Access Control Method And Apparatus
    1.
    发明申请
    Access Control Method And Apparatus 有权
    访问控制方法和设备

    公开(公告)号:US20100138908A1

    公开(公告)日:2010-06-03

    申请号:US11917346

    申请日:2005-06-28

    IPC分类号: G06F21/00

    摘要: A method of controlling access to computing resources, comprising providing a first computing device with access to a database containing data indicative of computing resources access to which is controlled by the first computing device and a minimum security capability that a second computing device must possess to access the respective resources, assigning the second computing device a security capability, providing the second computing device with data indicative of the security capability, configuring the first computing device to respond to data indicative of the security capability and data indicative of a desired access from the second computing device by ascertaining the minimum required security capability corresponding to the desired access and by comparing the minimum required security capability with the security capability of the second computing device, and providing the desired access if the security capability of the second computing device meets the minimum security capability for the desired access.

    摘要翻译: 一种控制对计算资源的访问的方法,包括向第一计算设备提供对包含指示由第一计算设备控制的计算资源访问的数据的数据库的访问以及第二计算设备必须拥有的最小安全能力以访问 相应的资源,为第二计算设备分配安全能力,向第二计算设备提供指示安全能力的数据,配置第一计算设备以响应指示安全能力的数据和指示来自第二计算设备的期望访问的数据 计算设备,通过确定对应于期望接入的最小所需安全能力,并通过将所需的最小安全能力与第二计算设备的安全能力进行比较,以及如果第二计算设备的安全能力满足最小安全性 ca 适合所需的访问。

    System, Method and Apparatus for Decrypting Data Stored on Remobable Media
    2.
    发明申请
    System, Method and Apparatus for Decrypting Data Stored on Remobable Media 有权
    用于解密存储在可读介质上的数据的系统,方法和装置

    公开(公告)号:US20080212781A1

    公开(公告)日:2008-09-04

    申请号:US11996747

    申请日:2005-08-05

    IPC分类号: H04L9/06

    CPC分类号: G06F21/602 G06F21/6218

    摘要: A technique that decrypts data stored on removable media, if the device on which the encryption was performed is lost, unavailable, or the user credentials are lost. In example embodiment, this is achieved by using the administrator UID, the administrator UDID, the removable media, the names of one or more data files to be decrypted, the administrator Pswd, and a KeyID to decrypt data stored on the removable media associated with a lost or unavailable mobile device on which encryption was performed.

    摘要翻译: 如果执行加密的设备丢失,不可用或用户凭据丢失,则可以对存储在可移动介质上的数据进行解密的技术。 在示例实施例中,这是通过使用管理员UID,管理员UDID,可移动介质,要解密的一个或多个数据文件的名称,管理员Pswd和密钥ID来实现的,以解密存储在与 执行加密的丢失或不可用的移动设备。

    Access control method and apparatus
    3.
    发明授权
    Access control method and apparatus 有权
    访问控制方法和装置

    公开(公告)号:US08474031B2

    公开(公告)日:2013-06-25

    申请号:US11917346

    申请日:2005-06-28

    IPC分类号: G06F9/00 G06F15/177

    摘要: A method of controlling access to computing resources, comprising providing a first computing device with access to a database containing data indicative of computing resources access to which is controlled by the first computing device and a minimum security capability that a second computing device must possess to access the respective resources, assigning the second computing device a security capability, providing the second computing device with data indicative of the security capability, configuring the first computing device to respond to data indicative of the security capability and data indicative of a desired access from the second computing device by ascertaining the minimum required security capability corresponding to the desired access and by comparing the minimum required security capability with the security capability of the second computing device, and providing the desired access if the security capability of the second computing device meets the minimum security capability for the desired access.

    摘要翻译: 一种控制对计算资源的访问的方法,包括向第一计算设备提供对包含指示由第一计算设备控制的计算资源访问的数据的数据库的访问以及第二计算设备必须拥有的最小安全能力以访问 相应的资源,为第二计算设备分配安全能力,向第二计算设备提供指示安全能力的数据,配置第一计算设备以响应指示安全能力的数据和指示来自第二计算设备的期望访问的数据 计算设备,通过确定对应于期望接入的最小所需安全能力,并通过将所需的最小安全能力与第二计算设备的安全能力进行比较,以及如果第二计算设备的安全能力满足最小安全性 ca 适合所需的访问。

    System, method and apparatus to obtain a key for encryption/decryption/data recovery from an enterprise cryptography key management system
    4.
    发明授权
    System, method and apparatus to obtain a key for encryption/decryption/data recovery from an enterprise cryptography key management system 有权
    从企业密码密钥管理系统获取加密/解密/数据恢复密钥的系统,方法和装置

    公开(公告)号:US07970143B2

    公开(公告)日:2011-06-28

    申请号:US11996972

    申请日:2005-08-05

    IPC分类号: H04L9/00

    CPC分类号: G06F21/602 G06F21/62

    摘要: A technique for obtaining a key for encryption/decryption/data recovery from an enterprise key management system. In one example embodiment, this is accomplished by connecting a client mobile device to a cryptography key management using a UID, a UDID, the names of one or more data files to encrypt, a password Pswd, and a KeyID to obtain the key for encryption/decryption/data recovery.

