会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 2. 发明申请
    • Method and system for certification path processing
    • 认证路径处理方法和系统
    • US20050278534A1
    • 2005-12-15
    • US10855728
    • 2004-05-27
    • Anthony NadalinBruce RichXiaoyan Zhang
    • Anthony NadalinBruce RichXiaoyan Zhang
    • H04L9/00H04L9/32
    • H04L9/3263H04L2209/56H04L2209/60
    • A method, an apparatus, a system, and a computer program product are presented for validating certificates. A certificate validation service receives a certificate validation request for a target certificate from a client, thereby allowing the client to offload certificate validation tasks into an online certificate validation service that is accessible and sharable by multiple components within a data processing system. In response to a determination that the target certificate is valid or invalid, the certificate validation service sends a certificate validation response with an indicating status value that the target certificate is valid or invalid. The certificate validation service is able to cache information about previously validated certificates and the associated certificate chains, thereby enhancing the efficiency of the service. Different certificate validation policies may be applied against target certificates based upon information associated with the target certificates.
    • 提供了验证证书的方法,装置,系统和计算机程序产品。 证书验证服务从客户端接收目标证书的证书验证请求,从而允许客户端将证书验证任务卸载到可由数据处理系统内的多个组件访问和共享的在线证书验证服务。 响应于目标证书有效或无效的确定,证书验证服务发送具有目标证书有效或无效的指示状态值的证书验证响应。 证书验证服务能够缓存有关以前验证的证书和关联的证书链的信息,从而提高服务的效率。 可以根据与目标证书相关的信息,针对目标证书应用不同的证书验证策略。
    • 3. 发明申请
    • Method and system for a PKI-based delegation process
    • 基于PKI的委托过程的方法和系统
    • US20060004662A1
    • 2006-01-05
    • US10881978
    • 2004-06-30
    • Anthony NadalinBruce RichXiaoyan Zhang
    • Anthony NadalinBruce RichXiaoyan Zhang
    • H04L9/00
    • H04L63/02H04L9/006H04L9/0825H04L9/3213H04L9/3247H04L9/3268H04L63/0807H04L63/0823H04L2209/76H04L2463/062
    • A client generates a session key and a delegation ticket containing information for a requested delegation operation. The client generates a first copy of the session key and encrypts it using a public key of a proxy. The client generates a second copy of the session key and encrypts it using a public key of a server. The client then puts the encrypted session keys and delegation ticket into a first message that is sent to the proxy. The proxy extracts and decrypts its copy of the session key from the first message. The proxy then encrypts a proof-of-delegation data item with the session key and places it and the delegation ticket along with the encrypted copy of the session key for the server into a second message, which is sent to the server. The server extracts and decrypts its copy of the session key from the second message and uses the session key to obtain the proof-of-delegation data. Authority is successfully delegated to the proxy only if the server can verify the proof-of-delegation data.
    • 客户端生成会话密钥和包含所请求的委派操作的信息的委托票证。 客户端生成会话密钥的第一个副本,并使用代理的公钥对其进行加密。 客户端生成会话密钥的第二个副本,并使用服务器的公钥对其进行加密。 然后,客户端将加密的会话密钥和委派票证放入发送到代理的第一条消息中。 代理从第一条消息中提取并解密会话密钥的副本。 然后,代理使用会话密钥对代理证件数据项进行加密,并将其和委托凭证以及服务器的会话密钥的加密副本一起放入发送到服务器的第二个消息中。 服务器从第二个消息中提取和解密其会话密钥的副本,并使用会话密钥获取授权证明数据。 只有当服务器可以验证授权证明数据时,才将成功委托给代理。
    • 4. 发明申请
    • Method and apparatus for adopting authorizations
    • 采用授权的方法和装置
    • US20050039158A1
    • 2005-02-17
    • US10639862
    • 2003-08-13
    • Lawrence KovedAnthony NadalinMarco Pistoia
    • Lawrence KovedAnthony NadalinMarco Pistoia
    • G06F9/44
    • G06F21/53
    • A method and apparatus for implementing a new Permission for methods that perform callback operations are provided. The method and apparatus provide an AdoptPermission Permission type that allows a method to pass a Java 2 authorization test without having the specific required Permissions expressly granted to the method and without the method having the AllPermission Permission granted to it. With the apparatus and method, an AdoptPermission Permission type is defined that operates to allow a ProtectionDomain to “adopt” a required Permission. However, this adoption of a required Permission can only be performed if the ProtectionDomain of at least one method in the thread stack has been granted a Permission that implies the required Permission. Thus, the AdoptPermission Permission type provides an intermediate mechanism that is not as over-inclusive as the AllPermission Permission type and is not as under-inclusive as requiring that all methods in the thread stack include the required Permission expressly granted to them.
