会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 1. 发明授权
    • Methods and systems for managing identity management security domains
    • 用于管理身份管理安全域的方法和系统
    • US08707024B2
    • 2014-04-22
    • US11462606
    • 2006-08-04
    • Nang Kon KwanChandrasekar KannanShuk Yee HoSteven William Parkinson
    • Nang Kon KwanChandrasekar KannanShuk Yee HoSteven William Parkinson
    • H04L29/00
    • H04L9/3213H04L9/0822H04L9/0891H04L9/3268H04L2209/603
    • Embodiments of the present invention provide identity management security domains that may be used in an enterprise security system. A security domain provides a centralized registry of services provided by the enterprise security system. For example, certificate authorities and other services, such as key archives, and the like, in the enterprise security system may register information about themselves in the security domain. Authorized users can then discover the location of these services. In some embodiments, the security domain may provide an interface that indicates a topology between services of the enterprise security system. The security domain may also serve as a distribution point for security policies. A security policy may comprise information that indicates, for example, a set of trusted certificate authorities, certificate templates, certificate revocation lists, and the locations of the services in the enterprise security system.
    • 本发明的实施例提供可以在企业安全系统中使用的身份管理安全域。 安全域提供由企业安全系统提供的服务的集中注册。 例如,企业安全系统中的证书机构和其他服务(如密钥档案等)可以在安全域中注册自己的信息。 然后,授权用户可以发现这些服务的位置。 在一些实施例中,安全域可以提供指示企业安全系统的服务之间的拓扑的接口。 安全域也可以作为安全策略的分发点。 安全策略可以包括例如指示一组可信证书颁发机构,证书模板,证书吊销列表以及企业安全系统中的服务的位置的信息。
    • 9. 发明申请
    • Methods and systems for key recovery for a token
    • 用于令牌的密钥恢复的方法和系统
    • US20070280483A1
    • 2007-12-06
    • US11447179
    • 2006-06-06
    • Christina FuNang Kon KwanSteven William ParkinsonRobert Relyea
    • Christina FuNang Kon KwanSteven William ParkinsonRobert Relyea
    • H04L9/00
    • H04L9/0822H04L9/0897
    • Methods, systems and computer readable mediums are provided for recovering keys. A key transport session key is generated, and a key encryption key is derived based on a server master key and an identification associated with a token. The key transport session key is encrypted with the key encryption key as a first wrapped key transport session key. An encrypted storage session key and an encrypted private key are retrieved from an archive. The encrypted storage session key is decrypted with a server storage key as a storage session key. The encrypted private key is decrypted with the storage session key. The decrypted private key is encrypted with the key transport session key as a wrapped private key. The wrapped private key and the first wrapped key transport session key are forwarded.
    • 提供方法,系统和计算机可读介质用于恢复密钥。 生成密钥传输会话密钥,并且基于服务器主密钥和与令牌相关联的标识来导出密钥加密密钥。 密钥传输会话密钥通过密钥加密密钥加密,作为第一个包装密钥传输会话密钥。 从归档中检索加密的存储会话密钥和加密的私钥。 加密存储会话密钥用服务器存储密钥解密为存储会话密钥。 加密的私钥用存储会话密钥解密。 解密的私钥用密钥传输会话密钥作为包装的私钥加密。 包裹的私钥和第一个包裹密钥传输会话密钥被转发。