JPH09507729A - キー寄託機能付き暗号システムおよび方法 - Google Patents
キー寄託機能付き暗号システムおよび方法Info
- Publication number
- JPH09507729A JPH09507729A JP7519155A JP51915595A JPH09507729A JP H09507729 A JPH09507729 A JP H09507729A JP 7519155 A JP7519155 A JP 7519155A JP 51915595 A JP51915595 A JP 51915595A JP H09507729 A JPH09507729 A JP H09507729A
- Authority
- JP
- Japan
- Prior art keywords
- key
- user
- communication
- center
- deposit
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Withdrawn
Links
Classifications
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06Q—INFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
- G06Q20/00—Payment architectures, schemes or protocols
- G06Q20/02—Payment architectures, schemes or protocols involving a neutral party, e.g. certification authority, notary or trusted third party [TTP]
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06Q—INFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
- G06Q20/00—Payment architectures, schemes or protocols
- G06Q20/38—Payment protocols; Details thereof
- G06Q20/382—Payment protocols; Details thereof insuring higher security of transaction
- G06Q20/3821—Electronic credentials
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06Q—INFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
- G06Q20/00—Payment architectures, schemes or protocols
- G06Q20/38—Payment protocols; Details thereof
- G06Q20/382—Payment protocols; Details thereof insuring higher security of transaction
- G06Q20/3829—Payment protocols; Details thereof insuring higher security of transaction involving key management
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/08—Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
- H04L9/0816—Key establishment, i.e. cryptographic processes or cryptographic protocols whereby a shared secret becomes available to two or more parties, for subsequent use
- H04L9/0819—Key transport or distribution, i.e. key establishment techniques where one party creates or otherwise obtains a secret value, and securely transfers it to the other(s)
- H04L9/0825—Key transport or distribution, i.e. key establishment techniques where one party creates or otherwise obtains a secret value, and securely transfers it to the other(s) using asymmetric-key encryption or public key infrastructure [PKI], e.g. key signature or public key certificates
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/08—Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
- H04L9/0816—Key establishment, i.e. cryptographic processes or cryptographic protocols whereby a shared secret becomes available to two or more parties, for subsequent use
- H04L9/0838—Key agreement, i.e. key establishment technique in which a shared key is derived by parties as a function of information contributed by, or associated with, each of these
- H04L9/0841—Key agreement, i.e. key establishment technique in which a shared key is derived by parties as a function of information contributed by, or associated with, each of these involving Diffie-Hellman or related key agreement protocols
- H04L9/0844—Key agreement, i.e. key establishment technique in which a shared key is derived by parties as a function of information contributed by, or associated with, each of these involving Diffie-Hellman or related key agreement protocols with user authentication or key authentication, e.g. ElGamal, MTI, MQV-Menezes-Qu-Vanstone protocol or Diffie-Hellman protocols using implicitly-certified keys
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/08—Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
- H04L9/0816—Key establishment, i.e. cryptographic processes or cryptographic protocols whereby a shared secret becomes available to two or more parties, for subsequent use
- H04L9/085—Secret sharing or secret splitting, e.g. threshold schemes
