会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 3. 发明申请
    • Security in Wireless Environments Using Out-Of-Band Channel Communication
    • 使用带外频道通信的无线环境中的安全性
    • US20100005294A1
    • 2010-01-07
    • US12083708
    • 2005-10-18
    • Kari KostiainenJan-Erik EkbergNitesh Saxena
    • Kari KostiainenJan-Erik EkbergNitesh Saxena
    • H04L9/32
    • H04L63/0492H04B10/1143H04L63/18H04W12/003H04W12/00522H04W76/10
    • A methodology of using an (preferably uni-directional) out-of-band channel for secure information transmission between two devices capable for LPRF communication is provided. Information, which is intended for secure transmission from one of the devices to the other device, is encoded into a time dependent visual sequence. The visual sequence may comprise one or more visual signals, in particular lighted-up and dark states. The visual sequence is emitted in a time-dependent visual signal by a light emitter of the one device and the emitted signal is detected by a light sensor of the other device on the basis of the detected signal. The time-dependent signal especially timely varies in the light intensity. The light sensor generates a (time-dependent) sequence of detection signals. These detection signals are decoded to reconstruct the information intended for secure transmission. The out-of-band channel transmission of the information being separate from the LPRF communication enables to transmit a shared secret. The shared secret is required for secure authentication of the devices during initialization of the LPRF communication.
    • 提供了一种在两个能够进行LPRF通信的设备之间使用(优选地是单向的)带外信道用于安全信息传输的方法。 用于从一个设备到另一个设备的安全传输的信息被编码成时间依赖的视觉序列。 视觉序列可以包括一个或多个视觉信号,特别是点亮和暗态。 视觉序列由一个装置的光发射器以时间相关的视觉信号发射,并且所发射的信号由另一装置的光传感器基于检测到的信号检测。 时间依赖信号在光强度方面特别及时地变化。 光传感器产生(时间依赖)的检测信号序列。 这些检测信号被解码以重建用于安全传输的信息。 与LPRF通信分离的信息的带外信道传输能够发送共享秘密。 在LPRF通信初始化期间,需要使用共享密钥进行安全认证。
    • 4. 发明申请
    • Method and Apparatus to Reset Platform Configuration Register in Mobile Trusted Module
    • 移动可信任模块中重置平台配置寄存器的方法和装置
    • US20120311315A1
    • 2012-12-06
    • US13578955
    • 2011-02-14
    • Jan-Erik EkbergNadarajah AsokanKari Kostiainen
    • Jan-Erik EkbergNadarajah AsokanKari Kostiainen
    • G06F15/177
    • G06F21/57
    • In accordance with the exemplary embodiments of the invention there is at least a method, apparatus, and executable program of computer instructions to perform the operations of establishing and initializing a set of platform configuration registers, where a first subset of platform configuration registers is defined as being non-resettable, and a second subset of platform configuration registers is defined as being resettable, storing initial boot-up system state information in one or more non-resettable platform configuration registers, dynamically resetting (2) a value of a platform configuration register identified by a reference integrity metric to reflect a measurement value provided by the reference integrity metric, and responding to an attestation request (0) with an attestation response (5) including dynamic information from the platform configuration register that was reset and system state information from a non-resettable platform configuration register.
    • 根据本发明的示例性实施例,至少有一种计算机指令的方法,装置和可执行程序,用于执行建立和初始化一组平台配置寄存器的操作,其中平台配置寄存器的第一子集被定义为 不可复位,并且平台配置寄存器的第二子集被定义为可重置,将初始启动系统状态信息存储在一个或多个不可重置的平台配置寄存器中,动态地重置(2)平台配置寄存器的值 由参考完整性度量标识,以反映由参考完整性度量提供的测量值,以及响应具有认证响应(5)的认证请求(5),该证明响应(5)包括来自重置的平台配置寄存器的动态信息,以及来自 一个不可重置的平台配置寄存器。
    • 5. 发明授权
    • Method and apparatus to reset platform configuration register in mobile trusted module
    • 在移动信任模块中重置平台配置寄存器的方法和装置
    • US09087198B2
    • 2015-07-21
    • US13578955
    • 2011-02-14
    • Jan-Erik EkbergNadarajah AsokanKari Kostiainen
    • Jan-Erik EkbergNadarajah AsokanKari Kostiainen
    • H04L29/06G06F21/00G06F21/57
    • G06F21/57
    • In accordance with the exemplary embodiments of the invention there is at least a method, apparatus, and executable program of computer instructions to perform the operations of establishing and initializing a set of platform configuration registers, where a first subset of platform configuration registers is defined as being non-resettable, and a second subset of platform configuration registers is defined as being resettable, storing initial boot-up system state information in one or more non-resettable platform configuration registers, dynamically resetting (2) a value of a platform configuration register identified by a reference integrity metric to reflect a measurement value provided by the reference integrity metric, and responding to an attestation request (0) with an attestation response (5) including dynamic information from the platform configuration register that was reset and system state information from a non-resettable platform configuration register.
