Process and device for internet payments by means of security modules
    1.
    发明授权
    Process and device for internet payments by means of security modules 有权
    通过安全模块进行互联网支付的流程和设备

    公开(公告)号:US06845367B2

    公开(公告)日:2005-01-18

    申请号:US09745984

    申请日:2000-12-21

    IPC分类号: G06Q20/00 G07F7/08 G06F17/60

    摘要: The present invention describes a device and a method for performing cashless payments between a customer and a dealer. The advantages of the present invention lie in that payments can be performed over the Internet without implementing special payments commands stored in the customer chip card. It is sufficient to use a normal chipcard with a file structure. Such a file structure can be used in different file system cards and does not depend on the chipcard's operating system. Therefore, the inventive method can be used in a variety of chipcards without implementing special payments commands. The protocol is designed such that per payment only three steps of communication are required.

    摘要翻译: 本发明描述了一种用于在客户和经销商之间执行无现金支付的设备和方法。 本发明的优点在于,可以通过因特网执行支付,而不需要实施存储在客户芯片卡中的特殊支付命令。 使用具有文件结构的普通芯片卡就足够了。 这样的文件结构可以在不同的文件系统卡中使用,而不依赖于芯片卡的操作系统。 因此,本发明的方法可以用于各种芯片卡,而不需要执行特殊的支付命令。 该协议的设计使得每次付款只需要三个通信步骤。

    Method, apparatus and computer program product for processing cashless payments
    2.
    发明授权
    Method, apparatus and computer program product for processing cashless payments 失效
    用于处理无现金支付的方法,设备和计算机程序产品

    公开(公告)号:US06829597B1

    公开(公告)日:2004-12-07

    申请号:US09638745

    申请日:2000-08-14

    IPC分类号: G06F1760

    摘要: A computer program product and programmed method for performing cashless payments between a customer and a dealer via a bank. The invention is embodied in an on-line computerized process between customer and dealer to define the payment method, check the availability frame, issue a voucher to describe the transaction, issue a payment instruction, signature of the issued voucher by the dealer and signature of the payment instruction by the dealer and the customer. In another embodiment, the information is gathered and the voucher and payment instructions are generated off-line. A subsequent on-line process between the dealer and bank transfer the signed payment instruction and signed voucher to the bank where computer coded checks the dealer and customer signature, checks the allocation between payment instruction and voucher, replaces the dealer and customer identity data with information for performance of the payment instruction, and performs the payment instruction and stores the voucher. An advantage of the process is that no sensitive customer data such as account number, credit card number etc. is stored on the customer card and hence misuse by unauthorized persons is minimized. In addition the process serves to define the payment methods required by the customer for mechanical processing and to minimize the risk to the customer upon loss of the customer card. The process also allows customers who do not have a bank account, such as children for example, to have access to an electronic payment means with limited availability frame. The customer card can be either a card with contacts or a contactless card.

    摘要翻译: 一种用于通过银行在客户和经销商之间执行无现金支付的计算机程序产品和编程方法。 本发明体现在客户和经销商之间的在线计算机化过程,以定义支付方式,检查可用性框架,发行凭证来描述交易,发行支付指令,经销商签发已签发的凭单和签名 经销商和客户的付款指示。 在另一个实施例中,收集信息并且离线生成凭单和支付指令。 经销商和银行之间的随后的在线流程将签署的付款指示和签署的凭单转交给计算机编码检查经销商和客户签名的银行,检查付款指示和凭单之间的分配,将经销商和客户身份数据替换为信息 用于执行支付指令,并执行支付指令并存储凭单。 该过程的优点在于,客户卡上不存储帐号,信用卡号等敏感客户数据,从而将未经授权的人误用最小化。 此外,该过程用于定义客户机械处理所需的支付方式,并在客户卡丢失时最小化客户的风险。 该过程还允许没有银行帐户的客户(例如,儿童)能够访问电子支付手段,可用性有限。 客户卡可以是具有联系人的卡片或非接触式卡片。

    Method and system for secure pervasive access
    3.
    发明授权
    Method and system for secure pervasive access 有权
    安全普遍访问的方法和系统

    公开(公告)号:US06859879B2

    公开(公告)日:2005-02-22

    申请号:US09810354

    申请日:2001-03-16

    IPC分类号: H04L29/06 H04L29/08 G06F17/00

    摘要: The present invention relates to a client-server system having a security system for controlling access to application functions. The security system separated from the clients and the application functions routes all incoming requests created by various PVC-devices to a centralized security system providing an authentication component and a security component. The authentication component provides several authentication mechanisms which may be selected by information contained in the client's request. The authentication mechanism may be changed or extended without changing conditions on the client as well on the server or application side. The security component provides a security policy describing security requirements for accessing application functions which may be invoked by the security component. If the selected authentication mechanism succeeds and fulfills the security policy associated to that application function then the application function will be invoked by the security component.