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/08—Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
- H04L9/088—Usage controlling of secret information, e.g. techniques for restricting cryptographic keys to pre-authorized uses, different access levels, validity of crypto-period, different key- or password length, or different strong and weak cryptographic algorithms
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/08—Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
- H04L9/0894—Escrow, recovery or storing of secret information, e.g. secret key escrow or cryptographic key storage
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/3247—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving digital signatures
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/3263—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving certificates, e.g. public key certificate [PKC] or attribute certificate [AC]; Public key infrastructure [PKI] arrangements
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F7/00—Methods or arrangements for processing data by operating upon the order or content of the data handled
- G06F7/60—Methods or arrangements for performing computations using a digital non-denominational number representation, i.e. number representation without radix; Computing devices using combinations of denominational and non-denominational quantity representations, e.g. using difunction pulse trains, STEELE computers, phase computers
- G06F7/72—Methods or arrangements for performing computations using a digital non-denominational number representation, i.e. number representation without radix; Computing devices using combinations of denominational and non-denominational quantity representations, e.g. using difunction pulse trains, STEELE computers, phase computers using residue arithmetic
- G06F7/724—Finite field arithmetic
- G06F7/725—Finite field arithmetic over elliptic curves
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Business, Economics & Management (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Accounting & Taxation (AREA)
- Physics & Mathematics (AREA)
- Strategic Management (AREA)
- General Business, Economics & Management (AREA)
- General Physics & Mathematics (AREA)
- Theoretical Computer Science (AREA)
- Finance (AREA)
- Storage Device Security (AREA)
- Computer And Data Communications (AREA)
- Data Exchanges In Wide-Area Networks (AREA)
- Sub-Exchange Stations And Push- Button Telephones (AREA)
- Financial Or Insurance-Related Operations Such As Payment And Settlement (AREA)
Abstract
Description
Claims (1)
- 【特許請求の範囲】 1.認証可能な信用される秘密暗号ディジタル通信を、外部エンティティが前 記通信をモニタできるようにする一方で、複数のユーザの間で生成するための方 法であって、 少なくとも1つの信用される寄託センタに、複数のユーザにより暗号通信のた めに使用される複数の非対称暗号化キーを寄託するステップと、 前記少なくとも1つの寄託センタによる前記複数のキーのそれぞれの寄託を認 証するステップと、 前記複数のユーザの第1ユーザから前記複数のユーザの第2ユーザに対する通 信を、前記複数のキーの第1キーを使用して暗号化するステップと、 前記寄託される通信に、前記少なくとも1つの信用される寄託センタを識別す るのに十分な情報を含むメッセージ制御ヘッダを含めるステップと、 前記複数のキーの第2キーを使用して、前記複数のユーザの前記第2ユーザに よる前記暗号化された通信を復号化するステップとを具備し、 前記第2ユーザによる前記暗号化通信を復号化する前記ステップが、前記第1 および第2ユーザの前記キーの認証、および有効なメッセージ制御ヘッダの前記 通信内での存在を条件とする方法。 2.前記第1ユーザからの通信を暗号化する前記ステップが、前記第1および 第2ユーザの前記キーの認証および有効なメッセージ制御ヘッダの前記通信内で の存在を条件とする請求の範囲第1項記載の方法。 3.前記通信が、記憶のために前記第1ユーザからそのユーザ自身に対して暗 号化されるように、前記第1ユーザおよび前記第2ユーザが同一である請求の範 囲第1項記載の方法。 4.各ユーザが、各ユーザが公開暗号化キーと秘密暗号化キーの少なくとも1 つの対応するペアを持つように、暗号通信の暗号化および復号化に使用する必要 がある複数の対応する公開キーと秘密キーのペアを構成する複数の無作為に作成 された非対称暗号化キーを持つ請求の範囲第1項記載の方法。 5.前記寄託するステップが、さらに、各ユーザのために、 前記少なくとも1つの対応するキーのペアから成る秘密キーを部分に分割する ステップと、 少なくとも一人の受託人のそれぞれに、前記秘密キーの少なくとも1つの部分 を提供するステップと、 前記少なくとも一人の受託人のそれぞれに、前記受託人が、前記秘密キーの前 記少なくとも1つの部分の正しい受領を確認できるようにするための確認情報を 提供するステップと、 前記少なくとも1つの信用された寄託センタによる、前記秘密キーの前記少な くとも1つの部分の前記少なくとも一人の受託人のそれぞれによる正しい受領を 確認するステップとを具備する請求の範囲第4項記載の方法。 6.前記寄託するステップが、さらに、前記分割するステップが前記寄託セン タにより実行されるように、前記ユーザ秘密キーを含む前記少なくとも1つの寄 託センタに対する通信を寄託するステップを具備する請求の範囲第5項記載の方 法。 