会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 1. 发明授权
    • Confidence-based authentication
    • 基于置信的认证
    • US08621209B1
    • 2013-12-31
    • US13277026
    • 2011-10-19
    • Jesper M. JohanssonDarren E. CanavorDaniel W. Hitchcock
    • Jesper M. JohanssonDarren E. CanavorDaniel W. Hitchcock
    • H04L29/06H04L9/32G06F7/04
    • H04L63/08
    • Disclosed are various embodiments that perform confidence-based authentication of a user. An identification of a user account is obtained from a user, and a minimum confidence threshold is determined. Multiple authentication questions are presented to the user, where the authentication questions are determined based at least in part on stored transaction information associated with the user account. Answers are obtained from the user to a subset of the questions, with each answer having a corresponding authentication point value. A confidence score is generated for the user, where the confidence score is increased by the respective authentication point values of the correct answers. Access by the user to a resource associated with the user account is authorized in response to determining that the confidence score meets the minimum confidence threshold.
    • 公开了执行用户的基于置信度的认证的各种实施例。 从用户获得用户帐户的识别,并确定最小置信阈值。 至少部分地基于与用户帐户相关联的存储的交易信息来确定认证问题的多个认证问题。 答案从用户获得到问题的一个子集,每个答案具有相应的认证点值。 为用户生成置信度分数,其中置信度得分通过正确答案的相应认证点值增加。 响应于确定置信度分数满足最小置信度阈值,授权用户访问与用户帐户相关联的资源。
    • 5. 发明申请
    • Secure Key Distribution to Internet Clients
    • 安全密钥分发给Internet客户端
    • US20090265772A1
    • 2009-10-22
    • US12104425
    • 2008-04-16
    • Daniel W. HitchcockSiddarth BhaiNathan D. MuggliBrian W. PuhlLee F. Walker
    • Daniel W. HitchcockSiddarth BhaiNathan D. MuggliBrian W. PuhlLee F. Walker
    • G06F21/20H04L9/08
    • H04L63/08G06F21/335H04L63/0281
    • A server may bridge between a wide area network, such as the Internet, and a local area network and may process authentication requests from clients on the wide area network. The server may filter the requests to enable specific types of requests to pass, and may forward the requests to a credential server within the local area network and pass any responses back to the client. The server may be configured with some or all of a set of domain services objects, but such objects may be stored in a read only format. The server may further contain a minimum of or no sensitive data such that, if compromised, an attacker may gain little advantage. The client may request evidence of authentication available to devices within the local area network and may use the evidence of authentication to access services made available to the wide area network.
    • 服务器可以在广域网(例如因特网)和局域网之间桥接,并且可以处理来自广域网上的客户端的认证请求。 服务器可以过滤请求以允许特定类型的请求通过,并且可以将请求转发到局域网内的凭证服务器,并将任何响应传回客户端。 服务器可以配置有一些域服务对象的一些或全部,但是这些对象可以以只读格式存储。 服务器还可以包含最少或不存在敏感数据,使得如果受到攻击,则攻击者可能获得很少的优势。 客户端可以请求可用于局域网内的设备的认证证据,并且可以使用认证证据来访问可用于广域网的服务。
    • 6. 发明授权
    • Multitenant-aware protection service
    • 多重感知保护服务
    • US09015493B2
    • 2015-04-21
    • US12883414
    • 2010-09-16
    • Jason Xiaodong HuDaniel W. HitchcockGregory Kostal
    • Jason Xiaodong HuDaniel W. HitchcockGregory Kostal
    • G06F21/00H04L29/06G06F21/60
    • H04L63/0428G06F21/602G06F2221/2107G06F2221/2115H04L63/104
    • Implementing a data protection service. One method includes receiving a request to provision a first tenant among a plurality of tenants managed by a single data protection service. A tenant is defined as an entity among a plurality of entities. A single data protection service provides data protection services to all tenants in the plurality of tenants. A first encryption key used to decrypt the first tenant's data at the data store is stored. The first encryption key is specific to the first tenant and thus cannot be used to decrypt other tenants' data at the data store from among the plurality of tenants. Rather each tenant in the plurality of tenants is associated with an encryption key, not usable by other tenants, used at the data store to decrypt data on a tenant and corresponding key basis.
    • 实施数据保护服务。 一种方法包括接收由单个数据保护服务管理的多个租户中提供第一租户的请求。 租户被定义为多个实体之间的实体。 单个数据保护服务为多个租户中的所有租户提供数据保护服务。 存储用于解密数据存储处的第一租户的数据的第一加密密钥。 第一加密密钥特定于第一租户,因此不能用于从多个租户中的数据存储处解密其他租户的数据。 相反,多个租户中的每个租户与在数据存储处不能使用的加密密钥相关联,以便在租户和对应的密钥基础上解密数据。
    • 7. 发明授权
    • Authentication management services
    • 认证管理服务
    • US08776194B2
    • 2014-07-08
    • US13363664
    • 2012-02-01
    • Daniel W. HitchcockBrad Lee Campbell
    • Daniel W. HitchcockBrad Lee Campbell
    • G06F21/00
    • G06F21/00G06F21/335G06F21/34H04L63/08H04L63/20
    • Disclosed are various embodiments for authentication management services, where authentication services of network sites may support authentication management clients associated with different authentication management services. An authentication request is obtained by way of an authentication protocol from an authentication management client executed in a client computing device. The authentication request specifies a security credential associated with a user account. The user account at the client computing device is authenticated for access to at least one secured resource of a network site in response to the authentication request and in response to the authentication management client being supported.
    • 公开了用于认证管理服务的各种实施例,其中网络站点的认证服务可以支持与不同认证管理服务相关联的认证管理客户端。 通过在客户端计算装置中执行的认证管理客户端的认证协议获得认证请求。 认证请求指定与用户帐户相关联的安全凭证。 客户端计算设备上的用户帐户被认证用于响应于认证请求以及响应于认证管理客户端被支持而访问网络站点的至少一个安全资源。
    • 10. 发明授权
    • Logout from multiple network sites
    • 从多个网站注销
    • US08863250B2
    • 2014-10-14
    • US13363685
    • 2012-02-01
    • Daniel W. HitchcockBrad Lee Campbell
    • Daniel W. HitchcockBrad Lee Campbell
    • H04L29/06
    • H04L63/08G06F21/41
    • Disclosed are various embodiments for logging out from multiple network sites using an authentication client that manages sessions for the network sites. Account data is maintained for multiple accounts of a user for multiple network sites. The account data includes a respective security credential for each of the accounts. An authentication client automatically authenticates with multiple authentication services corresponding to multiple network sites using multiple accounts in response to the user accessing each network site. A respective session is established for each network site. A logout is performed by ending each one of the sessions.
    • 公开了使用管理网站的会话的认证客户端从多个网站登出的各种实施例。 为多个网站的用户的多个帐户维护帐户数据。 帐户数据包括每个帐户的相应安全凭证。 认证客户机响应于用户访问每个网络站点,自动对使用多个帐户的多个网站对应的多个认证服务进行认证。 为每个网站建立相应的会话。 通过结束每个会话来执行注销。