SYSTEM AND METHOD FOR GENERATING REPRODUCIBLE SESSION KEYS
    2.
    发明申请
    SYSTEM AND METHOD FOR GENERATING REPRODUCIBLE SESSION KEYS 审中-公开
    用于生成可重复会话密钥的系统和方法

    公开(公告)号:WO2005107140A8

    公开(公告)日:2005-12-29

    申请号:PCT/CA2004002043

    申请日:2004-11-26

    CPC classification number: H04L9/0825 H04L9/0861 H04L2209/80

    Abstract: A system and method for generating reproducible session keys in a wireless messaging system. The session key is generated based on a hash of a message itself, optionally concatenated with additional information. Since the local server stores the message, it can easily regenerate the same session key in response to each MORE request. The method of the invention can be implemented with the stored original message, a public key, and an algorithm for generating the session key based on a hash of the message.

    Abstract translation: 一种用于在无线消息传递系统中生成可再现会话密钥的系统和方法。 会话密钥基于消息自身的散列生成,可选地与附加信息连接。 由于本地服务器存储该消息,因此可以轻松地重新生成相同的会话密钥以响应每个MORE请求。 本发明的方法可以利用所存储的原始消息,公钥和用于基于消息的散列生成会话密钥的算法来实现。

    SYSTEM AND METHOD FOR DETERMINING A SECURITY ENCODING TO BE APPLIED TO OUTGOING MESSAGES
    3.
    发明申请
    SYSTEM AND METHOD FOR DETERMINING A SECURITY ENCODING TO BE APPLIED TO OUTGOING MESSAGES 审中-公开
    用于确定应用于消息消息的安全编码的系统和方法

    公开(公告)号:WO2006128273A1

    公开(公告)日:2006-12-07

    申请号:PCT/CA2005/001664

    申请日:2005-10-31

    Abstract: A system and method for determining a security encoding to be applied to a message being sent by a user of a computing device, such as a mobile device, for example. In one broad aspect, the method comprises the steps of identifying a message to be sent to at least one recipient; determining, at the computing device, whether a general message encoding configuration setting thereon is set to a value that indicates that the security encoding to be applied to the identified message is to be established by a policy engine; where the general message encoding configuration setting on the computing device is set to a value that indicates that the security encoding to be applied to the identified message is to be established by the policy engine, determining the security encoding to be applied to the identified message by querying the policy engine for the security encoding to be applied to the identified message; applying the determined security encoding to the identified message; and transmitting the identified message to which the security encoding has been applied to the at least one recipient. In one embodiment, the policy engine is a PGP Universal Server.

    Abstract translation: 用于确定要应用于诸如移动设备的计算设备的用户正在发送的消息的安全编码的系统和方法。 在一个广泛的方面,该方法包括以下步骤:识别要发送给至少一个接收者的消息; 在计算设备处确定其上的一般消息编码配置设置是否被设置为指示要应用于所识别的消息的安全编码将由策略引擎建立的值; 其中计算设备上的一般消息编码配置设置被设置为指示要应用于所识别的消息的安全编码将由策略引擎建立的值,通过以下方式确定要应用于所标识的消息的安全编码: 查询所述策略引擎以将所述安全编码应用于所识别的消息; 将确定的安全编码应用于所识别的消息; 以及将已经应用了所述安全编码的所识别的消息发送到所述至少一个接收者。 在一个实施例中,策略引擎是PGP通用服务器。

    CHALLENGE RESPONSE SYSTEM AND METHOD
    4.
    发明申请
    CHALLENGE RESPONSE SYSTEM AND METHOD 审中-公开
    挑战反应系统和方法

    公开(公告)号:WO2005107130A1

    公开(公告)日:2005-11-10

    申请号:PCT/CA2004/002041

    申请日:2004-11-26

    Abstract: A challenge response scheme includes the authentication of a requesting device by an authenticating device. The authenticating device generates a challenge that is issued to the requesting device. The requesting device combines the challenge with a hash of a password provided by a user of the requesting device, and the combination of the hash of the password and the challenge is further hashed in order to generate a requesting encryption key that is used to encrypt the user supplied password. The encrypted user supplied password is sent to the authenticating device as a response to the issued challenge. The authenticating device generates an authenticating encryption key by generating the hash of a combination of the challenge and a stored hash of an authenticating device password. The authenticating encryption key is used to decrypt the response in order to retrieve the user-supplied password. If a hash of the user-supplied password matches the stored hash of the authenticating device password, then the requesting device has been authenticated and the authenticating device is in possession of the password.

    Abstract translation: 挑战响应方案包括认证设备对请求设备的认证。 认证设备产生发出到请求设备的质询。 请求设备将挑战与由请求设备的用户提供的密码的散列相结合,并进一步散列密码散列和质询的组合,以便生成用于加密的请求加密密钥 用户提供的密码。 加密的用户提供的密码作为对发布的挑战的响应被发送到认证设备。 认证设备通过生成质询的组合和存储的认证设备密码的哈希的散列来生成认证加密密钥。 认证加密密钥用于解密响应,以便检索用户提供的密码。 如果用户提供的密码的散列与存储的验证设备密码的哈希匹配,则请求设备已被认证,认证设备拥有密码。

    SYSTEM AND METHOD FOR APPLICATION AUTHORIZATION
    5.
    发明申请
    SYSTEM AND METHOD FOR APPLICATION AUTHORIZATION 审中-公开
    用于应用授权的系统和方法

    公开(公告)号:WO2005106675A1

    公开(公告)日:2005-11-10

    申请号:PCT/CA2004/002046

    申请日:2004-11-26

    Abstract: A method and system for authorization of applications executing on a device having a key store. Applications obtain an application-level ticket to permit access to one or more key values located in the key store. Each ticket is securely associated with an application and being generated on the determination that the application is a trusted application. Tickets are potentially associated with one key value in the key store, with a subset of key values in the key store, or with all key values in the key store. Access to key values by an application is possible independently of a user providing a password for each such access.