7.前記ユーザ秘密キーを含む前記少なくとも1つの寄託センタに対する通信 を寄託する前記ステップが、さらに、前記ユーザが前記通信をディジタル署名す るステップを具備する請求の範囲第6項記載の方法。 8.前記分割するステップが、前記秘密キーを再構築するためには全N個の部 分が必要となるように、さらに、各ユーザの秘密キーをN個の部分に分割するこ とを具備する請求の範囲第5項記載の方法。 9.前記分割するステップが、M<Nの場合、前記秘密キーを再構築するため にはM個の部分だけが必要となるように、さらに、各ユーザの秘密キーをN個の 部分に分割することを具備する請求の範囲第5項記載の方法。 10.少なくとも一人の受託人のそれぞれに前記秘密キーの少なくとも1つの 部分を提供する前記ステップが、さらに、前記ユーザ秘密キーの前記少なくとも 1つの部分を含む前記少なくとも一人の受託人のそれぞれに対する通信を暗号化 するステップを具備する請求の範囲第5項記載の方法。 11.少なくとも一人の受託人のそれぞれに確認情報を提供する前記ステップ が、さらに、前記確認情報を含む通信を前記少なくとも一人の受託人のそれぞれ に対して暗号化するステップを具備する請求の範囲第10項記載の方法。 12.前記ユーザ秘密キーの前記少なくとも1つの部分を含む前記少なくとも 一人の受託人に対する通信を暗号化する前記ステップが、前記ユーザにより実行 され、さらに、前記ユーザが前記通信にディジタル署名するステップを具備する 請求の範囲第11項記載の方法。 13.前記確認情報を含む前記少なくとも一人の受託人のそれぞれに対する通 信を暗号化する前記ステップが、前記ユーザにより実行され、さらに、前記ユー ザが前記通信をディジタル署名するステップを具備する請求の範囲第12項記載 の方法。 14.前記ユーザ秘密キーの前記少なくとも1つの部分を含む前記少なくとも 一人の受託人のそれぞれに対する通信を暗号化する前記ステップが、前記寄託セ ンタにより実行され、さらに、前記寄託センタが前記通信にディジタル署名する ステップを具備する請求の範囲第13項記載の方法。 15.前記確認情報を含む前記少なくとも一人の受託人に対する通信を暗号化 する前記ステップが、前記寄託センタにより実行され、さらに、前記寄託センタ が前記通信にディジタル署名するステップを具備する請求の範囲第14項記載の 方法。 16.前記少なくとも1つの寄託センタを確認する前記ステップが、各受託人 に対して、 前記受託人による前記ユーザの前記秘密キーの前記少なくとも1つの部分の受 領を、前記寄託センタに対して通知するステップと、 前記受託人による前記確認情報を前記寄託センターに対して通信するステップ と、 前記確認情報の前記受託人による正しい通信に基づいて、前記ユーザの前記秘 密キーの前記少なくとも1つの部分の、前記受託人による正しい受領を、前記寄 託センタにより確証するステップとを具備する請求の範囲第5項記載の方法。 17.前記受託人によって前記確認情報を前記寄託センタに対して通信する前 記ステップが、前記確認情報を含む前記寄託センタに対する通信を暗号化するス テップを具備する請求の範囲第16項記載の方法。 18.前記確認情報を含む前記寄託センタに対する通信を暗号化する前記ステ ップが、さらに、前記受託人が前記通信にディジタル署名するステップを具備す る請求の範囲第17項記載の方法。 19.前記複数のユーザのそれぞれが、一意のディジタル識別コードを持ち、 前記方法が、さらに、前記少なくとも一人の受託人に前記ユーザの一意のディジ タル識別コードを提供するステップを具備する請求の範囲第5項記載の方法。 20.前記複数のキーのそれぞれの寄託を認証する前記ステップが、さらに、 前記暗号化キーと対応するユーザの間のつながりを公証し、前記暗号化キーが寄 託されたことを認証する前記複数の暗号化キーのそれぞれに対して、前記少なく とも1つの寄託センタにより寄託認証を発行することを含む請求の範囲第1項記 載の方法。 21.前記複数のキーのそれぞれの寄託を認証する前記ステップが、さらに、 前記対応するユーザに対して前記寄託認証のコピーを送信するステップを具備す る請求の範囲第20項記載の方法。 22.前記複数のキーのそれぞれの寄託を認証する前記ステップが、さらに、 前記寄託認証を前記複数のユーザの他者が利用できるようにするステップを具備 する請求の範囲第20項記載の方法。 23.前記寄託認証を利用できるようにするステップが、前記寄託認証をこの ようなユーザがアクセスできる寄託認証ディレクトリの中に入れることを含む請 求の範囲第22項記載の方法。 24.上位権威により前記少なくとも1つの信用された寄託センタの信頼性を 認証するステップをさらに具備する請求の範囲第1項記載の方法。 25.信用された寄託センタを認証する前記ステップが、寄託のために前記寄 託センタの信頼性を公証する前記少なくとも1つの信用される寄託センターのそ れぞれに前記上位権威による認証を発行するステップとを具備する請求の範囲第 24項記載の方法。 26.前記信用された寄託センタを認証するステップが、前記対応する信用さ れる寄託センタに対して前記上位権威の認証のコピーを送信するステップをさら に具備する請求の範囲第25項記載の方法。 27.前記信用される寄託センターを認証するステップが、前記複数のユーザ の他のものが前記上位権威認証を利用できるようにするステップをさらに具備す る請求の範囲第25項記載の方法。 28.前記上位権威が全システム権威を構成する請求の範囲第25項記載の方 法。 29.前記上位権威が信用されるデバイスの少なくとも1つの製造メーカーを 構成する請求の範囲第25項記載の方法。 30.前記信用される寄託センタを認証するステップが、デバイスの前記少な くとも1つの製造メーカーの信頼性を公証し、製造された前記デバイスの非対称 暗号化キーを無作為に作成し、読取り不能の不正な動きを防止するやり方で前記 キーを記憶する能力を立証する、デバイスの前記少なくとも1つの製造メーカー のそれぞれに対して、全システム権威による製造メーカー認証を発行するステッ プをさらに具備する請求の範囲第29項記載の方法。 31.前記信用された寄託センタを認証するステップが、前記対応する製造メ ーカーに対して前記製造メーカー認証のコピーを送信するステップをさらに具備 する請求の範囲第30項記載の方法。 32.前記信用された寄託センタを認証するステップが、前記製造メーカーに より製造されるデバイスのユーザに対して前記製造メーカー認証のコピーを送信 するステップをさらに具備する請求の範囲第30項記載の方法。 33.前記複数のキーのそれぞれの寄託を認証するステップが、前記対応する 暗号化キーのペアと対応するユーザの間のつながりを公証し、前記対応する暗号 化キーのペアの前記秘密キーが寄託された旨を認証する前記対応する暗号化キー のペアのそれぞれに対して、1つの寄託センタにより寄託認証を発行することを 具備する請求の範囲第4項記載の方法。 34.前記複数のキーのそれぞれの寄託を認証するステップが、前記対応する ユーザに対して前記寄託署名書のコピーを送信するステップをさらに具備する請 求の範囲第33項記載の方法。 35.前記複数のキーのそれぞれの寄託を認証するステップが、前記寄託認証 を前記複数のユーザのその他のものが利用できるようにするステップをさらに具 備する請求の範囲第33項記載の方法。 36.前記寄託認証を利用できるようにするステップが、前記ユーザが利用し やすい寄託認証ディレクトリの中に前記寄託認証を入れることを具備する請求の 範囲第35項記載の方法。 37.前記複数のキーのそれぞれの寄託を認証するステップが、前記寄託認証 を発行する前に、前記少なくとも1つの寄託センタにより前記対応する暗号化キ ーのペアのそれぞれの秘密キーの寄託を確認することを具備する請求の範囲第3 3項記載の方法。 38.前記対応する暗号化キーのペアの寄託認証が、前記認証を発行する寄託 センタの識別、前記寄託認証のディジタルコード識別、および前記対応する暗号 化キーのペアの前記公開キーを構成する請求の範囲第37項記載の方法。 39.前記メッセージ制御ヘッダを入れるステップが、前記第1ユーザの寄託 センタの識別および前記第1ユーザの寄託認証の前記ディジタルコード識別を構 成する暗号メッセージ制御ヘッダパケットを形成するステップを具備する請求の 範囲第38項記載の方法。 40.前記メッセージ制御ヘッダを入れるステップが、前記第2ユーザの寄託 センタの識別および前記第2ユーザの寄託認証の前記ディジタルコード識別を構 成する暗号メッセージ制御ヘッダパケットを形成するステップを具備する請求の 範囲第39項記載の方法。 41.