Application programming interface for centralized storage of principal data
    1.
    发明授权
    Application programming interface for centralized storage of principal data 有权
    用于集中存储主要数据的应用程序编程接口

    公开(公告)号:US07200608B2

    公开(公告)日:2007-04-03

    申请号:US10693097

    申请日:2003-10-23

    IPC分类号: G06F17/00 G06F15/173

    摘要: In the present invention, data relating to principals known to a computer system is centrally stored and objects having a standardized principal application programming interface (API) for finding, managing and accessing that data is provided to applications in lieu of having the applications independently store the principal data. The present invention eliminates the need for each application to create duplicate principal data. It also ensures that principal data are consistent throughout the applications on the computer system. In addition, the present invention allows any application with objects having the principal API to manage and change the principal data making such principal data easy to update. The principal API includes methods to find principals based on an identity reference to a principal or an identity claim that uniquely identifies the principal on computer system.

    摘要翻译: 在本发明中,与计算机系统已知的原理有关的数据被集中存储,并且具有用于查找,管理和访问该数据的标准化主应用编程接口(API)的对象被提供给应用,代替使应用独立地存储 主要资料。 本发明消除了对每个应用程序创建重复主体数据的需要。 它还确保在计算机系统上的整个应用程序中主数据是一致的。 此外,本发明允许具有主要API的对象的任何应用程序来管理和改变使主要数据容易更新的主要数据。 主要API包括基于对主体或身份声明的身份引用来查找主体的方法,唯一标识计算机系统上的主体。

    Application programming interface for centralized storage of principal data
    2.
    发明授权
    Application programming interface for centralized storage of principal data 有权
    用于集中存储主要数据的应用程序编程接口

    公开(公告)号:US07593951B2

    公开(公告)日:2009-09-22

    申请号:US11444643

    申请日:2006-05-30

    IPC分类号: G06F17/00

    摘要: In the present invention, data relating to principals known to a computer system is centrally stored and objects having a standardized principal application programming interface (API) for finding, managing and accessing that data is provided to applications in lieu of having the applications independently store the principal data. The present invention eliminates the need for each application to create duplicate principal data. It also ensures that principal data are consistent throughout the applications on the computer system. In addition, the present invention allows any application with objects having the principal API to manage and change the principal data making such principal data easy to update. The principal API includes methods to find principals based on an identity reference to a principal or an identity claim that uniquely identifies the principal on computer system.

    摘要翻译: 在本发明中,与计算机系统已知的原理有关的数据被集中存储,并且具有用于查找,管理和访问该数据的标准化主应用编程接口(API)的对象被提供给应用,代替使应用独立地存储 主要资料。 本发明消除了对每个应用程序创建重复主体数据的需要。 它还确保在计算机系统上的整个应用程序中主数据是一致的。 此外,本发明允许具有主要API的对象的任何应用程序来管理和改变使主要数据容易更新的主要数据。 主要API包括基于对主体或身份声明的身份引用来查找主体的方法,唯一标识计算机系统上的主体。

    Application programming interface for centralized storage of principal data
    4.
    发明申请
    Application programming interface for centralized storage of principal data 有权
    用于集中存储主要数据的应用程序编程接口

    公开(公告)号:US20050091265A1

    公开(公告)日:2005-04-28

    申请号:US10693097

    申请日:2003-10-23

    IPC分类号: G06F7/00 G06F9/44

    摘要: In the present invention, data relating to principals known to a computer system is centrally stored and objects having a standardized principal application programming interface (API) for finding, managing and accessing that data is provided to applications in lieu of having the applications independently store the principal data. The present invention eliminates the need for each application to create duplicate principal data. It also ensures that principal data are consistent throughout the applications on the computer system. In addition, the present invention allows any application with objects having the principal API to manage and change the principal data making such principal data easy to update. The principal API includes methods to find principals based on an identity reference to a principal or an identity claim that uniquely identifies the principal on computer system.

