会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 1. 发明申请
    • METHOD AND SYSTEM FOR SECURE PAIRING OF WIRELESS DEVICES
    • 用于安全无线设备配对的方法和系统
    • WO2012055425A1
    • 2012-05-03
    • PCT/EP2010/006529
    • 2010-10-26
    • NEC EUROPE LTD.BOHLI, Jens-MatthiasUGUS, Osman
    • BOHLI, Jens-MatthiasUGUS, Osman
    • H04L29/06
    • H04W12/06H04L63/061H04L63/0853H04L63/18
    • A method for secure pairing of wireless devices, wherein a master device (A) is deployed in a network environment (2), and wherein a new device (B) to be securely integrated into said network environment (2) executes an unauthenticated key exchange with said master device (A), is characterized in that said master device (A) has a security association (3) with a camera system (1) that monitors an operational area where said new wireless device (B) is placed, based on the exchanged key, said master device (A) and said new device (B) each compute a key confirmation code, wherein said camera system (1) learns said key confirmation code from said master device (A), said camera system (1) watches for devices transmitting said key confirmation code via a visual out-of-band channel (7) and provides images of such identified devices to said master device (A), based on an analysis of an image of a device identified by said camera system (1), an authorization decision is made with respect to accepting said identified device as new device (B) of said network environment (2). Furthermore, a corresponding system is disclosed.
    • 一种用于无线设备的安全配对的方法,其中在网络环境(2)中部署主设备(A),并且其中将被安全地集成到所述网络环境(2)中的新设备(B)执行未经认证的密钥交换 与所述主设备(A)的特征在于,所述主设备(A)具有安全关联(3),其具有监视所述新无线设备(B)的放置的操作区域的照相机系统(1),基于 所述主设备(A)和所述新设备(B)各自计算密钥确认码,其中所述相机系统(1)从所述主设备(A)学习所述密钥确认码,所述相机系统(1) 手表用于经由视觉带外频道(7)发送所述密钥确认码的设备,并且基于对由所述相机系统识别的设备的图像的分析,将所识别的设备的图像提供给所述主设备(A) (1)作出授权决定 将所述识别的设备称为所述网络环境(2)的新设备(B)。 此外,公开了相应的系统。
    • 3. 发明申请
    • METHOD AND SYSTEM FOR OBTAINING A RESULT OF A JOINT PUBLIC FUNCTION FOR A PLURALITY OF PARTIES
    • 获取缔约方多数公共职能的结果的方法和制度
    • WO2013001021A1
    • 2013-01-03
    • PCT/EP2012/062601
    • 2012-06-28
    • NEC EUROPE LTD.BOHLI, Jens-MatthiasSEEDORF, JanLI, Wenting
    • BOHLI, Jens-MatthiasSEEDORF, JanLI, Wenting
    • H04L9/08
    • H04L9/085H04L2209/46
    • The invention relates to a method for obtaining a result of a joint public function for a plurality of parties in a secure multi-party computation environment, comprising the steps of a) Providing input data of the parties, b) Generating shares from the provided input data, c) Sharing the generated shares among the parties according to a secret sharing scheme, d) Performing the joint public function with the shared shares, e) Generating function shares from the performed public function and sharing the function shares among the parties according to a secret sharing scheme, and f) Obtaining the result from the shared generated shares, g) Recovering an intermediate information of the shared shares, and h) Using the recovered intermediate information for performing step d). The invention relates also to use of a method and a secure multi-party computation system.
    • 本发明涉及一种用于在安全的多方计算环境中获得多方的联合公共功能的结果的方法,包括以下步骤:a)提供双方的输入数据,b)从提供的输入生成股份 数据,c)根据秘密共享方案分享各方之间的已发行股份; d)共同共享股进行联合公共职能; e)根据履行的公共职能发起职能股份,并按照 秘密共享方案,以及f)从共享生成的共享获取结果,g)恢复共享共享的中间信息,以及h)使用恢复的中间信息来执行步骤d)。 本发明还涉及使用方法和安全的多方计算系统。
    • 4. 发明申请
    • METHOD FOR PROVING RETRIEVABILITY OF INFORMATION
    • 提供信息可检索性的方法
    • WO2015173434A1
    • 2015-11-19
    • PCT/EP2015/060917
    • 2015-05-18
    • NEC EUROPE LTD.UNIVERSITÄT MANNHEIM
    • ARMKNECHT, FrederikBOHLI, Jens-MatthiasKARAME, GhassanREUTER, Christian
    • G06F21/64H04L29/06G06F3/06
    • H04L63/10G06F3/067G06F21/645G06F2221/2101G06F2221/2115H04L63/123
    • The present invention relates to a method for proving retrievability, 'POR', of information, said method being performed in a memory available to one or more computation devices, wherein credentials between a user device, a storing device and an auditing device between each pair of said devices are exchanged and used for communication between them, comprising the steps of a) Encoding the information to be stored on said storing device by said user device or said auditing device, b) Storing the encoded information on said storing device, c) Verifying the correctness of said stored information by the auditing device and using unpredictable random information d) Transmitting correctness information to the user device, said correctness information being secure and which are generated based on the result of said verification by the auditing device and e) Validating said correctness information by the user device for proving retrievability of said stored information and said unpredictable random information.
