Registration for mobile nodes in wireless internet protocols
    1.
    发明授权
    Registration for mobile nodes in wireless internet protocols 有权
    在无线互联网协议中注册移动节点

    公开(公告)号:US06567664B1

    公开(公告)日:2003-05-20

    申请号:US09323840

    申请日:1999-06-02

    IPC分类号: H04Q720

    摘要: A re-registration authorization is attached to a registration request or data packet sent from a mobile node roaming on a foreign network. The mobile node requests registration with its home network in order to maintain communication with the Internet and maintain identification of the mobile node by its individual home address. Such registration has a limited lifetime, and the re-registration authorization attached to the registration request or other data packet authorizes an intermediate communication entity in the foreign network to re-register the mobile node, on behalf of the mobile node, with the mobile node's home network, if the communication traffic of the mobile node indicates that the mobile node is still roaming on the foreign network. The rate of error is reduced by significantly reducing the amount of transmissions sent from the mobile node, and power consumption of the typically battery-powered mobile unit is reduced, as well.

    摘要翻译: 重新注册授权附加到从在外部网络上漫游的移动节点发送的注册请求或数据分组。 移动节点请求与其归属网络的注册,以便保持与因特网的通信,并通过其个人归属地址维护移动节点的识别。 这种注册具有有限的寿命,并且附加到注册请求或其他数据分组的重新注册授权授权外部网络中的中间通信实体代表移动节点向移动节点重新注册移动节点 如果移动节点的通信流量指示移动节点仍然在外部网络上漫游,则归属网络。 通过显着减少从移动节点发送的传输量来减少错误率,并且降低了通常由电池供电的移动单元的功耗。

    Apparatus and method for enforcing hardware-assisted memory safety

    公开(公告)号:US11868466B2

    公开(公告)日:2024-01-09

    申请号:US17434643

    申请日:2019-03-12

    发明人: Jan-Erik Ekberg

    摘要: An apparatus includes a processor coupled to a memory. The processor calls a second function from a first function by coloring with an inaccessible color value a first memory area associated with the first function, branching to the second function, coloring with a second color value a second memory area associated with the second function, operating on the second memory area, and coloring with the inaccessible color value the second memory area. The processor then returns control to the first function, and colors with a first color value the first memory area. The coloring step includes branching to a coloring routine that includes a basic block beginning with a single branch target instruction, identifying and authorizing the calling routine, coloring with a hardcoded color value a memory area associated with the calling routine, and returning to the calling routine.

    Determination of apparatus configuration and programming data
    6.
    发明授权
    Determination of apparatus configuration and programming data 有权
    确定仪器配置和编程数据

    公开(公告)号:US09246910B2

    公开(公告)日:2016-01-26

    申请号:US14115525

    申请日:2011-05-06

    摘要: A method including determining a public identifier for identifying a configuration of an apparatus, determining a common configuration certificate comprising a common configuration certificate identifier for verifying programming data, and determining a hardware certificate comprising the public identifier and the common configuration certificate identifier for associating a permitted combination of the apparatus configuration and the programming data. Furthermore, the method includes generating a dedicated package of the hardware certificates corresponding to the apparatus configurations allowed to be provided, encrypting the dedicated package of the hardware certificates using a public key, and storing the encrypted dedicated package of the hardware certificates with an identifier to a passive memory of the apparatus.

    摘要翻译: 一种方法,包括确定用于识别装置的配置的公共标识符,确定包括用于验证节目数据的公共配置证书标识符的公共配置证书,以及确定包括公共标识符和公共配置证书标识符的硬件证书,用于将允许 组合设备配置和编程数据。 此外,该方法包括生成与允许提供的装置配置相对应的硬件证书的专用包,使用公开密钥加密硬件证书的专用包,并将具有标识符的硬件证书的加密专用包存储到 设备的被动记忆体。

    Method and apparatus for implementing key stream hierarchy
    7.
    发明授权
    Method and apparatus for implementing key stream hierarchy 有权
    实现密钥流层次结构的方法和装置

    公开(公告)号:US09203609B2

    公开(公告)日:2015-12-01

    申请号:US13316932

    申请日:2011-12-12

    IPC分类号: H04K1/00 H04L9/06 H04L9/08

    摘要: Various methods for implementing keystream hierarchy in a distributed memory environment are provided. One example method may comprise causing a generated keystream to be accessed on a memory device, wherein the keystream was generated in an instance in which the memory device was in radio communications range. One example method may further comprise determining a session key based on the generated keystream and a modified keystream. In some example embodiments, the modified keystream is created by the memory device based on the generated keystream and a keystream received by the memory device from a second device. One example method may further comprise causing communications data to be transmitted to the memory device or to the second device. In some example embodiments, the communications data is protected using at least a portion of the session key and is intended for the second device.