    摘要翻译: 在本发明中,与计算机系统已知的原理有关的数据被集中存储,并且具有用于查找,管理和访问该数据的标准化主应用编程接口(API)的对象被提供给应用,代替使应用独立地存储 主要资料。 本发明消除了对每个应用程序创建重复主体数据的需要。 它还确保在计算机系统上的整个应用程序中主数据是一致的。 此外,本发明允许具有主要API的对象的任何应用程序来管理和改变使主要数据容易更新的主要数据。 主要API包括基于对主体或身份声明的身份引用来查找主体的方法,唯一标识计算机系统上的主体。

    Method and system for identity recognition
    5.
    发明授权
    Method and system for identity recognition 有权
    身份识别的方法和系统

    公开(公告)号:US07822988B2

    公开(公告)日:2010-10-26

    申请号:US10693172

    申请日:2003-10-23

    IPC分类号: H04L9/32

    摘要: In accordance with various aspects, the present invention relates to methods and systems for sending an identity information document comprising selecting identity information from a self-identity information store for inclusion in the identity information document. The selected identity information is read from a self-identity information store. The identity information document is generated to include the selected identity information and one or more keys, and signed using a key associated with one of the keys included in the identity information document. The identity information document is then sent to a recipient. Receiving an identity information document comprises receiving a signed identity information document from an originator. A determination is made as to whether identity information in the identity information document is reliable. The identity information is saved in a recognized identity information store if the identity information is determined to be reliable. If the identity information is determined to be unreliable, an identity recognition number retrieved from the sender is compared to an identity recognition number generated by the recipient based on information in the received identity information document. If the identity recognition number is verified, the identity information is saved in the recognized identity information store.

    摘要翻译: 根据各方面,本发明涉及用于发送身份信息文档的方法和系统,包括从自身身份信息存储中选择身份信息以包括在身份信息文档中。 所选择的身份信息从自身身份信息存储器读取。 生成身份信息文档以包括所选择的身份信息和一个或多个密钥,并且使用与包括在身份信息文档中的密钥之一相关联的密钥进行签名。 然后将身份信息文档发送给收件人。 接收身份信息文档包括从发起者接收签名的身份信息文档。 确定身份信息文档中的身份信息是否可靠。 如果身份信息被确定为可靠,则身份信息被保存在识别的身份信息存储器中。 如果身份信息被确定为不可靠,则根据接收到的身份信息文档中的信息,将从发送者检索到的身份识别号码与由接收者产生的身份识别号码进行比较。 如果身份识别号码被验证,身份信息被保存在识别的身份信息存储中。

    Method and system for identity exchange and recognition
    6.
    发明申请
    Method and system for identity exchange and recognition 有权
    身份认同方法和系统

    公开(公告)号:US20050091495A1

    公开(公告)日:2005-04-28

    申请号:US10693172

    申请日:2003-10-23

    摘要: In accordance with various aspects, the present invention relates to methods and systems for sending an identity information document comprising selecting identity information from a self-identity information store for inclusion in the identity information document. The selected identity information is read from a self-identity information store. The identity information document is generated to include the selected identity information and one or more keys, and signed using a key associated with one of the keys included in the identity information document. The identity information document is then sent to a recipient. Receiving an identity information document comprises receiving a signed identity information document from an originator. A determination is made as to whether identity information in the identity information document is reliable. The identity information is saved in a recognized identity information store if the identity information is determined to be reliable. If the identity information is determined to be unreliable, an identity recognition number retrieved from the sender is compared to an identity recognition number generated by the recipient based on information in the received identity information document. If the identity recognition number is verified, the identity information is saved in the recognized identity information store.

    摘要翻译: 根据各方面,本发明涉及用于发送身份信息文档的方法和系统,包括从自身身份信息存储中选择身份信息以包括在身份信息文档中。 所选择的身份信息从自身身份信息存储器读取。 生成身份信息文档以包括所选择的身份信息和一个或多个密钥,并且使用与包括在身份信息文档中的密钥之一相关联的密钥进行签名。 然后将身份信息文档发送给收件人。 接收身份信息文档包括从发起者接收签名的身份信息文档。 确定身份信息文档中的身份信息是否可靠。 如果身份信息被确定为可靠,则身份信息被保存在识别的身份信息存储器中。 如果身份信息被确定为不可靠,则根据接收到的身份信息文档中的信息,将从发送者检索到的身份识别号码与由接收者产生的身份识别号码进行比较。 如果身份识别号码被验证,身份信息被保存在识别的身份信息存储中。

    System and method for name resolution
    7.
    发明授权
    System and method for name resolution 有权
    名称解析的系统和方法

    公开(公告)号:US08473634B2

    公开(公告)日:2013-06-25

    申请号:US10693516

    申请日:2003-10-23

    IPC分类号: H04L29/12066

    摘要: In accordance with various aspects, the present invention relates to accessing and publishing documents between two computer systems or nodes that are connected together in a network environment. The system and method for name resolution stores an identity information document containing a user-friendly handle signifying identity, such as an email address, and a machine location, such as an IP address, for the publishing computer system where the documents are stored. Next, the system and method intercepts an initial request for access to documents when the initial request includes a user-friendly handle and replaces the user-friendly handle with the machine location, so that network users may easily access these documents through knowledge only of the user-friendly handle.