前記第1ユーザの寄託センタおよび前記第2ユーザの寄託センタが同一 であり、 メッセージ制御ヘッダを入れる前記ステップが、前記第1および第2ユーザの 寄託センタの識別および前記寄託認証のそれぞれの前記ディジタル識別コードを 構成する暗号メッセージ制御ヘッダパケットを形成するステップをさらに具備す る請求の範囲第40項記載の方法。 42.前記メッセージ制御ヘッダを入れるステップが、前記第1ユーザの雇用 者または監督者の識別を構成する暗号メッセージ制御ヘッダパケットを形成する ステップをさらに具備する請求の範囲第39項記載の方法。 43.前記メッセージ制御ヘッダを入れるステップが、前記第2ユーザの雇用 者または監督者の識別を構成する暗号メッセージ制御ヘッダを形成するステップ とを具備する請求の範囲第42項記載の方法。 44.前記第1ユーザの雇用者または監督者および前記第2ユーザの雇用者ま たは監督者が同一であり、 メッセージ制御ヘッダを入れる前記ステップが、さらに、前記第1および第2 ユーザの雇用者または監督者の識別、および前記寄託認証のそれぞれの前記ディ ジタル識別コードを形成するステップを具備する請求の範囲第43項記載の方法 。 45.前記メッセージ制御ヘッダを入れるステップが、前記第1ユーザによる 前記メッセージ制御ヘッダの形成の日付および時刻を示すタイムスタンプを構成 する暗号メッセージ制御ヘッダパケットを形成するステップをさらに具備する請 求の範囲第39項記載の方法。 46.前記ユーザが、前記暗号通信および前記メッセージ制御ヘッダの形成の 日付および時刻を示すタイムスタンプを作成するための信用されるタイムクロッ クを備え、メッセージ制御ヘッダを入れる前記ステップが、前記タイムスタンプ の信頼性を認証するステップをさらに具備する請求の範囲第45項記載の方法。 47.前記タイムスタンプの信頼性を認証するステップが、前記タイムスタン プを作成するために、前記タイムクロックの信頼性を公証する上位権威による認 証を発行することを具備する請求の範囲第46項記載の方法。 48.前記タイムスタンプを認証するステップが、作成された前記タイムスタ ンプのそれぞれに前記タイムクロック認証を添付することをさらに具備する請求 の範囲第47項記載の方法。 49.前記上位権威が全システム権威を構成する請求の範囲第47項記載の方 法。 50.前記上位権威が前記タイムクロックの製造メーカーを構成する請求の範 囲第47項記載の方法。 51.前記上位権威が寄託センタを構成し、前記タイムクロック認証が前記寄 託認証内で発行され、デバイス製造メーカーの判断および前記寄託プロセス中の デバイス情報に基づく請求の範囲第46項記載の方法。 52.盗聴装置設置許可を持つ前記外部エンティティにより前記暗号通信をモ ニタするステップをさらに具備する請求の範囲第39項記載の方法。 53.前記モニタするステップが、 前記外部エンティティによる前記暗号化された通信に割り込むステップと、 前記盗聴措置設置許可および前記メッセージ制御ヘッダを前記第1ユーザの寄 託センタに提示するステップと、 前記第1ユーザの寄託センタに寄託された前記第1ユーザの前記対応する暗号 化キーのページの秘密キーを取得するステップと、 前記第1ユーザの前記秘密キーを前記暗号化された通信の復号化に使用するス テップとをさらに具備する請求の範囲第51項記載の方法。 54.前記提示するステップが、 前記メッセージ制御ヘッダから前記第1ユーザの寄託センタの前記識別および 前記第1ユーザの寄託認証の前記ディジタル識別コードを抽出するステップと、 前記盗聴装置設置許可および前記第1ユーザの寄託認証の前記ディジタル識別 コードを前記第1ユーザの寄託センタに提示するステップとをさらに具備する請 求の範囲第53項記載の方法。 55.前記第1ユーザが、前記暗号通信および前記メッセージ制御ヘッダの形 成の日付および時刻を示すタイムスタンプを作成するための信用されたタイムク ロックを備え、 前記メッセージ制御ヘッダを入れるステップが、 前記第1ユーザによる前記メッセージ制御ヘッダの形成の日付および時刻を示 すタイムスタンプを構成する暗号メッセージ制御ヘッダパケットを形成するステ ップと、 タイムスタンプを作成する目的で、前記タイムクロックの信頼性を認証するス テップとをさらに具備する請求の範囲第54項記載の方法。 56.前記信用されるタイムクロックが、前記タイムクロックの製造メーカー によってだけ設定または較正できる請求の範囲第55項記載の方法。 57.前記盗聴装置設置許可が、少なくとも1つの事前に定義される制約を条 件とする請求の範囲第53項記載の方法。 58.前記少なくとも1つの事前定義される制約が、前記盗聴装置設置許可に 、その前に前記第1ユーザの前記秘密キーを取得する前記ステップが発生しては な らない開始日付および時刻が含まれるような時間制約を具備する請求の範囲第5 7項記載の方法。 59.前記少なくとも1つの事前定義される制約が、前記盗聴装置設置許可に 、その後では前記第1ユーザの前記秘密キーを取得する前記ステップが発生して はならない終了日付および時刻が含まれるようなさらに時間制約を具備する請求 の範囲第58項記載の方法。 60.前記少なくとも1つの事前定義される制約が、前記盗聴装置設置許可に 、それ以降前記第1ユーザの前記秘密キーを取得する前記ステップが発生しては ならない終了日付および時刻が含まれるような時間制約を具備する請求の範囲第 53項記載の方法。 61.前記第1ユーザの秘密キーを取得するステップが、 前記少なくとも一人の受託人から、前記第1ユーザの秘密キーの前記少なくと も1つの部分を回収するステップと、 前記秘密キーの前記回収された部分から前記秘密キーを再構築するステップと をさらに具備する請求の範囲第53項記載の方法。 62.前記取得するステップが、前記寄託センタにより実行される請求の範囲 第61項記載の方法。 63.前記取得するステップが、前記外部エンティティにより実行される請求 の範囲第61項記載の方法。 64.前記第2ユーザの寄託センタの識別および前記第2ユーザの寄託認証の 前記ディジタル識別コードを構成する暗号メッセージ制御ヘッダパケットを形成 するステップとを具備する請求の範囲第38項記載の方法。 65.前記メッセージ制御ヘッダを入れるステップが、前記第2ユーザの雇用 者または監督者の識別を構成する暗号メッセージ制御ヘッダパケットを形成する ステップをさらに具備する請求の範囲第64項記載の方法。 66.盗聴装置設置許可を持つ前記外部エンティティによる前記暗号通信をモ ニタするステップをさらに具備する請求の範囲第64項記載の方法。 67.前記モニタするステップが、 前記外部エンティティによる前記暗号化された通信に割り込むステップと、 前記盗聴装置設置許可および前記メッセージ制御ヘッダを前記第2ユーザの寄 託センタに提示するステップと、 前記第2ユーザの寄託センタに寄託された、前記第2ユーザの前記対応する暗 号化キーのペアの秘密キーを取得するステップと、 前記暗号化された通信を復号化するために、前記第2ユーザの前記秘密キーを 使用するステップとをさらに具備する請求の範囲第66項記載の方法。 68.前記提示するステップが、 前記メッセージ制御ヘッダから、前記第2ユーザの寄託センタの前記識別およ び前記第2ユーザの寄託認証の前記ディジタル識別を抽出するステップと、 前記盗聴装置設置許可および前記第2ユーザの寄託認証の前記ディジタルコー ド識別を前記第2ユーザの寄託センタに対して提示するステップとをさらに具備 する請求の範囲第67項記載の方法。 69.前記第1ユーザが、前記暗号通信および前記メッセージ制御ヘッダの形 成の日付および時刻を示すタイムスタンプを作成するために信用されるタイムク ロックを備え、 前記メッセージ制御ヘッダを入れるステップが、 前記第1ユーザによる前記メッセージ制御ヘッダの形成の日付および時刻を示 すタイムスタンプを構成する暗号メッセージ制御ヘッダパケットを形成するステ ップと、 タイムスタンプを作成する目的で前記タイムクロックの信頼性を認証するステ ップとをさらに具備する請求の範囲第68項記載の方法。 70.前記信用されたタイムクロックが、前記タイムクロックの製造メーカー によってのみ設定または較正可能な請求の範囲第69項記載の方法。 71.前記盗聴装置許可が、少なくとも1つの事前定義された制約を条件とす る請求の範囲第67項記載の方法。 72.前記少なくとも1つの事前定義された制約が、前記盗聴装置設置許可が 、それ以前は前記第2ユーザの前記秘密キーを取得する前記ステップが発生して はならない開始日付および時刻を含むような時間制約を具備する請求の範囲第7 1項記載の方法。 73.前記少なくとも1つの事前定義された制約が、前記盗聴装置設置許可が 、それ以後は前記第2ユーザの前記秘密キーを取得する前記ステップが発生して はならない終了日付および時刻を含むようなさらなる時間制約を具備する請求の 範囲第72項記載の方法。 