会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 8. 发明授权
    • Method and apparatus for securing communication utilizing a security processor
    • 用于利用安全处理器确保通信的方法和装置
    • US06311270B1
    • 2001-10-30
    • US09152591
    • 1998-09-14
    • David Carroll ChallenerDhruv Manmohandas DesaiPankaj RohatgiDavid Robert Safford
    • David Carroll ChallenerDhruv Manmohandas DesaiPankaj RohatgiDavid Robert Safford
    • G06F124
    • H04L63/0464H04L9/0838H04L2209/60
    • A method is provided for communicating digital content between a content provider and a data processing system which is under the control of a content consumer, utilizing an insecure communication channel, such as the internet. A security processor is provided. The security processor is communicative coupled to the data processing system of the consumer. The security processor receives and preprocesses encrypted digital content received from the insecure communication channel. The security processor includes a central processing unit for executing program instructions contained in digital content. The security processor includes a shared-secret decryption engine for receiving encrypted content and for utilizing a shared-secret key for producing decrypted digital content. Furthermore, the security processor includes a memory means for maintaining securely the shared-secret key within the security processor. This memory means is preferably secure from reverse engineering, whether electrical reverse engineering or mechanical reverse engineering. A security program is provided which is loaded onto the security processor and which is executable by the security processor. The security program includes a shared-secret encryption engine for receiving input and for utilizing the shared-secret key to produce cypheroutput based upon the input. The security program further includes a public key-private key decryption engine for receiving an encrypted input and utilizing a known public key and a private key to generate a decrypted output. Communications over the insecure communication channel between the content provider and the security processor are conducted utilizing the public key-private key algorithm, while communications between the security program and the security processor are conducted utilizing the shared-secret encryption protocol.
    • 提供了一种用于在内容提供商和处于内容消费者的控制下的数据处理系统之间通过诸如因特网之类的不安全通信信道来传送数字内容的方法。 提供了一个安全处理器。 安全处理器与消费者的数据处理系统通信耦合。 安全处理器接收并预处理从不安全通信信道接收的加密数字内容。 安全处理器包括用于执行包含在数字内容中的程序指令的中央处理单元。 安全处理器包括用于接收加密内容的共享秘密解密引擎,以及利用用于产生解密数字内容的共享秘密密钥。 此外,安全处理器包括用于在安全处理器内安全地维护共享秘密密钥的存储装置。 这种存储装置优选地是反向工程,无论是电逆向工程还是机械逆向工程。 提供一种安全程序,其被加载到安全处理器上并且可由安全处理器执行。 安全程序包括共享秘密加密引擎,用于接收输入并利用共享秘密密钥根据输入产生密码输出。 安全程序还包括用于接收加密输入并利用已知公钥和专用密钥生成解密输出的公钥 - 私钥解密引擎。 通过使用公钥密钥算法进行内容提供商和安全处理器之间的不安全通信信道的通信,同时利用共享秘密加密协议进行安全程序与安全处理器之间的通信。
    • 10. 发明授权
    • Data processing system and method for permitting only preregistered hardware to access a remote service
    • 仅允许预注册硬件访问远程服务的数据处理系统和方法
    • US06654886B1
    • 2003-11-25
    • US09356189
    • 1999-07-16
    • David Carroll ChallenerDaryl Carvis CromerDhruv Manmohandas DesaiHoward Jeffrey LockerAndy Lloyd TrotterJames Peter Ward
    • David Carroll ChallenerDaryl Carvis CromerDhruv Manmohandas DesaiHoward Jeffrey LockerAndy Lloyd TrotterJames Peter Ward
    • G06F1130
    • H04L63/0853G06F21/31G06F2221/2129
    • A data processing system and method are disclosed for permitting only preregistered client computer hardware to access a service executing on a remote server computer system. A log-in token is established including a unique identifier which identifies a particular client computer hardware. The client computer hardware logs-on to the server computer system. Subsequent to the client computer hardware logging-on to the server computer system, the client computer hardware attempts to access the service. During the attempt, the client computer hardware transmits the log-in token to the server computer system. The server computer system utilizes the unique identifier included within the log-in token to determine if the client computer hardware is registered to access the service. In response to a determination that the client computer hardware is registered to access the service, the server computer system permits the client computer hardware to access the service. In response to a determination that the client computer hardware is not registered to access the service, the server computer system prohibits the client computer hardware from accessing the service.
    • 公开了一种用于仅允许预注册的客户端计算机硬件访问在远程服务器计算机系统上执行的服务的数据处理系统和方法。 建立登录令牌,其包括标识特定客户端计算机硬件的唯一标识符。 客户端计算机硬件登录到服务器计算机系统。 在客户端计算机硬件登录到服务器计算机系统之后,客户端计算机硬件尝试访问该服务。 在尝试期间,客户端计算机硬件将登录令牌传输到服务器计算机系统。 服务器计算机系统利用包括在登录令牌内的唯一标识符来确定客户端计算机硬件是否被注册以访问该服务。 响应于确定客户端计算机硬件被注册以访问服务,服务器计算机系统允许客户端计算机硬件访问该服务。 响应于确定客户端计算机硬件未被注册以访问服务,服务器计算机系统禁止客户端计算机硬件访问服务。