    摘要翻译: 本发明涉及具有用于控制对应用功能的访问的安全系统的客户机 - 服务器系统。 与客户端分离的安全系统和应用功能将由各种PVC设备创建的所有传入请求路由到提供认证组件和安全组件的集中式安全系统。 认证组件提供可以由客户端请求中包含的信息选择的几种认证机制。 认证机制可以在客户端以及服务器或应用侧也不改变条件的情况下进行更改或扩展。 该安全组件提供了一个描述安全性要求的安全策略,用于访问可能由安全组件调用的应用程序功能。 如果所选择的认证机制成功并且满足与该应用功能相关联的安全策略,那么应用功能将被安全组件调用。

    Method and apparatus for controlling access to the contents of web pages by using a mobile security module
    5.
    发明授权
    Method and apparatus for controlling access to the contents of web pages by using a mobile security module 失效
    通过使用移动安全模块来控制对网页内容的访问的方法和装置

    公开(公告)号:US07206803B1

    公开(公告)日:2007-04-17

    申请号:US09584605

    申请日:2000-05-31

    IPC分类号: G06F15/16

    CPC分类号: H04L63/0823 H04L63/0853

    摘要: The present invention relates to an apparatus and method for controlling access to protected web pages on a web server by using a method of authentication. The method according to the invention is divided into a general method for authenticating the client and a downstream method for granting authorization to access the protected web pages by generating a session ID of which the client is notified after successful authentication, and by inserting the session ID as part of the new request. This ensures that even the links on the protected-access web page are covered and are provided with a session ID to serve as access authorization. The session ID is preferably given a validity date. The present invention fits into the existing browser infrastructure without any alterations being needed for this purpose. The use of a chip card increases the security of the method of authentication.

    摘要翻译: 本发明涉及一种通过使用认证方法来控制对Web服务器上受保护网页的访问的装置和方法。 根据本发明的方法被划分为用于认证客户端的一般方法和用于通过在成功认证之后生成客户端被通知的会话ID来授权访问受保护网页的下游方法,并且通过插入会话ID 作为新请求的一部分。 这确保即使保护访问网页上的链接被覆盖,并且被提供有用作访问授权的会话ID。 会话ID优选地被给予有效期。 本发明适用于现有的浏览器基础设施,而不需要为此目的进行任何改变。 使用芯片卡增加了认证方法的安全性。

    Distributing information in a markup language within a computer system
    6.
    发明授权
    Distributing information in a markup language within a computer system 有权
    以计算机系统中的标记语言分发信息

    公开(公告)号:US08161183B2

    公开(公告)日:2012-04-17

    申请号:US10024118

    申请日:2001-12-19

    IPC分类号: G06F13/00

    CPC分类号: G06F17/30873

    摘要: Computer-based methods and systems are described wherein at least one content provider, a portal and a user are coupled to a communications network or content delivery network. The content provider provides means for generating information in a markup language and for sending the information to a portal. The portal comprises means for combining information received from one or more content providers and for sending the combined information to the user.

    摘要翻译: 描述基于计算机的方法和系统,其中至少一个内容提供商,门户和用户耦合到通信网络或内容传送网络。 内容提供商提供用于以标记语言生成信息并将信息发送到门户的装置。 门户包括用于组合从一个或多个内容提供商接收的信息并将组合的信息发送给用户的装置。

    System for dynamically integrating remote portlets into portals
    7.
    发明授权
    System for dynamically integrating remote portlets into portals 有权
    用于将远程portlet动态集成到门户中的系统

    公开(公告)号:US07890601B2

    公开(公告)日:2011-02-15

    申请号:US12177485

    申请日:2008-07-22

    申请人: Thomas Schaeck

    发明人: Thomas Schaeck

    IPC分类号: G06F15/16

    CPC分类号: G06F17/3089 G06Q20/108

    摘要: The present invention discloses a system and method allowing dynamically integrating remote portlets into each Portal by providing local portlets as remote portlet Web-Services by providing, to each Portal-Server, a publishing functionality allowing electronic creation of a service description for each single local portlet and publishing it into a Central-Registry and a find/binding functionality to find remote portlet Web-Services via the Central-Registry and bind them using the service description for accessing the remote portlet. Preferably, each Portal-Server includes a Portlet-Registry component as well as a Portlet-Proxy. The Portlet-Registry provides service description to the Portlet-Proxy that establishes a SOAP-communication with a remote Portal-Server providing the remote portlet Web-Service to be selected. The main advantage of the present invention is that local portlets become available for all Portal-Server without requiring local installation of the portlet code itself. Furthermore, new remote portlets can be included into a portal by finding them in a registry and binding them.