74.前記少なくとも1つの事前定義される制約が、前記盗聴装置設置許可が 、それ以後は前記第2ユーザの前記秘密キーを取得する前記ステップが発生して はならない終了日付および時刻を含むような時間制約を具備する請求の範囲第7 3項記載の方法。 75.前記第2ユーザの秘密キーを取得するステップが、 前記少なくとも一人の受託人から前記第2ユーザの秘密キーの前記少なくとも 1つの部分を回収するステップと、 前記秘密キーの前記回収された部分から前記秘密キーを再構築するステップと をさらに具備する請求の範囲第67項記載の方法。 76.前記取得するステップが、前記寄託センタにより実行される請求の範囲 第75項記載の方法。 77.前記取得するステップが、前記外部エンティティにより実行される請求 の範囲第75項記載の方法。 78.公開キーと秘密キーの前記複数の対応するペアの中の各一致ペアに対し て、前記秘密キーだけが前記公開キーを使用して暗号化された通信を復号化でき る請求の範囲第4項記載の方法。 79.前記第1ユーザにより前記第2ユーザに対する前記通信を暗号化するた めに使用される前記複数のキーの前記第1キーが、前記第2ユーザの公開キーを 具備する請求の範囲第78項記載の方法。 80.前記第2ユーザにより前記暗号化された通信の復号化に使用される前記 複数のキーの前記第2キーが、前記第2ユーザの秘密キーを具備する請求の範囲 第78項記載の方法。 81.前記通信を暗号化するステップが、 前記第1ユーザと前記第2ユーザの間の暗号通信の暗号化および復号化の両方 で使用するために一意の暗号化キーを作成するステップと、 前記暗号化キーを使用して、前記第1ユーザによる前記第2ユーザに対する前 記通信を暗号化するステップとをさらに具備する請求の範囲第1項記載の方法。 82.前記一意の暗号化キーを作成するステップが、 前記第2ユーザの秘密キーおよび少なくとも1つの公開番号を使用して、前記 第2ユーザによる前記第2ユーザの中間番号を計算するステップと、 前記第1ユーザによる前記第2ユーザの中間番号を取得するステップと、 前記第1ユーザの秘密キーおよび前記第2ユーザの前記中間キーを使用して、 前記第1ユーザによる前記暗号化キーを計算するステップとを具備し、 前記暗号化キーを用いて暗号化された前記第1ユーザから前記第2ユーザへの 前記通信が、前記暗号化キーだけを用いて復号化できるようにする請求の範囲第 81項記載の方法。 83.前記第2ユーザの前記中間番号および前記少なくとも1つの公開番号が 前記第2ユーザの公開キーを構成する請求の範囲第82項記載の方法。 84.前記第1ユーザにより前記第2ユーザに対する前記通信の暗号化に使用 される前記複数のキーの前記第1キーが、前記暗号化キーを計算する前記ステッ プで使用される前記第1ユーザの前記秘密キーを具備する請求の範囲第82項記 載の方法。 85.前記第2ユーザにより前記暗号化された通信の復号化に使用される前記 複数のキーの前記第2キーが、中間番号を計算する前記ステップで使用される前 記第2ユーザの前記秘密キーを具備する請求の範囲第82項記載の方法。 86.前記第1ユーザおよび前記少なくとも1つの公開番号を使用して、前記 第1ユーザによる前記第ユーザの中間番号を計算するステップをさらに具備する 請求の範囲第82項記載の方法。 87.前記メッセージ制御ヘッダを入れるステップが、前記第1ユーザの前記 中間番号および前記少なくとも1つの公開番号を構成するメッセージ制御ヘッダ を形成するステップをさらに具備する請求の範囲第86項記載の方法。 88.前記第2ユーザによる前記暗号化された通信を復号化する前記ステップ が、 前記第2ユーザの前記秘密キーおよび前記第1ユーザの前記中間番号を使用し て、前記第2ユーザによる前記暗号化キーを計算するステップと、 前記暗号化キーを使用する前記第2ユーザによる前記第1ユーザからの前記通 信を復号化するステップとをさらに具備する請求の範囲第87項記載の方法。 89.前記一意の暗号化キーを作成するステップが、前記第1ユーザおよび前 記第2ユーザのそれぞれにより対話で前記暗号化キーを作成するステップを具備 する請求の範囲第81項記載の方法。 90.前記第1ユーザおよび前記第2ユーザのそれぞれにより対話で前記暗号 化キーを作成するステップが、 前記第1ユーザの秘密キーおよび少なくとも1つの公開キーを使用して、前記 第1ユーザによる第1中間番号を計算するステップと、 前記第2ユーザの秘密キーおよび少なくとも1つの公開キーを使用して、前記 第2ユーザによる第2中間番号を計算するステップと、 前記第1ユーザの前記秘密キーおよび前記第2中間番号を使用して、前記第1 ユーザによる前記暗号化キーを計算するステップと、 前記第2ユーザの前記秘密キーおよび前記第1中間番号を使用して、前記第2 ユーザによる前記暗号化キーを計算するステップとを具備し、 前記暗号化キーを使用して暗号化される前記第1ユーザから前記第2ユーザへ のあるいは前記第2ユーザから前記第1ユーザへの前記通信が、前記暗号化キー を用いる場合だけ復号化できるようにする請求の範囲第89項記載の方法。 91.前記第1ユーザにより前記第2ユーザへの前記通信の暗号化に使用され る前記複数のキーの前記第1キーが、第1中間番号を計算する前記ステップに使 用される前記第1ユーザの前記秘密キーを具備する請求の範囲第90項記載の方 法。 92.前記第2ユーザにより前記暗号化された通信を復号化するのに使用され る前記複数のキーの前記第2キーが、第2中間番号を計算する前記ステップで使 用される前記第2ユーザの前記秘密キーを具備する請求の範囲第90項記載の方 法。 93.前記第2ユーザによる前記暗号化された通信を復号化する前記ステップ が、前記暗号化キーを用いる前記第1ユーザからの前記通信を前記第2ユーザに より復号化するステップをさらに具備する請求の範囲第90項記載の方法。 94.各信用デバイスが、対応するキーのペアの公開キーが前記デバイスに対 する暗号通信の暗号化に使用され、前記対応するキーのペアの対応する秘密キー が前記暗号通信の復号化に使用される無作為に作成される非対称暗号化キーの少 なくとも1つの対応するペアを持つ、複数の信用されるデバイスを備える暗号シ ステムにおいて、外部エンティティが前記通信をモニタできるようにしつつ、複 数のデバイスの間の認証できる信用された暗号通信を作成するための方法であっ て、 前記信用されたデバイスのそれぞれの暗号化キーの前記対応するペアの少なく とも1つの公開ペアを、少なくとも1つの寄託センタに寄託するステップと、 前記少なくとも1つの寄託センタによる前記デバイスのそれぞれの前記対応す るキーのペアの寄託を保証するステップと、 前記第2デバイスの前記対応するキーのペアの公開キーを使用して、前記デバ イスの2番目への前記デバイスの1番目からの通信を暗号化するステップと、 前記の少なくとも1つの信用された寄託センタを識別するのに十分な情報を含 むメッセージ制御ヘッダを、前記暗号化された通信とともに含むステップと、 前記第2デバイスの前記対応するキーのペアの秘密キーを使用して、前記第2 デバイスによる前記暗号化される通信を復号化するステップとを具備し、 前記第2デバイスによる前記暗号化される通信を復号化する前記ステップが、 前記第1デバイスおよび前記第2デバイスのそれぞれの前記秘密キーの認証、お よび有効なメッセージ制御ヘッダの前記通信内での存在を条件とする方法。 95.前記第1ステップからの通信を暗号化する前記ステップが、前記第1デ バイスおよび前記第2デバイスのそれぞれの前記秘密キーの認証および有効なメ ッセージ制御ヘッダ内での存在を条件にする請求の範囲第94項記載の方法。 96.前記少なくとも1つの非対称暗号化キーの対応するペアのそれぞれに、 前記秘密キーだけが、前記公開キーを使用して暗号化された通信を復号化できる 請求の範囲第94項記載の方法。 97.記憶のために、前記通信が前記第1デバイスからそれ自体に対して暗号 化されるように、前記第1デバイスおよび前記第2デバイスが同一である請求の 範囲第94項記載の方法。 98.各信用されたデバイスが、前記少なくとも1つの対応する暗号化キーの ペアを無作為に作成し、安全で、不正な動きを防止し、読取り不可能なやり方で キーの前記ペアを記憶する能力を持つ請求の範囲第94項記載の方法。 99.各前記信用されるデバイスに製造メーカーがあり、さらに、前記デバイ スの前記キーを無作為に作成し、記憶する能力を、上位権威により認証するステ ップを具備する請求の範囲第98項記載の方法。 100.前記製造メーカーを認証するステップが、前記製造メーカーの信頼性 および前記デバイスの前記キーを無作為に作成し、記憶する能力を公証する、前 記製造メーカーに対する前記上位権威による認証を発行するステップを具備する 請求の範囲第99項記載の方法。 