会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 1. 发明申请
    • Method and apparatus for adopting authorizations
    • 采用授权的方法和装置
    • US20050039158A1
    • 2005-02-17
    • US10639862
    • 2003-08-13
    • Lawrence KovedAnthony NadalinMarco Pistoia
    • Lawrence KovedAnthony NadalinMarco Pistoia
    • G06F9/44
    • G06F21/53
    • A method and apparatus for implementing a new Permission for methods that perform callback operations are provided. The method and apparatus provide an AdoptPermission Permission type that allows a method to pass a Java 2 authorization test without having the specific required Permissions expressly granted to the method and without the method having the AllPermission Permission granted to it. With the apparatus and method, an AdoptPermission Permission type is defined that operates to allow a ProtectionDomain to “adopt” a required Permission. However, this adoption of a required Permission can only be performed if the ProtectionDomain of at least one method in the thread stack has been granted a Permission that implies the required Permission. Thus, the AdoptPermission Permission type provides an intermediate mechanism that is not as over-inclusive as the AllPermission Permission type and is not as under-inclusive as requiring that all methods in the thread stack include the required Permission expressly granted to them.
    • 提供了一种用于实现执行回调操作的方法的新的Permission的方法和装置。 该方法和设备提供了一个AdoptPermission权限类型,允许一种方法传递Java 2授权测试,而不会明确授予该方法的特定所需权限,而不授予其授予AllPermission权限的方法。 使用设备和方法,定义了一个AdoptPermission权限类型,该类型用于允许ProtectionDomain“采用”所需的权限。 但是,只有当线程堆栈中至少有一个方法的ProtectionDomain被授予一个隐含所需权限的权限时,才能执行所需的权限。 因此,AdoptPermission Permission类型提供了一个不像AllPermission Permission类型那样超出包容性的中间机制,并且不包含要求线程堆栈中的所有方法都包含明确授予它们的所需权限。
    • 2. 发明申请
    • METHOD AND APPARATUS FOR ADOPTING AUTHORIZATIONS
    • 通过授权的方法和装置
    • US20080104698A1
    • 2008-05-01
    • US11968673
    • 2008-01-03
    • Lawrence KovedAnthony NadalinMarco Pistoia
    • Lawrence KovedAnthony NadalinMarco Pistoia
    • G06F21/00
    • G06F21/53
    • A method and apparatus for implementing a new Permission for methods that perform callback operations are provided. The method and apparatus provide an AdoptPermission Permission type that allows a method to pass a Java 2 authorization test without having the specific required Permissions expressly granted to the method and without the method having the AllPermission Permission granted to it. With the apparatus and method, an AdoptPermission Permission type is defined that operates to allow a ProtectionDomain to “adopt” a required Permission. However, this adoption of a required Permission can only be performed if the ProtectionDomain of at least one method in the thread stack has been granted a Permission that implies the required Permission. Thus, the AdoptPermission Permission type provides an intermediate mechanism that is not as over-inclusive as the AllPermission Permission type and is not as under-inclusive as requiring that all methods in the thread stack include the required Permission expressly granted to them.
    • 提供了一种用于实现执行回调操作的方法的新的Permission的方法和装置。 该方法和设备提供了一个AdoptPermission权限类型,允许一种方法传递Java 2授权测试,而不会明确授予该方法的特定所需权限,而不授予其授予AllPermission权限的方法。 使用设备和方法,定义了一个AdoptPermission权限类型,该类型用于允许ProtectionDomain“采用”所需的权限。 但是,只有当线程堆栈中至少有一个方法的ProtectionDomain被授予一个隐含所需权限的权限时,才能执行所需的权限。 因此,AdoptPermission Permission类型提供了一个不像AllPermission Permission类型那样超出包容性的中间机制,并且不包含要求线程堆栈中的所有方法都包含明确授予它们的所需权限。
    • 6. 发明申请
    • Secure data communications in web services
    • 在Web服务中安全的数据通信
    • US20060294383A1
    • 2006-12-28
    • US11168716
    • 2005-06-28
    • Paula AustelMaryann HondoMichael McIntoshAnthony NadalinNataraj Nagaratnam
    • Paula AustelMaryann HondoMichael McIntoshAnthony NadalinNataraj Nagaratnam
    • H04L9/00
    • G06F21/606G06F21/629H04L63/12
    • Methods, systems, and products are disclosed in which secure data communications in web services are provided generally by receiving in a web service from a client a request containing an element bearing a first signature, the signature having a value; signing the value of the first signature, thereby creating a second signature; and sending a response from the web service to the client, the response including the second signature. The requester may verify that the response includes the second signature. The request may be encrypted, and the response may be encrypted. The first signature may be encrypted, and the web service may encrypt the value of the first signature and include the encrypted value of the first signature in the response. The web service may receive a request encoded in SOAP and may send a response also encoded in SOAP.
