Integrity protected smart card transaction
    2.
    发明授权
    Integrity protected smart card transaction 有权
    诚信保护智能卡交易

    公开(公告)号:US08423774B2

    公开(公告)日:2013-04-16

    申请号:US13072674

    申请日:2011-03-25

    IPC分类号: H04L9/32 G06F21/00

    摘要: Systems, methods, and technologies for configuring a conventional smart card and a client machine, and for performing a smart card authorization using the configured smart card and client. Further, the combination of methods provides for mutual authentication—authentication of the client to the user, and authentication of the user to the client. The authentication methods include presenting a specified token to the user sufficient to authenticate the client to the user and thus protect the user-provided PIN. Security is strengthened by using an integrity key based on approved client system configurations. Security is further strengthened by calculating a PIN′ value based on a user-specified PIN and a modifier and using the PIN′ value for unlocking the smart card.

    摘要翻译: 用于配置常规智能卡和客户机的系统,方法和技术,以及使用配置的智能卡和客户端执行智能卡授权。 此外,方法的组合提供了客户端对用户的相互认证 - 认证,以及用户对客户端的认证。 认证方法包括向用户呈现足以向用户认证客户端的指定令牌,从而保护用户提供的PIN。 通过使用基于认可的客户端系统配置的完整性密钥来加强安全性。 通过基于用户指定的PIN和修饰符计算PIN'值并使用PIN'值来解锁智能卡来进一步加强安全性。

    Integrity protected smart card transaction
    3.
    发明授权
    Integrity protected smart card transaction 有权
    诚信保护智能卡交易

    公开(公告)号:US08495374B2

    公开(公告)日:2013-07-23

    申请号:US13072676

    申请日:2011-03-26

    IPC分类号: H04L29/06

    摘要: Systems, methods, and technologies for configuring a conventional smart card and a client machine, and for performing a smart card authorization using the configured smart card and client. Further, the combination of methods provides for mutual authentication—authentication of the client to the user, and authentication of the user to the client. The authentication methods include presenting a specified token to the user sufficient to authenticate the client to the user and thus protect the user-provided PIN. Security is strengthened by using an integrity key based on approved client system configurations. Security is further strengthened by calculating a PIN′ value based on a user-specified PIN and a modifier and using the PIN′ value for unlocking the smart card.

    摘要翻译: 用于配置常规智能卡和客户机的系统,方法和技术,以及使用配置的智能卡和客户端执行智能卡授权。 此外,方法的组合提供了客户端对用户的相互认证 - 认证,以及用户对客户端的认证。 认证方法包括向用户呈现足以向用户认证客户端的指定令牌,从而保护用户提供的PIN。 通过使用基于认可的客户端系统配置的完整性密钥来加强安全性。 通过基于用户指定的PIN和修饰符计算PIN'值并使用PIN'值来解锁智能卡来进一步加强安全性。

    INTEGRITY PROTECTED SMART CARD TRANSACTION
    4.
    发明申请
    INTEGRITY PROTECTED SMART CARD TRANSACTION 有权
    完整的保护智能卡交易

    公开(公告)号:US20110179282A1

    公开(公告)日:2011-07-21

    申请号:US13072676

    申请日:2011-03-26

    IPC分类号: H04L9/32

    摘要: Systems, methods, and technologies for configuring a conventional smart card and a client machine, and for performing a smart card authorization using the configured smart card and client. Further, the combination of methods provides for mutual authentication—authentication of the client to the user, and authentication of the user to the client. The authentication methods include presenting a specified token to the user sufficient to authenticate the client to the user and thus protect the user-provided PIN. Security is strengthened by using an integrity key based on approved client system configurations. Security is further strengthened by calculating a PIN′ value based on a user-specified PIN and a modifier and using the PIN′ value for unlocking the smart card.