101.前記上位権威が全システム権威を構成する請求の範囲第99項記載の 方法。 102.前記寄託するステップが、各信用されるデバイスに対して、 前記秘密キーを部分に分割するステップと、 少なくとも一人の受託人のそれぞれに、前記秘密キーの少なくとも1つの部分 を提供するステップと、 前記少なくとも一人の受託人に、前記受託人が、前記秘密キーの前記少なくと も1つの部分の正しい受領を確認できるようにする確認情報を提供するステップ と、 前記秘密キーの前記少なくとも1つの部分の前記少なくとも一人の受託人のそ れぞれによる正しい受領を、前記少なくとも1つの信用された寄託センタにより 確認するステップとをさらに具備する請求の範囲第94項記載の方法。 103.前記少なくとも1つの信用された寄託センタのそれぞれが、暗号通信 の暗号化および復号化に使用される必要がある少なくとも1つの対応する公開暗 号化キーおよび秘密暗号化キーのペアを持ち、 前記寄託するステップが、前記分解するステップが前記寄託センタにより実行 されるように、前記信用されたデバイス秘密キーを含む前記少なくとも1つの寄 託センタに対する通信を暗号化するステップをさらに具備する請求の範囲第10 2項記載の方法。 104.前記少なくとも1つの信用された寄託センタの前記暗号化キーが、少 なくとも1つの寄託センタのグループが寄託目的で前記製造メーカーにより選択 されるように、前記デバイスの製造メーカーにより前記信用されたデバイスの中 に事前に埋め込まれ、 前記寄託するステップが、前記事前に埋め込まれた寄託センタ暗号化キーの1 つを使用して、少なくとも1つの寄託センタの前記グループの中から1つの寄託 センタに対する前記秘密キーの少なくとも1つの部分を含む通信を暗号化するス テップをさらに具備する請求の範囲第103項記載の方法。 105.前記少なくとも1つの寄託センタの前記暗号化キーが、前記デバイス が利用しやすい寄託認証ディレクトリから前記デバイスにより取得される請求の 範囲第103項記載の方法。 106.前記少なくとも1つの寄託センタに対する前記信用されたデバイス秘 密キーを含む通信を暗号化する前記ステップが、前記デバイスにより実行され、 前記デバイスが前記通信にディジタル署名するステップをさらに具備する請求の 範囲第103項記載の方法。 107.前記少なくとも一人の受託人のそれぞれが、暗号通信の暗号化および 復号化に使用される必要があるすくなくとも1つの対応する公開暗号化キーと秘 密暗号化キーのペアを持ち、 前記分割するステップが、前記デバイスにより実行される請求の範囲第102 項記載の方法。 108.前記少なくとも一人の受託人の前記暗号化キーが、前記少なくとも一 人の受託人のグループが寄託目的で前記製造メーカーにより選択されるように、 前記デバイスの製造メーカーにより前記信用されたデバイスの中に事前に埋め込 まれ、少なくとも一人の受託人のそれぞれに、前記秘密キーの少なくとも1つの 部分を提供する前記ステップが、前記事前に埋め込まれた受託人暗号化キーの1 つを使用して、前記少なくとも一人の受託人の前記グループの中から少なくとも 一人の受託人のそれぞれに対する前記秘密キーの少なくとも1つの部分で通信を 暗号化するステップをさらに具備する請求の範囲第107項記載の方法。 109.前記少なくとも一人の受託人のそれぞれに対する通信を暗号化するス テップが、前記デバイスにより実行され、前記デバイスが前記通信をディジタル 署名するステップをさらに具備する請求の範囲第108項記載の方法。 110.前記秘密キーの少なくとも1つの部分を少なくとも一人の受託人のそ れぞれに提供するステップが、前記秘密キーの部分を受け取った前記少なくとも 一人の受託人のそれぞれの識別を構成する前記寄託センタに対する通信を暗号化 するステップをさらに具備する請求の範囲第108項記載の方法。 111.前記少なくとも一人の受託人のそれぞれに確認情報を提供するステッ プが、前記少なくとも一人の受託人のそれぞれに対して前記確認情報を含む通信 を暗号化するステップをさらに具備する請求の範囲第108項記載の方法。 112.前記確認情報を含む前記少なくとも一人の受託人のそれぞれに対する 通信を暗号化するステップが、前記デバイスにより実行され、前記デバイスが前 記通信をディジタル署名するステップをさらに具備する請求の範囲第111項記 載の方法。 113.前記少なくとも一人の受託人のそれぞれに確認情報を提供するステッ プが、(a)前記確認情報を受け取った前記少なくとも一人の受託人のそれぞれ の識別、および(b)前記確認情報を構成する前記寄託センタに対する通信を暗 号化するステップをさらに具備する請求の範囲第111項記載の方法。 114.前記分割するステップが、前記秘密キーを再構築するために、N個の 部分すべてが必要となるように、さらに、前記秘密キーをN個の部分に分割する ことを具備する請求の範囲第102項記載の方法。 115.前記分割するステップが、M<Nの場合、前記秘密キーを再構築する ために、M個の部分だけが必要とされるように、前記秘密キーをN個の部分に分 割することを具備する請求の範囲第102項記載の方法。 116.前記少なくとも一人の受託人のそれぞれに前記秘密キーの少なくとも 1つの部分を提供するステップが、前記秘密キーの前記少なくとも1つの部分を 含む前記少なくとも一人の受託人のそれぞれに対する通信を暗号化するステップ をさらに具備する請求の範囲第102項記載の方法。 117.前記デバイス秘密キーの前記少なくとも1つの部分を含む前記少なく とも一人の受託人のそれぞれに対する通信を暗号化するステップが、前記通信に ディジタル署名するステップを具備する請求の範囲第116項記載の方法。 118.前記少なくとも一人の受託人のそれぞれに確認情報を提供するステッ プが、前記確認情報を含む通信を前記少なくとも一人の受託人のそれぞれに対し て暗号化するステップをさらに具備する請求の範囲第116項記載の方法。 119.前記確認情報を含む前記少なくとも一人の受託人のそれぞれに対する 通信を暗号化するステップが、前記寄託センタが前記通信をディジタル署名する ステップをさらに具備する請求の範囲第118項記載の方法。 120.前記少なくとも1つの寄託センタにより確認するステップが、各受託 人に対して、 前記受託人による前記デバイスの前記秘密キーの前記少なくとも1つの部分の 受領を前記寄託センタに通知するステップと、 前記受託人による、前記確認情報を前記寄託センタに対して通信するステップ と、 前記確認情報の前記受託人による正しい通信に基づき、前記デバイスの前記秘 密キーの前記少なくとも1つの部分の前記受託人による正しい受領を前記寄託セ ンタにより確証するステップとを具備する請求の範囲第102項記載の方法。 121.前記受託人による前記確認情報を前記寄託センタに対して通信するス テップが、前記確認情報を含む前記寄託センタに対する通信を暗号化するステッ プを具備する請求の範囲第120項記載の方法。 122.前記確認情報を含む前記寄託センタに対する通信を暗号化するステッ プが、前記受託人が前記通信をディジタル署名するステップをさらに具備する請 求の範囲第121項記載の方法。 123.前記複数の信用されたデバイスのそれぞれに一意のディジタル識別コ ードが設定され、前記方法が、前記デバイスの一意のディジタル識別コードを前 記少なくとも一人の受託人のそれぞれに提供するステップをさらに具備する請求 の範囲第102項記載の方法。 124.前記少なくとも1つの信用された寄託センタの信頼度を上位権威によ り認証するステップをさらに具備する請求の範囲第102項記載の方法。 125.信用された寄託センタを認証する前記ステップが、寄託目的のために 前記寄託センタの信頼度を交渉する、前記少なくとも1つの信用された寄託セン タのそれぞれに、前記上位権威により認証を発行するステップをさらに具備する 請求の範囲第124項記載の方法。 126.前記上位権威が全システム権威を構成する請求の範囲第125項記載 の方法。 127.前記上位権威が、デバイスの少なくとも1つの製造メーカーを構成す る請求の範囲第125項記載の方法。 128.前記信用された寄託センタを認証するステップが、デバイスの前記少 なくとも1つの製造メーカーの信頼度を公証し、製造される前記デバイスのそれ ぞれの非対称暗号化キーの対応するペアを無作為に作成し、読取り不能で不正な 動きを防止するやり方で前記キーを記憶する能力を立証するデバイスの前記少な くとも1つの製造メーカーのそれぞれに全市巣権威による認証を発行するステッ プをさらに具備する請求の範囲第127項記載の方法。 129.