generating/distributing program
    8.
    发明授权
    Certificate generating/distributing system, certificate generating/distributing method and certificate generating/distributing program 有权
    证书生成/分发系统,证书生成/分发方法和证书生成/分发程序

    公开(公告)号:US08386776B2

    公开(公告)日:2013-02-26

    申请号:US12733543

    申请日:2008-09-17

    IPC分类号: H04L29/06

    摘要: In a certificate generating/distributing system, an authentication apparatus includes token transmitting means transmitting, to a service mediating apparatus, a certificate generation request token, which is information corresponding to a first certificate valid in the service mediating apparatus, together with the first certificate. The service mediating apparatus includes mediating apparatus token forwarding means forwarding the certificate generation request token to a service providing apparatus. The service providing apparatus includes certificate requesting means transmitting the certificate generation request token to the authentication apparatus when requesting a second certificate valid in the service providing apparatus. The authentication apparatus includes certificate transmitting means transmitting, to the service providing apparatus, the second certificate generated based on the first certificate in response to the request of the second certificate by the certificate requesting means.

    摘要翻译: 在证书生成/分发系统中,认证装置包括令牌发送装置,与业务转交装置一起,发送与业务转交装置中有效的第一证书相对应的信息的证书生成请求令牌以及第一证书。 该服务中介装置包括将证书生成请求令牌转发给服务提供装置的中继装置令牌转发装置。 服务提供装置包括证书请求装置,当请求在服务提供装置中有效的第二证书时,向认证装置发送证书生成请求令牌。 认证装置包括证书发送装置,通过证书请求装置响应于第二证书的请求,向服务提供装置发送基于第一证书生成的第二证书。

    CERTIFICATE GENERATING/DISTRIBUTING SYSTEM,CERTIFICATE GENERATING/DISTRIBUTING METHOD AND CERTIFICATE GENERATING/DISTRIBUTING PROGRAM
    9.
    发明申请
    CERTIFICATE GENERATING/DISTRIBUTING SYSTEM,CERTIFICATE GENERATING/DISTRIBUTING METHOD AND CERTIFICATE GENERATING/DISTRIBUTING PROGRAM 有权
    认证生成/分发系统,认证生成/分发方法和证书生成/分发程序

    公开(公告)号:US20110004753A1

    公开(公告)日:2011-01-06

    申请号:US12733543

    申请日:2008-09-17

    IPC分类号: H04L9/32

    摘要: In a certificate generating/distributing system, an authentication apparatus includes token transmitting means transmitting, to a service mediating apparatus, a certificate generation request token, which is information corresponding to a first certificate valid in the service mediating apparatus, together with the first certificate. The service mediating apparatus includes mediating apparatus token forwarding means forwarding the certificate generation request token to a service providing apparatus. The service providing apparatus includes certificate requesting means transmitting the certificate generation request token to the authentication apparatus when requesting a second certificate valid in the service providing apparatus. The authentication apparatus includes certificate transmitting means transmitting, to the service providing apparatus , the second certificate generated based on the first certificate in response to the request of the second certificate by the certificate requesting means.

    摘要翻译: 在证书生成/分发系统中,认证装置包括令牌发送装置,与业务转交装置一起,发送与业务转交装置中有效的第一证书相对应的信息的证书生成请求令牌以及第一证书。 该服务中介装置包括将证书生成请求令牌转发给服务提供装置的中继装置令牌转发装置。 服务提供装置包括证书请求装置,当请求在服务提供装置中有效的第二证书时,向认证装置发送证书生成请求令牌。 认证装置包括证书发送装置,通过证书请求装置响应于第二证书的请求,向服务提供装置发送基于第一证书生成的第二证书。

    PERSONAL INFORMATION MANAGING DEVICE, SERVICE PROVIDING DEVICE, PROGRAM, PERSONAL INFORMATION MANAGING METHOD, CHECKING METHOD AND PERSONAL INFORMATION CHECKING SYSTEM FOR FALSIFICATION PREVENTION OF PERSONAL INFORMATION AND NON REPUDIATION OF PERSONAL INFORMATION CIRCULATION
    10.
    发明申请
    PERSONAL INFORMATION MANAGING DEVICE, SERVICE PROVIDING DEVICE, PROGRAM, PERSONAL INFORMATION MANAGING METHOD, CHECKING METHOD AND PERSONAL INFORMATION CHECKING SYSTEM FOR FALSIFICATION PREVENTION OF PERSONAL INFORMATION AND NON REPUDIATION OF PERSONAL INFORMATION CIRCULATION 审中-公开
    个人信息管理设备,服务提供设备,程序,个人信息管理方法,检查方法和个人信息检查系统,用于预防个人信息和非个人信息循环的发布

    公开(公告)号:US20100319061A1

    公开(公告)日:2010-12-16

    申请号:US12526109

    申请日:2008-02-06

    IPC分类号: H04L9/32

    摘要: A personal information managing device issues a personal information registration certificate corresponding to personal information one to one and sends the issued personal information registration certificate to a service providing device through a user terminal. The user terminal checks the personal information registration certificate, so that the user terminal confirms that the personal information managing device has not falsified the personal information. Further, when personal information is transmitted/received, the user terminal and the service providing device check the relationship between the personal information registration certificate and the personal information, so that the service providing device confirms that the personal information managing device has not falsified personal information. Moreover, when sending personal information, the personal information managing device attaches its signature, so that the personal information managing device confirms that the service providing device has not falsified the personal information.

    摘要翻译: 个人信息管理装置一一对应发送对应于个人信息的个人信息登记证,并通过用户终端将发行的个人信息登记证发送给服务提供装置。 用户终端检查个人信息登记证,使得用户终端确认个人信息管理装置没有伪造个人信息。 此外,当发送/接收个人信息时,用户终端和服务提供装置检查个人信息登记证和个人信息之间的关系,使得服务提供装置确认个人信息管理装置没有伪造的个人信息 。 此外,当发送个人信息时,个人信息管理装置附加其签名,使得个人信息管理装置确认服务提供装置没有伪造个人信息。