Method for analyzing security grade of information property
    1.
    发明授权
    Method for analyzing security grade of information property 失效
    分析信息资产安全等级的方法

    公开(公告)号:US07832013B2

    公开(公告)日:2010-11-09

    申请号:US11081501

    申请日:2005-03-17

    IPC分类号: G06F11/00

    CPC分类号: G06F21/577 G06Q10/10

    摘要: A method for analyzing a security grade of an information property, and more particularly, a method by which a security grade (a risk degree in security) is analyzed objectively and quantitatively such that risk degree management of an information property can be efficiently performed, is provided. The method for analyzing a security grade of an information property includes: selecting an information property as an object of security grade analysis, among information properties for which risk degree analysis and importance evaluation in managerial, physical, and technological aspects are performed; calculating the property risk degree of the selected property based on the weighted mean of risk degrees and importance evaluation; and mapping the weighted mean of the risk degree and the importance on a 2-dimensional plane having the X-axis indicating the weighted mean of a risk degree and the Y-axis indicating importance, and based on the appearing result, determining the priority of a safeguard.

    摘要翻译: 更具体地说,一种用于分析信息属性的安全等级的方法,更具体地说,可以客观地和定量地分析安全级别(安全性的风险程度),从而可以有效地执行信息属性的风险度管理的方法是 提供。 用于分析信息属性的安全等级的方法包括:在执行风险度分析和管理,物理和技术方面的重要性评估的信息属性中,选择作为安全等级分析对象的信息属性; 根据风险度和重要度评估的加权平均值计算所选财产的财产风险程度; 并绘制风险度的加权平均值以及具有X轴的二维平面的重要性,该X轴表示风险度的加权平均值,Y轴表示重要性,并且基于出现结果,确定优先级 一个保障。

    Method for analyzing security grade of information property
    2.
    发明申请
    Method for analyzing security grade of information property 失效
    分析信息资产安全等级的方法

    公开(公告)号:US20060080736A1

    公开(公告)日:2006-04-13

    申请号:US11081501

    申请日:2005-03-17

    IPC分类号: G06F12/14

    CPC分类号: G06F21/577 G06Q10/10

    摘要: A method for analyzing a security grade of an information property, and more particularly, a method by which a security grade (a risk degree in security) is analyzed objectively and quantitatively such that risk degree management of an information property can be efficiently performed, is provided. The method for analyzing a security grade of an information property includes: selecting an information property as an object of security grade analysis, among information properties for which risk degree analysis and importance evaluation in managerial, physical, and technological aspects are performed; calculating the property risk degree of the selected property based on the weighted mean of risk degrees and importance evaluation; and mapping the weighted mean of the risk degree and the importance on a 2-dimensional plane having the X-axis indicating the weighted mean of a risk degree and the Y-axis indicating importance, and based on the appearing result, determining the priority of a safeguard.

    摘要翻译: 更具体地说,一种用于分析信息属性的安全等级的方法,更具体地说,可以客观地和定量地分析安全级别(安全性的风险程度),从而可以有效地执行信息属性的风险度管理的方法是 提供。 用于分析信息属性的安全等级的方法包括:在执行风险度分析和管理,物理和技术方面的重要性评估的信息属性中,选择作为安全等级分析对象的信息属性; 根据风险度和重要度评估的加权平均值计算所选财产的财产风险程度; 并绘制风险度的加权平均值以及具有X轴的二维平面的重要性,该X轴表示风险度的加权平均值,Y轴表示重要性,并且基于出现结果,确定优先级 一个保障。

    AUTHENTICATION SYSTEM AND METHOD USING DEVICE IDENTIFICATION INFORMATION IN UBIQUITOUS ENVIRONMENT
    3.
    发明申请
    AUTHENTICATION SYSTEM AND METHOD USING DEVICE IDENTIFICATION INFORMATION IN UBIQUITOUS ENVIRONMENT 审中-公开
    认证系统和使用设备识别信息在无线环境中的方法

    公开(公告)号:US20100162376A1

    公开(公告)日:2010-06-24

    申请号:US12491431

    申请日:2009-06-25

    IPC分类号: G06F21/20 H04L9/32

    CPC分类号: H04L63/08 G06F21/33 H04L9/321

    摘要: An authentication system using device identification information in ubiquitous environment includes: an information reader for receiving authentication information of a user through at least one device of the user; a home gateway and an office gateway for registering the user authentication information received from the information reader, and performing service control through verification of authentication of the user; and an integrated authentication center for receiving the user authentication information from the home gateway and the office gateway by querying, in response to a request for the authentication of the user received from a specific system, and, when the respective pieces of the user authentication information are identical to each other, transmitting an authentication success message to the specific system.

    摘要翻译: 在无处不在的环境中使用设备识别信息的认证系统包括:信息阅读器,用于通过用户的至少一个设备接收用户的认证信息; 家庭网关和办公室网关,用于注册从信息阅读器接收到的用户认证信息,并通过验证用户的认证来执行服务控制; 以及集成认证中心,用于响应于从特定系统接收的对用户的认证的请求,通过查询从家庭网关和办公室网关接收用户认证信息,并且当各个用户认证信息 彼此相同,向特定系统发送认证成功消息。