前記秘密キーの寄託を認証するステップが、前記対応する暗号化キー のペアの前記公開キーと前記秘密キーの間のつながりを公証し、前記対応する暗 号化キーのペアの前記秘密キーが寄託として受託されていることをりっそうする 、前記デバイスの前記対応する暗号化キーペアのそれぞれに対して、1つの寄託 代理人による寄託認証を発行するステップをさらに具備する請求の範囲第94項 記載の方法。 130.前記対応する暗号化キーペアのそれぞれの前記寄託認証が、前記認証 発行寄託センタの識別、前記寄託認証のディジタル識別コード、および前記対応 する暗号化キーペアの前記公開キーを具備する請求の範囲第129項記載の方法 。 131.前記秘密キーの寄託を認証するステップが、前記寄託認証を発行する 前記ステップの前に、前記対応する暗号化キーペアの前記秘密キーの寄託を前記 認証発行寄託代理人により確証するステップをさらに具備する請求の範囲第12 9項記載の方法。 132.前記少なくとも1つの寄託センタによる前記確証するステップが、各 受託人に対して、 前記受託人による、前記デバイスの前記秘密キーの前記少なくとも1つの部分 の受領を前記寄託センタに通知するステップと、 前記受託人による前記確認情報の前記寄託センタに対する通信、および 前記確認情報の前記受託人による正しい通信に基づき、前記寄託センタによる 、前記デバイスの前記秘密キーの前記少なくとも1つの部分の前記受託人による 正しい受領を家訓するステップとを具備する請求の範囲第131項記載の方法。 133.前記確認情報を前記寄託センタに対して前記受託人により通信する前 記ステップが、前記確認情報を含む前記寄託センタに対する通信を暗号化するス テップを具備する請求の範囲第132項記載の方法。 134.前記確認情報を含む前記寄託センタに対する通信を暗号化する前記ス テップが、前記受託人が前記通信をディジタル署名するステップをさらに具備す る請求の範囲第133項記載の方法。 135.前記対応する暗号化キーペアのそれぞれに対する前記寄託認証が、前 記認証発行寄託センタの識別、前記寄託認証のディジタル識別コード、および前 記対応する暗号化キーペアの前記公開キーを具備する請求の範囲第131項記載 の方法。 136.前記メッセージ制御ヘッダを入れるステップが、前記第1デバイスの 寄託センタの識別、および前記第1デバイスの寄託認証の前記ディジタル識別コ ードを構成する暗号メッセージ制御ヘッダパケットを形成するステップを具備す る請求の範囲第135項記載の方法。 137.前記メッセージ制御ヘッダを入れるステップが、前記第2デバイスの 寄託センタの識別および前記第2デバイスの寄託認証の前記ディジタル識別コー ドを構成する暗号メッセージ制御ヘッダパケットを形成するステップを具備する 請求の範囲第136項記載の方法。 138.前記第1デバイスの寄託センタおよび前記第2デバイスの寄託センタ が同一であり、 前記メッセージ制御ヘッダを入れる前記ステップが、前記第1および第2デバ イスの寄託センタの識別および前記寄託認証のそれぞれの前記ディジタル識別コ ードを具備する暗号メッセージ制御ヘッダパケットを形成するステップを具備す る請求の範囲第137項記載の方法。 139.前記メッセージ制御ヘッダを入れるステップが、前記第1デバイスの 所有者の識別または前記第1デバイスのユーザの雇用者または監督者の識別を構 成する暗号メッセージ制御ヘッダを形成するステップをさらに具備する請求の範 囲第136項記載の方法。 140.前記メッセージ制御ヘッダを入れるステップが、前記第2デバイスの 所有者の識別または前記第2デバイスのユーザの雇用者または監督者の識別を構 成する暗号メッセージ制御ヘッダパケットを形成するステップをさらに具備する 請求の範囲第139項記載の方法。 141.前記第1デバイスおよび第2デバイスの前記所有者が、前記第1デバ イスおよび第2デバイスの前記ユーザの前記雇用者または監督者と同一であり、 前記メッセージ制御ヘッダを入れるステップが、前記所有者、雇用者または監 督者の識別、および前記寄託認証のそれぞれの前記ディジタル識別を構成する暗 号メッセージ制御ヘッダを形成するステップをさらに具備する請求の範囲第14 0項記載の方法。 142.前記第1デバイスによる前記メッセージ制御ヘッダの形成の日付およ び時刻を示す前記タイムスタンプを構成する暗号メッセージ制御ヘッダを形成す るステップをさらに具備する請求の範囲第136項記載の方法。 143.前記デバイスが、前記暗号通信および前記メッセージ制御ヘッダの作 成の日付および時刻を示すタイムスタンプを作成するための信用されたタイムク ロックを備え、 前記メッセージ制御ヘッダを入れるステップが、前記タイムスタンプの信頼度 を認証するステップをさらに具備する請求の範囲第142項記載の方法。 144.前記タイムスタンプの信頼度を認証する前記ステップが、前記タイム スタンプを作成するために前記タイムクロックの信頼度を公証する、上位権威に よる認証を発行することを具備する請求の範囲第143項記載の方法。 145.前記タイムスタンプを認証する前記ステップが、作成された前記タイ ムスタンプのそれぞれに前記タイムクロック認証を添付することをさらに具備す る請求の範囲第144項記載の方法。 146.前記上位権威タイムクロックが、全システム権威を構成する請求の範 囲第144項記載の方法。 147.前記上位権威タイムクロックが、前記デバイスの製造メーカーを構成 する請求の範囲第144項記載の方法。 148.前記上位権威タイムクロックは、寄託センタを構成する請求の範囲第 144項記載の方法。 149.前記信用されたタイムクロックが、前記タイムクロックの製造メーカ ーによってのみ設定または較正できる請求の範囲第143項記載の方法。 150.前記タイムクロックが、前記タイムクロックの製造メーカーにより許 可されたエンティティによってのみ設定または較正できる請求の範囲第143項 記載の方法。 151.盗聴装置設置許可を持つ前記外部エンティティによる前記暗号通信を モニタするステップをさらに具備する請求の範囲第136項記載の方法。 152.前記モニタするステップが、 前記外部エンティティによる前記暗号化された通信に割り込むステップと、 前記盗聴装置設置許可および前記メッセージ制御ヘッダを前記第1デバイスの 寄託センタに提示するステップと、 前記第1デバイスの寄託センタに寄託される、前記第1デバイスの前記対応す る暗号化キーペアの秘密キーを取得するステップと、 前記第1デバイスの前記秘密キーを前記暗号化された通信の復号化に使用する ステップとをさらに具備する請求の範囲第151項記載の方法。 153.前記提示するステップが、 前記メッセージ制御ヘッダから、前記第1デバイスの寄託センタの識別および 前記第1デバイスの寄託認証の前記ディジタル識別コードを抽出するステップと 、 前記盗聴装置設置許可および前記第1デバイスの寄託認証の前記ディジタル識 別コードを、前記第1デバイスから前記第1デバイスの寄託センタに提示するス テップとをさらに具備する請求の範囲第152項記載の方法。 154.前記第1デバイスが、前記暗号通信および前記メッセージ制御ヘッダ の作成の日付および時刻を示すタイムスタンプを作成するために信用されたタイ ムクロックを備え、 メッセージ制御ヘッダを入れる前記ステップが、 前記第1デバイスによる前記メッセージ制御ヘッダの形成の日付および実行を 示すタイムスタンプを構成する暗号メッセージ制御ヘッダパケットを形成するス テップと、 タイムスタンプを作成するために前記タイムクロックの信頼性を認証するステ ップとをさらに具備する請求の範囲第153項記載の方法。 155.前記信用されたタイムクロックが、前記タイムクロックの製造メーカ ーによってのみ設定または較正できる請求の範囲第154項記載の方法。 156.前記第1デバイスの前記秘密キーを前記通信の復号化に使用する前記 ステップが、前記外部エンティティにより実行される請求の範囲第151項記載 の方法。 157.前記第1デバイスの前記秘密キーを前記通信の復号化に使用する前記 ステップが、前記寄託センタにより実行される請求の範囲第152項記載の方法 。 158.前記盗聴装置設置許可が、少なくとも1つの事前に定義される制限を 条件とする請求の範囲第152項記載の方法。 159.前記少なくとも1つの事前に定義される制限が、前記盗聴装置設置許 可に、その以前に前記秘密キーを前記通信の復号化に使用するする前記ステップ が発生してはならない開始日付および時刻を含むような時間制約を具備する請求 の範囲第158項記載の方法。 160.前記少なくとも1つの事前に定義される制限が、前記盗聴装置設置許 可に、それ以降に前記秘密キーを前記通信の復号化に使用するする前記ステップ が発生してはならない終了日付および時刻を含むようなさらなる時間制約を具備 する請求の範囲第158項記載の方法。 