    • 本发明涉及一种用于证明信息的可检索性“POR”的方法,所述方法在可用于一个或多个计算设备的存储器中执行,其中用户设备,存储设备和每对之间的审核设备之间的凭证 所述设备被交换并用于它们之间的通信,包括以下步骤:a)由所述用户设备或所述审核设备对要存储在所述存储设备上的信息进行编码; b)将编码信息存储在所述存储设备上; c) 验证所述存储的信息由审核设备的正确性和使用不可预测的随机信息d)向用户设备发送正确性信息,所述正确性信息是安全的,并且基于审核设备的所述验证的结果生成,以及e)验证 所述用户设备的所述正确性信息用于证明所述存储的信息和所述不可预测的ra的可检索性 ndom信息。
    • 5. 发明申请
    • METHOD AND SYSTEM FOR VERIFYING INFORMATION OF A DATA ITEM IN A PLURALITY OF DIFFERENT DATA ITEMS
    • 用于验证数据项在多个数据项中的信息的方法和系统
    • WO2016131473A1
    • 2016-08-25
    • PCT/EP2015/053242
    • 2015-02-16
    • NEC EUROPE LTD.UNIVERSITÄT MANNHEIM
    • BOHLI, Jens-MatthiasKARAME, GhassanARMKNECHT, Frederik
    • G06F17/30G06F21/30G06F21/60H04L9/00H04L29/06
    • H04L9/3239G06F17/30097G06F17/30156G06F17/30194G06F21/30G06F21/602G06F21/6218G06F21/64H04L29/06755H04L63/0281H04L63/0457H04L63/061H04L63/12H04L67/1097
    • The present invention relates to a method for verifying information of a data item (DI) in a plurality of different data items (DI), preferably stored on a server (SP) like a cloud or the like, wherein: a) a hash tree is generated from the plurality of data items (DI), such that the data items (DI) forming the leaves (LO) of the hash tree (HT) and such that the non-leaf nodes (L1, L2, L3,...) are computed by hashing the data items (DI) of their respective child nodes (L0, L1, L2,...) and when computing the root-hash (R) at least the distance between the root node (R) and the leaf-nodes (L0) is included into the hashing; b) an authentication path for said data item (DI) is computed based on a recomputation of the hash tree (HT), wherein an authentication path comprises all siblings of tree nodes from the data item (DI) to the root (R) of the hash tree (HT); c) the root-hash (R) is recomputed based on said data item (DI) and the computed authentication path of said data item (DI) and the recomputed root-hash (R) is compared with the root-hash (R) of the hash-tree (HT) of step a); d) the side element (RME) in the leaves (L0) or a tree level (L1) above of the hash tree (HT) and its authentication path is determined; e) the authentication path of said side element (RME) is verified, wherein based on the result of step e) the number of data items (DI) of said plurality is determined and wherein a membership of said data item (DI) to the plurality of data items is determined based on the result of step c).
    • 本发明涉及一种用于验证多个不同数据项(DI)中数据项(DI)的信息的方法,优选地存储在诸如云等的服务器(SP)上,其中:a)散列树 (DI)生成,使得形成散列树(HT)的叶子(LO)的数据项(DI),使得非叶节点(L1,L2,L3,...) 通过对其各自的子节点(L0,L1,L2,...)的数据项(DI)进行散列来计算,并且当根节点(R)至少计算根节点(R)和 叶节点(L0)被包含在哈希中; b)基于散列树(HT)的重新计算来计算所述数据项(DI)的认证路径,其中认证路径包括从数据项(DI)到根(R)的树节点的所有兄弟节点 散列树(HT); c)基于所述数据项(DI)重新计算根散列(R),并且将所计算的所述数据项(DI)的认证路径和重新计算的根散列(R)与根散列(R)进行比较, 的步骤a)的散列树(HT); d)确定树叶(L0)中的边元素(RME)或散列树(HT)上方的树级(L1)及其认证路径; e)验证所述侧元件(RME)的认证路径,其中基于步骤e)的结果,确定所述多个数据项的数量(DI),并且其中所述数据项(DI)的隶属于 基于步骤c)的结果确定多个数据项。
    • 6. 发明申请
    • METHOD FOR STORING DATA ON A STORAGE ENTITY
    • 在存储实体上存储数据的方法
    • WO2017140381A1
    • 2017-08-24
    • PCT/EP2016/053578
    • 2016-02-19
    • NEC EUROPE LTD.
