会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 67. 发明申请
    • APPARATUS, SYSTEM, AND METHOD FOR REMOTELY ACCESSING A SHARED PASSWORD
    • 用于远程访问共享密码的设备,系统和方法
    • US20080133905A1
    • 2008-06-05
    • US11565452
    • 2006-11-30
    • David Carroll ChallenerSeiichi KawanoRandall Scott SpringfieldRod D. Waltermann
    • David Carroll ChallenerSeiichi KawanoRandall Scott SpringfieldRod D. Waltermann
    • H04L9/32
    • H04L9/0822H04L9/3226
    • An apparatus, system, and method are disclosed for remotely accessing a shared password. A storage module stores identifiers, passwords, and keys within a secure key structure of a client. The passwords and keys include a shared password encrypted with a shared password key that is encrypted with a service structure key. The storage module also stores the service structure key encrypted with a key derived from a service password on a trusted server. An input/output module accesses the trusted server from the client with a prospective service password and receives the encrypted service structure key from the trusted server if a hash of the prospective service password is equivalent to the service password. An encryption module may decrypt the service structure key with the prospective service password, the shared password key with the service structure key, and the shared password with the shared password key.
    • 公开了用于远程访问共享密码的装置,系统和方法。 存储模块在客户端的安全密钥结构内存储标识符,密码和密钥。 密码和密钥包括使用通过服务结构密钥加密的共享密码密钥加密的共享密码。 存储模块还将在服务密码上导出的密钥加密的服务结构密钥存储在可信服务器上。 输入/输出模块从客户端接收可信服务密码,如果预期服务密码的散列等于服务密码,则从可信服务器接收加密的服务结构密钥。 加密模块可以利用预期服务密码,具有服务结构密钥的共享密码密钥和具有共享密码密钥的共享密码对服务结构密钥进行解密。
    • 68. 发明授权
    • Securing sensitive configuration data remotely
    • 远程保护敏感的配置数据
    • US07281125B2
    • 2007-10-09
    • US09940155
    • 2001-08-24
    • David Carroll ChallenerSteven Dale GoodmanDavid Robert SaffordRandall Scott Springfield
    • David Carroll ChallenerSteven Dale GoodmanDavid Robert SaffordRandall Scott Springfield
    • H04L29/00
    • G06F21/572G06F21/575G06F21/62
    • A method, computer program product and computer system for securing alterable data. A computer that is remotely managed may be equipped with a protected storage that is accessible only by BIOS code. The protected storage may have the capacity to store a symmetrical encryption key. An EEPROM, which normally contains the BIOS code, may be used to store accessible configuration data as well as remotely unaccessible sensitive access information (e.g., passwords). The remotely unaccessible sensitive data is encrypted with the symmetrical encryption key by the BIOS code. Remote access to the sensitive data is accomplished via change requests submitted to the BIOS code over a secure channel. The BIOS code then determines whether the request is valid. If so, then sensitive data is decrypted, altered, encrypted, and re-written into the EEPROM. Normal access to accessible data is unaffected and remote access is allowed without changing the computer system architecture.
    • 一种用于保护可变数据的方法,计算机程序产品和计算机系统。 远程管理的计算机可能配备有只能通过BIOS代码访问的受保护存储。 受保护的存储器可以具有存储对称加密密钥的能力。 通常包含BIOS代码的EEPROM可用于存储可访问的配置数据以及远程不可访问的敏感访问信息(例如,密码)。 远程不可访问的敏感数据通过BIOS代码用对称加密密钥加密。 通过安全通道提交给BIOS代码的更改请求,可以远程访问敏感数据。 然后,BIOS代码确定请求是否有效。 如果是这样,那么敏感数据将被解密,更改,加密并重新写入EEPROM。 对可访问数据的正常访问不受影响,并且允许远程访问,而无需更改计算机系统架构。
    • 70. 发明授权
    • Method for providing security to a computer on a computer network
    • 用于向计算机网络上的计算机提供安全性的方法
    • US06823463B1
    • 2004-11-23
    • US09571192
    • 2000-05-16
    • David Carroll ChallenerRichard Alan DayanPalmer Eugene Newman
    • David Carroll ChallenerRichard Alan DayanPalmer Eugene Newman
    • G06F1130
    • G06F21/572G06F21/575H04L63/083
    • A method for providing security to a computer on a computer network is disclosed. When a network-supplied privileged-access password (PAP) is encountered during a system boot-up operation of the computer, the network-supplied PAP is compared with a system-installed PAP. The network-supplied PAP is stored in a first location of a non-volatile memory of the computer, and the system-installed PAP is stored in a second location of the non-volatile memory of the computer. The system-installed PAP is previously entered to the computer via a keyboard of the computer. If the network-supplied PAP does not match the system-installed PAP, a tamper evident mechanism within the computer is set. Otherwise, if the network-supplied PAP matches the system-installed PAP, the boot-up operation continues to be performed. After the boot-up operation has been completed, configuration of the computer is allowed to be performed remotely over the computer network.
    • 公开了一种用于向计算机网络上的计算机提供安全性的方法。 当在计算机的系统启动操作期间遇到网络提供的特权访问密码(PAP)时,将网络提供的PAP与系统安装的PAP进行比较。 网络提供的PAP存储在计算机的非易失性存储器的第一位置,并且系统安装的PAP存储在计算机的非易失性存储器的第二位置。 系统安装的PAP先前通过计算机的键盘输入计算机。 如果网络提供的PAP与系统安装的PAP不匹配,则设置计算机内的防拆封机制。 否则,如果网络提供的PAP与系统安装的PAP匹配,则继续执行启动操作。 启动操作完成后,可以通过计算机网络远程执行计算机的配置。