    摘要翻译: 用于配置常规智能卡和客户机的系统,方法和技术,以及使用配置的智能卡和客户端执行智能卡授权。 此外,方法的组合提供了客户端对用户的相互认证 - 认证,以及用户对客户端的认证。 认证方法包括向用户呈现足以向用户认证客户端的指定令牌,从而保护用户提供的PIN。 通过使用基于认可的客户端系统配置的完整性密钥来加强安全性。 通过基于用户指定的PIN和修饰符计算PIN'值并使用PIN'值来解锁智能卡来进一步加强安全性。

    INTEGRITY PROTECTED SMART CARD TRANSACTION
    5.
    发明申请
    INTEGRITY PROTECTED SMART CARD TRANSACTION 有权
    完整的保护智能卡交易

    公开(公告)号:US20090031408A1

    公开(公告)日:2009-01-29

    申请号:US11829737

    申请日:2007-07-27

    IPC分类号: H04L9/00

    摘要: Systems, methods, and technologies for configuring a conventional smart card and a client machine, and for performing a smart card authorization using the configured smart card and client. Further, the combination of methods provides for mutual authentication—authentication of the client to the user, and authentication of the user to the client. The authentication methods include presenting a specified token to the user sufficient to authenticate the client to the user and thus protect the user-provided PIN. Security is strengthened by using an integrity key based on approved client system configurations. Security is further strengthened by calculating a PIN′ value based on a user-specified PIN and a modifier and using the PIN′ value for unlocking the smart card.

    摘要翻译: 用于配置常规智能卡和客户机的系统,方法和技术,以及使用配置的智能卡和客户端执行智能卡授权。 此外,方法的组合提供了客户端对用户的相互认证 - 认证,以及用户对客户端的认证。 认证方法包括向用户呈现足以向用户认证客户端的指定令牌,从而保护用户提供的PIN。 通过使用基于认可的客户端系统配置的完整性密钥来加强安全性。 通过基于用户指定的PIN和修饰符计算PIN'值并使用PIN'值来解锁智能卡来进一步加强安全性。

    Integrity protected smart card transaction
    8.
    发明授权
    Integrity protected smart card transaction 有权
    诚信保护智能卡交易

    公开(公告)号:US07934096B2

    公开(公告)日:2011-04-26

    申请号:US11829737

    申请日:2007-07-27

    摘要: Systems, methods, and technologies for configuring a conventional smart card and a client machine, and for performing a smart card authorization using the configured smart card and client. Further, the combination of methods provides for mutual authentication—authentication of the client to the user, and authentication of the user to the client. The authentication methods include presenting a specified token to the user sufficient to authenticate the client to the user and thus protect the user-provided PIN. Security is strengthened by using an integrity key based on approved client system configurations. Security is further strengthened by calculating a PIN′ value based on a user-specified PIN and a modifier and using the PIN′ value for unlocking the smart card.

    摘要翻译: 用于配置常规智能卡和客户机的系统,方法和技术,以及使用配置的智能卡和客户端执行智能卡授权。 此外,方法的组合提供了客户端对用户的相互认证 - 认证,以及用户对客户端的认证。 认证方法包括向用户呈现足以向用户认证客户端的指定令牌,从而保护用户提供的PIN。 通过使用基于认可的客户端系统配置的完整性密钥来加强安全性。 通过基于用户指定的PIN和修饰符计算PIN'值并使用PIN'值来解锁智能卡来进一步加强安全性。

    Generic extensible pre-operating system cryptographic infrastructure
    9.
    发明授权
    Generic extensible pre-operating system cryptographic infrastructure 有权
    通用可扩展的操作前系统加密基础设施

    公开(公告)号:US07836309B2

    公开(公告)日:2010-11-16

    申请号:US11780781

    申请日:2007-07-20

    IPC分类号: G06F21/00

    摘要: A cryptographic device protocol provides a generic interface allowing pre-OS applications to employ any of a variety of cryptographic devices within the pre-OS environment. The generic interface can be used independent of the specific cryptographic devices and is independent of the cryptographic or hashing algorithms used by each device. Cryptographic functions may be performed in the pre-OS environment by pre-OS applications communicating with cryptographic device drivers using the cryptographic device protocol that is independent of the cryptographic devices. Each cryptographic device may be identified by a unique device identifier and may have a number of keys available to it, with each key being identified by a unique key identifier.

    摘要翻译: 加密设备协议提供通用接口,允许前OS应用在前OS环境内采用各种加密设备中的任何一种。 通用接口可以独立于特定的加密设备使用,并且独立于每个设备使用的加密或散列算法。 加密功能可以在前OS环境中通过使用独立于加密设备的加密设备协议与加密设备驱动程序进行通信的前OS应用程序来执行。 每个加密设备可以由唯一的设备标识符标识,并且可以具有可用的密钥数量,每个密钥由唯一的密钥标识符标识。