    Abstract translation: 一种用于在具有密钥存储的设备上执行的应用的授权的方法和系统。 应用程序获得一个应用程序级票证,以允许访问位于密钥存储区中的一个或多个密钥值。 每个票据与应用程序安全地相关联,并且在确定应用程序是可信应用程序时生成。 门票可能与密钥库中的一个密钥值相关联,密钥存储中的密钥值的子集或密钥存储中的所有密钥值。 可以独立于为每个这样的访问提供密码的用户访问应用的密钥值。

    SYSTEM AND METHOD FOR GENERATING REPRODUCIBLE SESSION KEYS
    8.
    发明申请
    SYSTEM AND METHOD FOR GENERATING REPRODUCIBLE SESSION KEYS 审中-公开
    用于生成可重复会话的系统和方法

    公开(公告)号:WO2005107140A1

    公开(公告)日:2005-11-10

    申请号:PCT/CA2004/002043

    申请日:2004-11-26

    CPC classification number: H04L9/0825 H04L9/0861 H04L2209/80

    Abstract: A system and method for generating reproducible session keys in a wireless messaging system. The session key is generated based on a hash of a message itself, optionally concatenated with additional information. Since the local server stores the message, it can easily regenerate the same session key in response to each MORE request. The method of the invention can be implemented with the stored original message, a public key, and an algorithm for generating the session key based on a hash of the message.

    Abstract translation: 一种用于在无线消息收发系统中产生可再现会话密钥的系统和方法。 会话密钥基于消息本身的散列生成,可选地与附加信息连接。 由于本地服务器存储消息,因此可以根据每个MORE请求轻松地重新生成相同的会话密钥。 本发明的方法可以利用存储的原始消息,公共密钥和用于基于消息的散列来生成会话密钥的算法来实现。

    SELECTIVELY WIPING A REMOTE DEVICE
    9.
    发明申请
    SELECTIVELY WIPING A REMOTE DEVICE 审中-公开
    选择性擦拭远程设备

    公开(公告)号:WO2008086611A1

    公开(公告)日:2008-07-24

    申请号:PCT/CA2008/000086

    申请日:2008-01-18

    Abstract: A system and method for selectively securing data from unauthorized access on a client device storing a plurality of data types with reference to an authorization level indicated in a command. A command is received at a client device comprising an authorization level indicator. Based on at least one predefined rule, which may be implemented in an IT policy stored at the client device, each of the plurality of data types to be secured is determined, and then the data corresponding to those types is secured. The data may be secured by encrypting and/or deleting the data at the client device. The predefined rules associated with each authorization level may be configured by a user or administrator having an authorization level that exceeds the associated authorization level. The system and method thus provide a method for securing only selected data types, depending on the authorization level of the issuer of the command.

    Abstract translation: 一种系统和方法,用于参考命令中指示的授权级别选择性地保护存储多种数据类型的客户机设备上的未授权访问的数据。 在包括授权级别指示符的客户端设备处接收到命令。 基于可以在存储在客户端设备的IT策略中实现的至少一个预定规则,确定要保护的多个数据类型中的每一个,然后确保与这些类型对应的数据。 可以通过在客户端设备处加密和/或删除数据来保护数据。 与每个授权级别相关联的预定义规则可以由具有超过相关授权级别的授权级别的用户或管理员配置。 因此,系统和方法提供了一种仅根据命令的发行者的授权级别来保护所选择的数据类型的方法。

    SYSTEM AND METHOD TO FORCE A MOBILE DEVICE INTO A SECURE STATE
    10.
    发明申请
    SYSTEM AND METHOD TO FORCE A MOBILE DEVICE INTO A SECURE STATE 审中-公开
    将移动设备强加于安全状态的系统和方法

    公开(公告)号:WO2008074123A1

    公开(公告)日:2008-06-26

    申请号:PCT/CA2006/002093

    申请日:2006-12-21

    Abstract: Embodiments relate to systems and methods for implementation on a mobile device to force the mobile device into a secure state upon detection or determination of a triggering event. Once it is determined that a triggering event has occurred, each application operating on the mobile device is caused to immediately unreference sensitive objects and a secure garbage collection operation is performed upon the unreferenced sensitive objects to render data associated therewith unreadable. The mobile device is then caused to enter a secure state, in which the mobile device cannot be accessed without authorization. A microprocessor within the mobile device is configured to determine the existence of the triggering event according to a configuration data structure and to perform the secure garbage collection.

    Abstract translation: 实施例涉及用于在移动设备上实现的系统和方法,以在检测或确定触发事件时强制移动设备进入安全状态。 一旦确定已经发生触发事件,则导致在移动设备上操作的每个应用程序立即不敏感的对象,并且对未引用的敏感对象执行安全的垃圾回收操作,以使与其相关联的数据不可读。 然后使移动设备进入安全状态,在该状态下移动设备无法在未经授权的情况下被访问。 移动设备内的微处理器被配置为根据配置数据结构确定触发事件的存在并执行安全垃圾收集。

Patent Agency Ranking