    摘要翻译: 根据各方面,本发明涉及在网络环境中连接在一起的两个计算机系统或节点之间访问和发布文档。 用于名称解析的系统和方法存储包含用户友好句柄表示身份的身份信息文档,例如电子邮件地址,以及用于存储文档的发布计算机系统的诸如IP地址的机器位置。 接下来,当初始请求包括用户友好的句柄并且将用户友好的句柄替换为机器位置时,系统和方法拦截对文档的访问的初始请求,使得网络用户可以通过仅知道 用户友好的句柄。

    System and method for name resolution
    8.
    发明申请
    System and method for name resolution 有权
    名称解析的系统和方法

    公开(公告)号:US20050091402A1

    公开(公告)日:2005-04-28

    申请号:US10693516

    申请日:2003-10-23

    摘要: In accordance with various aspects, the present invention relates to accessing and publishing documents between two computer systems or nodes that are connected together in a network environment. The system and method for name resolution stores an identity information document containing a user-friendly handle signifying identity, such as an email address, and a machine location, such as an IP address, for the publishing computer system where the documents are stored. Next, the system and method intercepts an initial request for access to documents when the initial request includes a user-friendly handle and replaces the user-friendly handle with the machine location, so that network users may easily access these documents through knowledge only of the user-friendly handle.

    摘要翻译: 根据各方面,本发明涉及在网络环境中连接在一起的两个计算机系统或节点之间访问和发布文档。 用于名称解析的系统和方法存储包含用户友好句柄表示身份的身份信息文档,例如电子邮件地址,以及用于存储文档的发布计算机系统的诸如IP地址的机器位置。 接下来,当初始请求包括用户友好的句柄并且将用户友好的句柄替换为机器位置时,系统和方法拦截对文档的访问的初始请求,使得网络用户可以通过仅知道 用户友好的句柄。

    Identity system for use in a computing environment
    10.
    发明授权
    Identity system for use in a computing environment 有权
    用于计算环境的身份系统

    公开(公告)号:US07631060B2

    公开(公告)日:2009-12-08

    申请号:US10693021

    申请日:2003-10-23

    IPC分类号: G06F15/173

    CPC分类号: G06F21/31 G06F2221/2149

    摘要: A system for identifying principals within a computing environment is disclosed. The system includes principal objects containing identity claims. The principal objects are used by computer processes within the environment to perform tasks related to the association of principals to activated resource objects. Exemplary principals include individuals, a group of individuals, organizations and computer modules and devices. Each identity claim uniquely identifies a specific principal within a particular scheme. To accomplish this, each identity claim includes an assertion that specifies an identification string unique to a principal within the associated scheme. Exemplary schemes for an individual include email accounts, telephone numbers, credit card account numbers and social security numbers. Thus, exemplary identification strings for an individual are specific email addresses, specific telephone numbers, etc. Exemplary schemes for a group of individuals and organizations include telephone numbers and web page addresses. The system also determines whether two principal objects conflict, thereby resulting in an identity fault.

    摘要翻译: 公开了一种用于识别计算环境内的主体的系统。 系统包括包含身份声明的主体对象。 主体对象由环境中的计算机进程用于执行与主体与激活的资源对象的关联相关的任务。 示例性主体包括个人,一组个人,组织以及计算机模块和设备。 每个身份声明唯一地标识特定方案中的特定主体。 为了实现这一点,每个身份声明包括一个断言,该断言指定相关联方案中的主体唯一的标识字符串。 个人的示例性方案包括电子邮件帐户,电话号码,信用卡帐号和社会保险号码。 因此,用于个人的示例性识别字符串是特定的电子邮件地址,特定的电话号码等。一组个人和组织的示例性方案包括电话号码和网页地址。 该系统还确定两个主体对象是否冲突,从而导致身份错误。