    • 根据本发明的示例性实施例,至少有一种计算机指令的方法,装置和可执行程序,用于执行建立和初始化一组平台配置寄存器的操作,其中平台配置寄存器的第一子集被定义为 不可复位,并且平台配置寄存器的第二子集被定义为可重置,将初始启动系统状态信息存储在一个或多个不可重置的平台配置寄存器中,动态地重置(2)平台配置寄存器的值 由参考完整性度量标识,以反映由参考完整性度量提供的测量值,以及响应具有认证响应(5)的认证请求(5),该证明响应(5)包括来自重置的平台配置寄存器的动态信息,以及来自 一个不可重置的平台配置寄存器。
    • 9. 发明授权
    • System for user-friendly access control setup using a protected setup
    • 使用受保护的设置进行用户友好的访问控制设置的系统
    • US08984279B2
    • 2015-03-17
    • US11646277
    • 2006-12-28
    • Kari KostiainenSeamus MoloneyOlli Rantapuska
    • Kari KostiainenSeamus MoloneyOlli Rantapuska
    • H04L29/06
    • H04L63/061H04L9/0861H04L9/32H04L9/3226H04L63/0435H04L63/06H04L63/0815H04L2209/80
    • A method and apparatus includes a determining unit configured to determine whether a device entering a network should be allowed access and an executing unit configured to execute a configuration protocol between the registrar and the device and to a shared unique configuration key between the registrar and the device. If the device provides a privileged service, the configuration protocol enables the device to advertise the privileged service or if the device is a control point, the configuration protocol enables the device to advertise that it is able to control certain privileged services. The registrar also includes a controlling unit configured to obtain a controller key, if the registrar is to become controller of the new device and a service unit configured to execute a credential service that allows devices providing privileged services to delegate issuing of access control credentials to the registrar.
    • 一种方法和装置,包括:确定单元,被配置为确定是否允许访问进入网络的设备;以及执行单元,被配置为在所述注册器和所述设备之间执行配置协议,以及在所述注册器和所述设备之间共享唯一的配置密钥 。 如果设备提供特权服务,则配置协议使设备能够通告特权服务,或者设备是控制点,配置协议使设备能够通告其能够控制某些特权服务。 注册服务器还包括被配置为获得控制器密钥的控制单元,如果注册器将成为新设备的控制器,以及被配置为执行凭证服务的服务单元,该服务单元允许提供特权服务的设备将访问控制凭证的发布委托给 注册商。
    • 10. 发明授权
    • Room unit for marine structure
    • 海洋结构房间单位
    • US4722154A
    • 1988-02-02
    • US932922
    • 1986-11-19
    • Hannu VirtaUnto AsikainenKari KostiainenJarmo Wacker
    • Hannu VirtaUnto AsikainenKari KostiainenJarmo Wacker
    • B63B9/06B63B15/00B63B29/02E04H1/02E04H1/12
    • B63B29/025B63B17/0081
    • A room unit (1) and a method for the construction and the position mounting of the box-like room unit (1), for instance a cabin, a module assembled from room elements or the like. The room unit intended for an arrangement operable in marine enviroments, for instance for a ship, an offshore construction or the like. The room unit is located on an at least mainly even underlaying (14) of the arrangement, for instance on a ship's deck (14). The method comprises the inclusion of the room unit (1) with a roof (4), walls (2,3) and a floor (12), the lower portion of the wall (2,3) being attached at the outer edge of the self-supporting floor (12). The floor (12) is provided by adjustable damping appliances (21) operable from the interior of the room unit (1). The moving of the room unit (1) is carried out by supporting the unit (1) temporarily at a bag-like air cushion device and at one stabilizing device at least. The room unit ( 1) is after the removal of the temporary support mounted at its position by attaching the damping appliances (21) at said even underlaying (14). The floor (12) of the room unti (1) is adjusted in a desired orientation by trimming the room unit (1) supported by the damping appliance (21) and said floor (12) is adjusted at least mainly out of contact with the underlaying (14) by means of the adjustment of the damping device (21).
    • 房间单元(1)以及用于构造和位置安装盒式房间单元(1)的方法,例如舱室,由房间元件等组装的模块。 用于可在海洋环境中操作的布置的房间单元,例如用于船舶,海上施工等。 房间单元位于至少主要甚至是底层(14)的布置上,例如在船的甲板(14)上。 该方法包括房间单元(1)包括屋顶(4),壁(2,3)和地板(12),壁的下部(2,3)附接在 自支撑地板(12)。 地板(12)由可从室内单元(1)的内部操作的可调减振装置(21)提供。 房间单元(1)的移动通过将单元(1)暂时支撑在袋状气垫装置和至少一个稳定装置上来进行。 房间单元(1)在通过将阻尼器具(21)附接在所述均匀底垫(14)上而移除安装在其位置上的临时支架之后。 房间(1)的地板(12)通过修整由阻尼器具(21)支撑的房间单元(1)而以期望的方向被调整,并且所述地板(12)被调节至少主要不与 通过减震装置(21)的调节来进行底垫(14)的移动。