    摘要翻译: 一种用于从企业密钥管理系统获取加密/解密/数据恢复密钥的技术。 在一个示例实施例中,这是通过使用UID,UDID,要加密的一个或多个数据文件的名称,密码Pswd和KeyID将客户端移动设备连接到密码密钥管理来实现的,以获得用于加密的密钥 /解密/数据恢复。

    System, method and apparatus for cryptography key management for mobile devices
    5.
    发明授权
    System, method and apparatus for cryptography key management for mobile devices 有权
    用于移动设备密码密钥管理的系统,方法和装置

    公开(公告)号:US09425958B2

    公开(公告)日:2016-08-23

    申请号:US11996588

    申请日:2005-08-05

    摘要: A technique that binds encryption and decryption keys using a UID, a UDID, and a Pswd to a client mobile device in an enterprise. In one example embodiment, this is achieved by creating a new user account using the UID and the DPswd in an inactive state and communicating the UID and the DPswd to an intended user using a secure communication medium by an administrator. The intended user then logs into a cryptography key management system using the UID and the DPswd via a client mobile device. The UDID associated with the client mobile device is then hashed to create a H(UDID). The H(UDID) is then sent to the cryptography key management system by a local key management application module. The H(UDID) is then authenticated by the cryptography key management system. An encryption/decryption key is then assigned for the client mobile device.

    摘要翻译: 使用UID,UDID和Pswd将加密和解密密钥绑定到企业中的客户端移动设备的技术。 在一个示例实施例中,这是通过使用UID和DPswd处于非活动状态并通过管理员使用安全通信介质将UID和DPswd传送到预期用户来创建新用户帐户来实现的。 然后,预期用户通过客户端移动设备使用UID和DPswd登录到加密密钥管理系统。 然后将与客户端移动设备相关联的UDID进行散列以创建H(UDID)。 然后,H(UDID)由本地密钥管理应用模块发送到密码密钥管理系统。 然后,密码密钥管理系统对H(UDID)进行认证。 然后为客户端移动设备分配加密/解密密钥。

    System, method and apparatus for decrypting data stored on removable media
    6.
    发明授权
    System, method and apparatus for decrypting data stored on removable media 有权
    用于解密存储在可移动介质上的数据的系统,方法和装置

    公开(公告)号:US07970142B2

    公开(公告)日:2011-06-28

    申请号:US11996747

    申请日:2005-08-05

    IPC分类号: H04L9/00

    CPC分类号: G06F21/602 G06F21/6218

    摘要: A technique that decrypts data stored on removable media, if the device on which the encryption was performed is lost, unavailable, or the user credentials are lost. In example embodiment, this is achieved by using the administrator UID, the administrator UDID, the removable media, the names of one or more data files to be decrypted, the administrator Pswd, and a KeyID to decrypt data stored on the removable media associated with a lost or unavailable mobile device on which encryption was performed.

    摘要翻译: 如果执行加密的设备丢失,不可用或用户凭据丢失,则可以对存储在可移动介质上的数据进行解密的技术。 在示例实施例中,这是通过使用管理员UID,管理员UDID,可移动媒体,要解密的一个或多个数据文件的名称,管理员Pswd和密钥ID来实现的,以解密存储在与 执行加密的丢失或不可用的移动设备。

    System, Method and Apparatus to Obtain a Key for Encryption/Decryption/Data Recovery From an Enterprise Cryptography Key Management System
    7.
    发明申请
    System, Method and Apparatus to Obtain a Key for Encryption/Decryption/Data Recovery From an Enterprise Cryptography Key Management System 有权
    从企业密码管理系统获取加密/解密/数据恢复密钥的系统,方法和设备

    公开(公告)号:US20080232598A1

    公开(公告)日:2008-09-25

    申请号:US11996972

    申请日:2005-08-05

    IPC分类号: H04L9/08

    CPC分类号: G06F21/602 G06F21/62

    摘要: A technique for obtaining a key for encryption/decryption/data recovery from an enterprise key management system. In one example embodiment, this is accomplished by connecting a client mobile device to a cryptography key management using a UID, a UDID, the names of one or more data files to encrypt, a password Pswd, and a KeyID to obtain the key for encryption/decryption/data recovery.

    摘要翻译: 一种用于从企业密钥管理系统获取加密/解密/数据恢复密钥的技术。 在一个示例实施例中,这是通过使用UID,UDID,要加密的一个或多个数据文件的名称,密码Pswd和KeyID将客户端移动设备连接到密码密钥管理来实现的,以获得用于加密的密钥 /解密/数据恢复。

    System, Method and Apparatus for Cryptography Key Management for Mobile Devices
    8.
    发明申请
    System, Method and Apparatus for Cryptography Key Management for Mobile Devices 有权
    用于移动设备加密密钥管理的系统,方法和装置

    公开(公告)号:US20080209221A1

    公开(公告)日:2008-08-28

    申请号:US11996588

    申请日:2005-08-05

    IPC分类号: H04L9/32

    摘要: A technique that binds encryption and decryption keys using a UID, a UDID, and a Pswd to a client mobile device in an enterprise. In one example embodiment, this is achieved by creating a new user account using the UID and the DPswd in an inactive state and communicating the UID and the DPswd to an intended user using a secure communication medium by an administrator. The intended user then logs into a cryptography key management system using the UID and the DPswd via a client mobile device. The UDID associated with the client mobile device is then hashed to create a H(UDID). The H(UDID) is then sent to the cryptography key management system by a local key management application module. The H(UDID) is then authenticated by the cryptography key management system. An encryption/decryption key is then assigned for the client mobile device.

    摘要翻译: 使用UID,UDID和Pswd将加密和解密密钥绑定到企业中的客户端移动设备的技术。 在一个示例实施例中,这是通过使用UID和DPswd处于非活动状态并通过管理员使用安全通信介质将UID和DPswd传送给预期用户来创建新用户帐户来实现的。 然后,预期用户通过客户端移动设备使用UID和DPswd登录到加密密钥管理系统。 然后将与客户端移动设备相关联的UDID进行散列以创建H(UDID)。 然后,H(UDID)由本地密钥管理应用模块发送到密码密钥管理系统。 然后,密码密钥管理系统对H(UDID)进行认证。 然后为客户端移动设备分配加密/解密密钥。