    摘要翻译: 本发明公开了一种允许通过向每个门户 - 服务器提供发布功能,允许为每个单个本地portlet电子创建服务描述的本地portlet作为远程Portlet Web服务,将远程Portlet动态集成到每个Portal中的系统和方法 并将其发布到中央注册表和查找/绑定功能,以通过中心注册表查找远程portlet Web服务,并使用服务描述绑定它们以访问远程Portlet。 优选地,每个Portal-Server包括Portlet-Registry组件以及Portlet-Proxy。 Portlet-Registry为Portlet-Proxy提供服务描述,该Portlet代理与远程Portal-Server建立SOAP通信,提供要选择的远程Portlet Web服务。 本发明的主要优点是本地portlet可用于所有Portal-Server,而不需要本地安装portlet代码本身。 此外,新的远程portlet可以通过在注册表中查找并绑定到门户中。

    SYSTEM AND PROGRAM PRODUCT FOR CACHING WEB CONTENT
    8.
    发明申请
    SYSTEM AND PROGRAM PRODUCT FOR CACHING WEB CONTENT 失效
    系统和程序产品用于缓存网页内容

    公开(公告)号:US20080244218A1

    公开(公告)日:2008-10-02

    申请号:US12123634

    申请日:2008-05-20

    IPC分类号: G06F12/00

    摘要: The invention provides a system and program product for caching dynamic portal pages without changing the existing caching proxy infrastructure or the transportation protocol used by providing an advanced caching component. An advanced caching component provides the functionality that additional dynamic page specific cache information is provided as part of the response including the portal page. Each component in the portal that dynamically contributes page fragments to be aggregated to a portal page provides dynamic component specific cache information which includes component specific cache scope and expiration values.

    摘要翻译: 本发明提供了用于缓存动态门户页面的系统和程序产品,而不改变现有的缓存代理基础设施或通过提供高级缓存组件所使用的传输协议。 高级缓存组件提供了额外的动态页面特定缓存信息作为包括门户页面的响应的一部分提供的功能。 门户网站中的每个组件动态地提供要聚合到门户页面的页面片段,提供动态组件特定的缓存信息,其中包括特定于组件的高速缓存范围和到期值。

    Technique for communication with mobile data processing devices by way of mobile software agents
    9.
    发明授权
    Technique for communication with mobile data processing devices by way of mobile software agents 失效
    通过移动软件代理与移动数据处理设备进行通信的技术

    公开(公告)号:US07222151B1

    公开(公告)日:2007-05-22

    申请号:US09691324

    申请日:2000-10-18

    申请人: Thomas Schaeck

    发明人: Thomas Schaeck

    IPC分类号: G06F15/16 G06F15/173

    CPC分类号: G06F9/4862 G06F8/60

    摘要: A techinque for communicating with a mobile data processing device by way of a mobile software agent. Any application, such as a banking application which permits cash withdrawals from ATMs, can be represented as a mobile software agent. The mobile software agent is spread across a network to all terminals with cash dispensing functions. The terminals include a communication component having a mobile software agent interface function component and a mobile chipcard interface function component. The mobile software agent interface component provides support functions for receiving and installing the mobile software agent. The chipcard interface component safeguards the communication with the chipcard. The mobile software agent evaluates the information delivered to it from the mobile software agent interface component and then installs itself on the terminals as appropriate. Chipcard-related events are notified via the chipcard interface component to the mobile software agent which, after classifying the chipcard concerned, performs the actions on the chipcard. By implementating these interface components on every terminal in the network, administration of the chipcards in the network can be controlled from the backend system (server).

    摘要翻译: 用于通过移动软件代理与移动数据处理设备通信的技术。 任何允许从ATM取款的银行申请的申请可以表示为移动软件代理。 移动软件代理通过网络传播到具有现金分发功能的所有终端。 终端包括具有移动软件代理接口功能组件和移动芯片卡接口功能组件的通信组件。 移动软件代理接口组件提供用于接收和安装移动软件代理的支持功能。 芯片卡接口组件保护与芯片卡的通信。 移动软件代理评估从移动软件代理接口组件传递给它的信息,然后酌情将其安装在终端上。 芯片卡相关事件通过芯片卡接口组件被通知给移动软件代理,移动软件代理在对相关芯片卡进行分类之后,对芯片卡执行动作。 通过在网络中的每个终端上实现这些接口组件,可以从后端系统(服务器)控制网络中的卡片卡的管理。

    Cooperation between web applications
    10.
    发明申请
    Cooperation between web applications 审中-公开
    Web应用程序之间的合作

    公开(公告)号:US20060168102A1

    公开(公告)日:2006-07-27

    申请号:US11325586

    申请日:2006-01-04

    IPC分类号: G06F15/16

    CPC分类号: G06F16/958

    摘要: To provide flexible cooperation between web applications such as portlets. A first web application sends a request via a request dispatcher to a second web application. The second web application returns a response, to the first web application via the request dispatcher, enabling the first web application to display the second web application's response. In preferred embodiments, the second web application is remote.

    摘要翻译: 提供诸如Portlet之类的Web应用程序之间的灵活协作。 第一网络应用程序通过请求分派器将请求发送到第二Web应用程序。 第二网络应用程序通过请求分派器向第一web应用程序返回响应,使得第一web应用程序能够显示第二Web应用程序的响应。 在优选实施例中,第二web应用是远程的。