    • 公开了一种方法,系统和产品,其中Web服务中的安全数据通信通常通过从客户端接收web服务来提供包含具有第一签名的元素的请求,该签名具有值; 签署第一签名的价值,从而创建第二个签名; 以及将所述web服务的响应发送到所述客户端,所述响应包括所述第二签名。 请求者可以验证响应包括第二个签名。 该请求可以被加密,并且响应可以被加密。 可以对第一签名进行加密,并且web服务可以加密第一签名的值并将第一签名的加密值包括在响应中。 Web服务可以接收以SOAP编码的请求,并且可以发送也以SOAP编码的响应。
    • 9. 发明申请
    • Method and system for certification path processing
    • 认证路径处理方法和系统
    • US20050278534A1
    • 2005-12-15
    • US10855728
    • 2004-05-27
    • Anthony NadalinBruce RichXiaoyan Zhang
    • Anthony NadalinBruce RichXiaoyan Zhang
    • H04L9/00H04L9/32
    • H04L9/3263H04L2209/56H04L2209/60
    • A method, an apparatus, a system, and a computer program product are presented for validating certificates. A certificate validation service receives a certificate validation request for a target certificate from a client, thereby allowing the client to offload certificate validation tasks into an online certificate validation service that is accessible and sharable by multiple components within a data processing system. In response to a determination that the target certificate is valid or invalid, the certificate validation service sends a certificate validation response with an indicating status value that the target certificate is valid or invalid. The certificate validation service is able to cache information about previously validated certificates and the associated certificate chains, thereby enhancing the efficiency of the service. Different certificate validation policies may be applied against target certificates based upon information associated with the target certificates.
    • 提供了验证证书的方法,装置,系统和计算机程序产品。 证书验证服务从客户端接收目标证书的证书验证请求,从而允许客户端将证书验证任务卸载到可由数据处理系统内的多个组件访问和共享的在线证书验证服务。 响应于目标证书有效或无效的确定,证书验证服务发送具有目标证书有效或无效的指示状态值的证书验证响应。 证书验证服务能够缓存有关以前验证的证书和关联的证书链的信息,从而提高服务的效率。 可以根据与目标证书相关的信息,针对目标证书应用不同的证书验证策略。
    • 10. 发明授权
    • Federated identity brokering
    • 联合身份中介
    • US07581248B2
    • 2009-08-25
    • US10878855
    • 2004-06-28
    • Barry D. AtkinsDavid O. MelgarAnthony NadalinAjamu A. Wesley
    • Barry D. AtkinsDavid O. MelgarAnthony NadalinAjamu A. Wesley
    • H04L29/12H04L29/06H04L29/04
    • H04L63/0823H04L29/06
    • A method, system and apparatus for federated identity brokering. In accordance with the present invention, a credential processing gateway can be disposed between one or more logical services and one or more service requesting clients in a computer communications network. Acting as a proxy and a trusted authority to the logical services, the credential processing gateway can map the credentials of the service requesting clients to the certification requirements of the logical services. In this way, the credential processing gateway can act as a federated identity broker in providing identity certification services for a multitude of different service requesting clients without requiring the logical services to include a pre-configuration for specifically processing the credentials of particular service requesting clients.
    • 用于联合身份代理的方法,系统和装置。 根据本发明,可以在一个或多个逻辑服务与计算机通信网络中的一个或多个服务请求客户端之间设置凭证处理网关。 作为逻辑服务的代理和信任机构,凭证处理网关可以将请求客户端的服务的凭证映射到逻辑服务的认证要求。 以这种方式,证书处理网关可以充当联合身份代理,为多个不同服务请求客户端提供身份认证服务,而不需要逻辑服务包括特定处理特定服务请求客户端的凭证的预配置。