    • BOHLI, Jens-MatthiasKARAME, Ghassan
    • H04L29/06G06F21/62
    • G06F21/6209H04L63/0428
    • The present invention relates to a method for storing data on a storage entity (SE), comprising the steps of: a) Dividing a file to be stored into a number of chunks by a client, b) Computing a secret key for each chunk of said file, c) Computing for each chunk a chunk identifier by said client, d) Checking, by said SE, if one or more of said chunks have already been stored based on said computed chunk identifiers, e) In case one or more of said chunks have not already been stored: - Encoding the corresponding chunks; - Computing chunk tags for said chunks using said computed secret key; - Storing said encoded chunks and said chunk tags.
    • 本发明涉及一种用于在存储实体(SE)上存储数据的方法,该方法包括以下步骤:a)由客户将要存储的文件划分为多个块,b) 为所述文件的每个块计算秘密密钥,c)由所述客户端为每个块计算块标识符,d)由所述SE,基于所述计算的块标识符来检查是否已经存储了一个或多个所述块, e)如果一个或多个所述组块尚未被存储: - 编码相应的组块; - 使用所述计算的秘密密钥来计算所述组块的块标签; - 存储所述编码的块和所述块标签。
    • 8. 发明申请
    • METHOD FOR STORING DATA ON A STORAGE ENTITY
    • 在存储实体上存储数据的方法
    • WO2017140358A1
    • 2017-08-24
    • PCT/EP2016/053384
    • 2016-02-17
    • NEC EUROPE LTD.UNIVERSITAET MANNHEIM
    • BOHLI, Jens-MatthiasKARAME, GhassanARMKNECHT, Frederik
    • G09C1/00G06F3/06H04L9/00H04L29/06
    • H04L9/008G06F3/0608G06F3/0623G06F3/067G06F21/6218G06F21/64G09C1/00H04L63/0428
    • The present invention relates to a method for storing data on a storage entity (SE), comprising the steps of: a) computing a file identifier for a file to be stored on said SE; b) checking, by said SE, if the file has already been stored using said file identifier; c) generating a user-specific private and a user-specific public identifier; d) updating or computing tags of said file by said client such that said updating or computing is homomorphic in the user-specific private identifier and in parts of said file; e) providing said user-specific public identifier said updated tags and a proof of possession of said secret identifier to said SE by said client; f) verifying by said SE, said proof-of-possession; g) verifying validity of said tags; h) upon successful checking storing a public identifier for said file incorporating said user-specific public identifier and said updated tags by said SE; i) if the file has not already been stored, storing said file by said SE.