    • 提供了一种用于实现执行回调操作的方法的新的Permission的方法和装置。 该方法和设备提供了一个AdoptPermission权限类型,允许一种方法传递Java 2授权测试,而不会明确授予该方法的特定所需权限,而不授予其授予AllPermission权限的方法。 使用设备和方法,定义了一个AdoptPermission权限类型,该类型用于允许ProtectionDomain“采用”所需的权限。 但是,只有当线程堆栈中至少有一个方法的ProtectionDomain被授予一个隐含所需权限的权限时,才能执行所需的权限。 因此,AdoptPermission Permission类型提供了一个不像AllPermission Permission类型那样超出包容性的中间机制,并且不包含要求线程堆栈中的所有方法都包含明确授予它们的所需权限。
    • 5. 发明申请
    • METHOD AND APPARATUS FOR ADOPTING AUTHORIZATIONS
    • 通过授权的方法和装置
    • US20080104698A1
    • 2008-05-01
    • US11968673
    • 2008-01-03
    • Lawrence KovedAnthony NadalinMarco Pistoia
    • Lawrence KovedAnthony NadalinMarco Pistoia
    • G06F21/00
    • G06F21/53
    • A method and apparatus for implementing a new Permission for methods that perform callback operations are provided. The method and apparatus provide an AdoptPermission Permission type that allows a method to pass a Java 2 authorization test without having the specific required Permissions expressly granted to the method and without the method having the AllPermission Permission granted to it. With the apparatus and method, an AdoptPermission Permission type is defined that operates to allow a ProtectionDomain to “adopt” a required Permission. However, this adoption of a required Permission can only be performed if the ProtectionDomain of at least one method in the thread stack has been granted a Permission that implies the required Permission. Thus, the AdoptPermission Permission type provides an intermediate mechanism that is not as over-inclusive as the AllPermission Permission type and is not as under-inclusive as requiring that all methods in the thread stack include the required Permission expressly granted to them.
    • 提供了一种用于实现执行回调操作的方法的新的Permission的方法和装置。 该方法和设备提供了一个AdoptPermission权限类型,允许一种方法传递Java 2授权测试,而不会明确授予该方法的特定所需权限,而不授予其授予AllPermission权限的方法。 使用设备和方法,定义了一个AdoptPermission权限类型,该类型用于允许ProtectionDomain“采用”所需的权限。 但是,只有当线程堆栈中至少有一个方法的ProtectionDomain被授予一个隐含所需权限的权限时,才能执行所需的权限。 因此,AdoptPermission Permission类型提供了一个不像AllPermission Permission类型那样超出包容性的中间机制,并且不包含要求线程堆栈中的所有方法都包含明确授予它们的所需权限。
    • 9. 发明申请
    • Secure data communications in web services
    • 在Web服务中安全的数据通信
    • US20060294383A1
    • 2006-12-28
    • US11168716
    • 2005-06-28
    • Paula AustelMaryann HondoMichael McIntoshAnthony NadalinNataraj Nagaratnam
    • Paula AustelMaryann HondoMichael McIntoshAnthony NadalinNataraj Nagaratnam
    • H04L9/00
    • G06F21/606G06F21/629H04L63/12
    • Methods, systems, and products are disclosed in which secure data communications in web services are provided generally by receiving in a web service from a client a request containing an element bearing a first signature, the signature having a value; signing the value of the first signature, thereby creating a second signature; and sending a response from the web service to the client, the response including the second signature. The requester may verify that the response includes the second signature. The request may be encrypted, and the response may be encrypted. The first signature may be encrypted, and the web service may encrypt the value of the first signature and include the encrypted value of the first signature in the response. The web service may receive a request encoded in SOAP and may send a response also encoded in SOAP.
    • 公开了一种方法,系统和产品,其中Web服务中的安全数据通信通常通过从客户端接收web服务来提供包含具有第一签名的元素的请求,该签名具有值; 签署第一签名的价值,从而创建第二个签名; 以及将所述web服务的响应发送到所述客户端,所述响应包括所述第二签名。 请求者可以验证响应包括第二个签名。 该请求可以被加密,并且响应可以被加密。 可以对第一签名进行加密,并且web服务可以加密第一签名的值并将第一签名的加密值包括在响应中。 Web服务可以接收以SOAP编码的请求,并且可以发送也以SOAP编码的响应。