System and method for protecting a multipurpose data string used for both decrypting data and for authenticating a user
    1.
    发明授权
    System and method for protecting a multipurpose data string used for both decrypting data and for authenticating a user 失效
    用于保护用于解密数据和用于认证用户的多用途数据串的系统和方法

    公开(公告)号:US06230272B1

    公开(公告)日:2001-05-08

    申请号:US08949744

    申请日:1997-10-14

    IPC分类号: H04K100

    摘要: A method and system for protecting a multipurpose data string used for both decrypting data and for authenticating a user utilizes a remote storage element that contains a long random data string or password protected by a short easy to remember access data, such as a personal identification number or other user authentication mechanism. The remote storage element contains data used for both initially encrypting secret private keys and for later decrypting the encrypted secret private keys, or other secret data, so they can be used to decrypt data transferred within a computer network, or be used for digitally signing data transferred within a computer network.

    摘要翻译: 用于保护用于解密数据和用于认证用户的多用途数据串的方法和系统利用包含长简单记忆访问数据(例如个人识别号码)保护的长随机数据串或密码的远程存储元件 或其他用户认证机制。 远程存储元件包含用于初始加密秘密私钥和随后解密加密的秘密专用密钥或其他秘密数据的数据,因此它们可用于解密在计算机网络内传送的数据,或用于数字签名数据 在计算机网络内传输。

    Data management system and method for a limited capacity cryptographic storage unit
    2.
    发明授权
    Data management system and method for a limited capacity cryptographic storage unit 有权
    用于有限容量密码存储单元的数据管理系统和方法

    公开(公告)号:US06393565B1

    公开(公告)日:2002-05-21

    申请号:US09128321

    申请日:1998-08-03

    IPC分类号: G06F0124

    摘要: A data management system and method for a limited cryptographic storage unit, such as a smartcard or other hardware token, includes a cryptographic data manager that interfaces with the limited capacity cryptographic storage unit and a data overflow memory coupled to the cryptographic data manager. The cryptographic data manager stores cryptographic data, such as decryption private keys or other secret cryptographic data, in the overflow memory from the limited capacity cryptographic storage unit based on a limited capacity storage unit data update condition. The cryptographic data manager may serve as a secondary cryptographic data manager that receives the cryptographic data from an original cryptographic data storage device, or primary storage device such as a server that generates the cryptographic data, that stores a history of the cryptographic data.

    摘要翻译: 用于有限密码存储单元(诸如智能卡或其他硬件令牌)的数据管理系统和方法包括与有限容量密码存储单元相连接的加密数据管理器和耦合到密码数据管理器的数据溢出存储器。 加密数据管理器基于有限容量存储单元数据更新条件,从有限容量密码存储单元存储溢出存储器中的解密私钥或其他秘密密码数据等密码数据。 加密数据管理器可以用作从原始密码数据存储设备或存储密码数据的历史的生成加密数据的主服务器的主存储设备接收加密数据的二级加密数据管理器。