    摘要翻译: 提供了在分布式存储器环境中实现密钥流层次的各种方法。 一个示例性方法可以包括使得在存储器设备上访问生成的密钥流,其中在存储器设备处于无线电通信范围的情况下生成密钥流。 一个示例性方法还可以包括基于生成的密钥流和修改的密钥流来确定会话密钥。 在一些示例实施例中,修改的密钥流由存储器设备基于生成的密钥流和由存储器设备从第二设备接收的密钥流来创建。 一个示例性方法还可以包括使通信数据被发送到存储设备或第二设备。 在一些示例性实施例中,使用会话密钥的至少一部分来保护通信数据,并且用于第二设备。

    Implementation of an integrity-protected secure storage
    8.
    发明授权
    Implementation of an integrity-protected secure storage 有权
    实施完整性保护的安全存储

    公开(公告)号:US09171187B2

    公开(公告)日:2015-10-27

    申请号:US11128676

    申请日:2005-05-13

    IPC分类号: G06F21/78 G06F21/71 G06F21/62

    摘要: An internal but not integrated security token is provided for a device which includes a first integrated circuitry including a secure processor. The security token is provided by a second integrated circuitry separate from the first circuitry. The second integrated circuitry includes a secure non-volatile storage. The secure processor communicates information to the second circuitry in a secure manner for the secure information to be securely stored in the secure non-volatile storage, and the second integrated circuitry communicates information stored in its secure non-volatile storage to the secure processor in a secure manner. Communications is secured by means of cryptography. The first integrated circuitry and the second integrated circuitry are internal parts of the device. An initialization method for distributing a secure key to be shared between the circuitries and to be used in cryptography is also disclosed.

    摘要翻译: 为包括包括安全处理器的第一集成电路的设备提供内部但未集成的安全令牌。 安全令牌由与第一电路分开的第二集成电路提供。 第二集成电路包括安全的非易失性存储器。 安全处理器以安全的方式将信息传送到第二电路,以将安全信息安全地存储在安全的非易失性存储器中,并且第二集成电路将存储在其安全非易失性存储器中的信息传送到安全处理器 安全的方式。 通信是通过密码保护的。 第一集成电路和第二集成电路是器件的内部部件。 还公开了一种用于分发要在电路之间共享并将用于密码学中的安全密钥的初始化方法。

    Method and Apparatus For Providing Network Access To A Connecting Apparatus
    9.
    发明申请
    Method and Apparatus For Providing Network Access To A Connecting Apparatus 有权
    提供对连接装置的网络访问的方法和装置

    公开(公告)号:US20140220929A1

    公开(公告)日:2014-08-07

    申请号:US14128662

    申请日:2011-07-01

    IPC分类号: H04W48/08 H04W12/06

    摘要: A method and apparatus are provided for providing network access to a connecting apparatus. A method may include determining, at a terminal apparatus, a selection of a network access credential for a network from a plurality of available network access credentials installed on the terminal apparatus. The method may further include responsive to the selection, activating the selected network access credential. The method may additionally include using the activated network access credential to cause a connecting apparatus to be provided with access to the network via a local connection between the terminal apparatus and the connecting apparatus. A corresponding apparatus is also provided.

    摘要翻译: 提供了一种提供对连接装置的网络访问的方法和装置。 方法可以包括在终端设备处从安装在终端设备上的多个可用网络访问证书中确定网络的网络访问凭证的选择。 该方法还可以包括响应于选择,激活所选择的网络接入凭证。 该方法可以另外包括使用激活的网络访问凭据来使得连接装置经由终端装置和连接装置之间的本地连接被提供给网络的访问。 还提供了相应的装置。

    METHOD AND APPARATUS FOR IMPLEMENTING KEY STREAM HIERARCHY
    10.
    发明申请
    METHOD AND APPARATUS FOR IMPLEMENTING KEY STREAM HIERARCHY 有权
    实施关键流域分层的方法与装置

    公开(公告)号:US20130148805A1

    公开(公告)日:2013-06-13

    申请号:US13316932

    申请日:2011-12-12

    IPC分类号: H04K1/00

    摘要: Various methods for implementing keystream hierarchy in a distributed memory environment are provided. One example method may comprise causing a generated keystream to be accessed on a memory device, wherein the keystream was generated in an instance in which the memory device was in radio communications range. One example method may further comprise determining a session key based on the generated keystream and a modified keystream. In some example embodiments, the modified keystream is created by the memory device based on the generated keystream and a keystream received by the memory device from a second device. One example method may further comprise causing communications data to be transmitted to the memory device or to the second device. In some example embodiments, the communications data is protected using at least a portion of the session key and is intended for the second device.

    摘要翻译: 提供了在分布式存储器环境中实现密钥流层次的各种方法。 一个示例性方法可以包括使得在存储器设备上访问生成的密钥流,其中在存储器设备处于无线电通信范围的情况下生成密钥流。 一个示例性方法还可以包括基于生成的密钥流和修改的密钥流来确定会话密钥。 在一些示例实施例中,修改的密钥流由存储器设备基于生成的密钥流和由存储器设备从第二设备接收的密钥流来创建。 一个示例性方法还可以包括使通信数据被发送到存储设备或第二设备。 在一些示例性实施例中,使用会话密钥的至少一部分来保护通信数据,并且用于第二设备。