    • 本发明涉及一种用于在存储实体(SE)上存储数据的方法,该方法包括以下步骤:a)计算要存储在所述SE上的文件的文件标识符; b)由所述SE检查文件是否已经使用所述文件标识符被存储; c)生成用户特定的私人和用户特定的公共标识符; d)由所述客户端更新或计算所述文件的标签,使得所述更新或计算在所述用户专用专用标识符和所述文件的部分中是同态的; e)由所述客户向所述SE提供所述用户特定的公共标识符,所述更新的标签和所述秘密标识符的拥有证明; f)由所述SE核实所述占有证据; g)验证所述标签的有效性; h)在成功检查时,由所述SE存储结合所述用户特定公共标识符和所述更新标签的所述文件的公共标识符; i)如果文件尚未被存储,则由所述SE存储所述文件。
    • 9. 发明申请
    • METHOD AND SYSTEM FOR PROVIDING A PROOF-OF-WORK
    • 提供工作证明的方法和系统
    • WO2017020953A1
    • 2017-02-09
    • PCT/EP2015/068111
    • 2015-08-05
    • NEC EUROPE LTD.UNIVERSITAET MANNHEIM
    • BOHLI, Jens-MatthiasKARAME, GhassanARMKNECHT, Frederik
    • H04L9/00H04L9/32G09C1/00H04L29/06
    • H04L9/3271H04L63/08H04L63/1458H04L2209/56
    • The present invention relates to a method for providing a proof-of-work, comprising the steps of a) Computing, by a verification computing device, 'VCD', a first linear feedback shift register sequence, 'LFSR-S', using a first polynomial having a first degree and computing, by said VCD, a second LFSR-S based on a second polynomial, wherein said polynomials are computed such that the first polynomial divides the second polynomial, b) Transmitting elements generated by a function on input of a number of initial state parameters of said second LFSR-S to a proving computing device, 'PCD', c) Transmitting a challenge, generated by said VCD and using said elements of said second LFSR-S, to said PCD, d) Recursively computing, by said PCD, all elements of said first LFSR-S by using said transmitted elements of said second LFSR-S, e) Computing a solution for said received challenge based on said computed elements of said first LFSR-S and transmitting said solution to said VCD f) Providing a proof-of-work by verifying, by said VCD, said transmitted solution by recomputing a solution to said challenge using initial state parameters and coefficients of said first LFSR-S comparing the computed solution of said PCD with said recomputed solution of said VCD.
    • 本发明涉及一种用于提供工作证明的方法,包括以下步骤:a)通过验证计算设备计算第一线性反馈移位寄存器序列“LFSR-S”,使用“ 第一多项式具​​有第一度,并且由所述VCD计算基于第二多项式的第二LFSR-S,其中所述多项式被计算为使得所述第一多项式除以所述第二多项式,b)由功能生成的发送元素 将所述第二LFSR-S的初始状态参数发送到验证计算设备“PCD”,c)将由所述VCD产生的挑战和使用所述第二LFSR-S的所述元素发送给所述PCD的d)递归地 由所述PCD通过使用所述第二LFSR-S的所述发送的元素来计算所述第一LFSR-S的所有元素,e)基于所述计算的所述第一LFSR-S的元素计算所述接收到的挑战的解,并且传送所述解 说VCD,f)提供专业的 通过使用初始状态参数和所述第一LFSR-S的系数重新计算解决所述挑战的所述VCD,通过所述VCD验证所述传输的解决方案,所述第一LFSR-S将计算出的所述PCD的解决方案与所述VCD的所述重新计算的解决方案进行比较。
    • 10. 发明申请
    • A METHOD FOR STORING DATA IN A CLOUD AND A NETWORK FOR CARRYING OUT THE METHOD
    • 用于存储云中的数据的方法和用于实现该方法的网络
    • WO2016180495A1
    • 2016-11-17
    • PCT/EP2015/060641
    • 2015-05-13
    • NEC EUROPE LTD.UNIVERSITÄT MANNHEIM
    • BOHLI, Jens-MatthiasKARAME, GhassanARMKNECHT, Frederik
    • H04L9/32H04L29/08H04L9/00
    • H04L67/1097H04L9/008H04L9/3271H04L63/123H04L67/06H04L67/1095
    • For providing an easy and secure use of cloud services a method for storing data in a cloud is claimed, comprising the following steps: providing at least one data file to be stored together with a predefined number t of replicas of the at least one data file within the cloud, at least one authentication tag corresponding to the at least one data file and t functions that can be configured to take at least a predefined time to compute; transmitting the at least one data file, the at least one authentication tag and the t functions to the cloud; storing the at least one data file within the cloud; computing t solutions of the t functions within the cloud; generating the t replicas of the at least one data file based on the t solutions of the t functions and the at least one data file within the cloud, wherein each function is used for at least one replica of the at least one data file; and storing the t replicas within the cloud. Further, an according network for carrying out the method is claimed.
    • 为了提供对云服务的简单和安全的使用,声称在云中存储数据的方法包括以下步骤:提供要与所述至少一个数据文件的预定数量的副本t一起存储的至少一个数据文件 在云内,至少一个对应于该至少一个数据文件的认证标签和t个功能,其可配置为至少采取预定时间进行计算; 将所述至少一个数据文件,所述至少一个认证标签和所述t功能发送到所述云; 将所述至少一个数据文件存储在所述云内; 计算云中t函数的解; 基于所述t函数和所述云中的所述至少一个数据文件的t解,生成所述至少一个数据文件的t个副本,其中每个功能用于所述至少一个数据文件的至少一个副本; 并将t个副本存储在云中。 此外,要求保护用于执行该方法的相关网络。