161.前記少なくとも1つの事前に定義される制限が、前記盗聴装置設置許 可に、それ以降に前記秘密キーを前記通信の復号化に使用するする前記ステップ が発生してはならない終了日付および時刻を含むような時間制約を具備する請求 の範囲第158項記載の方法。 162.前記第1デバイスの秘密キーを取得する前記ステップが、 前記少なくとも一人の受託人から前記第1デバイスの秘密キーの前記少なくと も1つの部分を回収するステップと、 前記秘密キーの前記回収された部分から前記秘密キーを再構築するステップと をさらに具備する請求の範囲第152項記載の方法。 163.前記取得するステップが、前記寄託センタにより実行される請求の範 囲第162項記載の方法。 164.前記取得するステップが、前記外部エンティティにより実行される請 求の範囲第162項記載の方法。 165.前記分割するステップが、前記秘密キーを再構築するためには、N個 の部分すべてが必要となるように、前記秘密キーをN個の部分に分割するステッ プをさらに具備し、 前記秘密キーの前記少なくとも1つの部分を回収する前記ステップが、前記秘 密キーのN個の部分のすべてが回収されるように、前記少なくとも一人の受託人 のそれぞれから前記秘密キーの前記少なくとも1つの部分のそれぞれを回収する ステップを具備し、 前記秘密キーを再構築する前記ステップが、前記秘密キーの前記N個の回収さ れた部分のすべてから前記秘密キーを再構築するステップを具備する請求の範囲 第162項記載の方法。 166.前記秘密キーのN個の部分すべてを回収する前記ステップが、前記少 なくとも一人の受託人のそれぞれに対して、前記秘密キーを再構築する前記ステ ップが、前記外部エンティティにより実行されるように、前記少なくとも1つの デバイス秘密キー部分を含む前記外部エンティティへの通信を暗号化するステッ プをさらに具備する請求の範囲第162項記載の方法。 167.前記少なくとも1つのデバイス秘密キー部分を含む前記外部エンティ ティへの通信を暗号化する前記ステップが、前記受託人が前記通信にディジタル 署名するステップをさらに具備する請求の範囲第166項記載の方法。 168.前記秘密キーのN個の部分すべてを回収する前記ステップが、前記少 なくとも一人の受託人のそれぞれに対して、前記秘密キーを再構築する前記ステ ップが、前記寄託センタにより実行されるように、前記少なくとも1つの秘密キ ー部分を含む前記少なくとも1つの寄託センタに対する通信を暗号化するステッ プをさらに具備する請求の範囲第165項記載の方法。 169.前記少なくとも1つのデバイス秘密キー部分を含む前記寄託センタに 対する通信を暗号化する前記ステップが、前記受託人が前記通信にディジタル署 名するステップをさらに具備する請求の範囲第168項記載の方法。 170.前記分割するステップが、M<Nの場合、前記秘密キーを再構築する ためにM個の部分だけが必要とされるように、前記秘密キーをN個の部分に分割 し、 前記秘密キーの前記少なくとも1つの部分を回収する前記ステップが、前記秘 密キーの少なくともM個の部分が回収されるように、前記少なくとも一人の受託 人から前記秘密キーの前記少なくとも1つの部分を回収し、 前記秘密キーを再構築する前記ステップが、前記秘密キーの前記少なくともM 個の回収される部分から前記秘密キーを再構築する請求の範囲第162項記載の 方法。 171.前記秘密キーの少なくともM個の部分を回収する前記ステップが、前 記秘密キーを再構築する前記ステップが前記外部エンティティにより実行される ように、前記少なくともひとりの受託人のそれぞれのために前記デバイス秘密キ ー部分を含む、前記外部エンティティに対する通信を暗号化するステップをさら に具備する請求の範囲第170項記載の方法。 172.前記デバイス秘密キー部分を含む前記外部エンティティに対する通信 を暗号化する前記ステップが、前記受託人が前記通信をディジタル署名するステ ップをさらに具備する請求の範囲第171項記載の方法。 173.前記秘密キーの少なくともM個の部分を回収する前記ステップが、前 記秘密キーを再構築する前記ステップが前記寄託センタにより実行されるように 、前記少なくともひとりの受託人のそれぞれのために、前記デバイス秘密キー部 分を含む前記少なくとも1つの寄託センタに対する通信を暗号化するステップを さらに具備する請求の範囲第170項記載の方法。 174.前記デバイス秘密キー部分を含む前記寄託センタに対する通信を暗号 化する前記ステップが、前記受託人が前記通信にディジタル署名するステップを さらに具備する請求の範囲第173項記載の方法。 175.前記メッセージ制御ヘッダを入れるステップが、前記第2デバイスの 寄託センタの識別および前記第2デバイスの寄託認証の前記ディジタル識別コー ドを構成する暗号メッセージ制御ヘッダパケットを形成するステップを具備する 請求の範囲第135項記載の方法。 176.前記メッセージ制御ヘッダを入れるステップが、前記第2デバイスの 所有者あるいは前記第2デバイスの雇用者または監督者の識別を構成する暗号メ ッセージ制御ヘッダパケットを形成するステップをさらに具備する請求の範囲第 175項記載の方法。 177.盗聴装置設置許可を持つ前記外部エンティティによる前記暗号通信を モニタするステップをさらに具備する請求の範囲第175項記載の方法。 178.前記モニタするステップが、 前記外部エンティティによる前記暗号化された通信に割り込むステップと、 前記盗聴装置許可および前記メッセージ制御ヘッダを前記第2デバイスの寄託 センタに提示するステップと、 前記第2デバイスの前記対応する暗号化キーペアの、前記第2デバイスの寄託 センタに寄託されている秘密キーを取得するステップと、 前記第2デバイスの前記秘密キーを前記暗号化された通信の復号化に使用する ステップとをさらに具備する請求の範囲第177項記載の方法。 179.前記提示するステップが、 前記メッセージ制御ヘッダから、前記第2デバイスの寄託センタの前記識別お よび前記第2デバイスの寄託認証の前記ディジタルコード識別を抽出するステッ プと、 前記盗聴装置設置許可および前記第2デバイスの寄託認証の前記ディジタルコ ード識別を前記第2デバイスの寄託センタに提示するステップとをさらに具備す る請求の範囲第178項記載の方法。 180.前記第1デバイスが、前記暗号通信および前記メッセージ制御ヘッダ の作成の日付および時刻を示すタイムスタンプを作成するために信用されたタイ ムクロックを備え、 前記メッセージ制御ヘッダを入れるステップが、 前記第1デバイスによる前記メッセージ制御ヘッダの作成の日付および時刻を 示すタイムスタンプを構成する暗号メッセージ制御ヘッダパケットを形成するス テップと、 タイムスタンプを作成する目的で前記タイムクロックの信頼性を認証するステ ップとを具備する請求の範囲第179項記載の方法。 181.前記タイムスタンプの信頼性を認証する前記ステップが、前記タイム スタンプを作成する目的で前記タイムクロックの信頼性を公証する上位権威によ る認証を発行することを具備する請求の範囲第180項記載の方法。 182.前記タイムスタンプを認証する前記ステップが、作成された前記タイ ムスタンプのそれぞれに前記タイムクロック認証を添付する請求の範囲第181 項記載の方法。 183.前記上位権威が全システム権威を構成する請求の範囲第181項記載 の方法。 184.前記上位権威が前記デバイスの製造メーカーを構成する請求の範囲第 181項記載の方法。 185.前記上位権威が寄託センタを構成する請求の範囲第181項記載の方 法。 186.前記信用されるタイムクロックが、前記タイムクロックの製造メーカ ーによってだけ設定または較正できる請求の範囲第180項記載の方法。 187.前記信用されるタイムクロックが、製造メーカーによって指定される エンティティによってだけ再設定または再較正できる請求の範囲第180項記載 の方法。 188.前記第2デバイスの前記秘密キーを前記通信の復号化に使用する前記 ステップが、前記外部エンティティにより実行される請求の範囲第178項記載 の方法。 189.前記第2デバイスの前記秘密キーを前記通信の復号化に使用する前記 ステップが、前記寄託センタにより実行される請求の範囲第178項記載の方法 。 190.前記盗聴装置設置許可が、少なくとも1つの事前に定義される制約を 条件とする請求の範囲第178項記載の方法。 191.前記少なくとも1つの事前に定義される制約が、前記盗聴装置設置許 可に、その以前に前記第2デバイスの前記秘密キーを取得する前記ステップが発 生しない開始日付および時刻が含まれるような時間制約を具備する請求の範囲第 190項記載の方法。 192.前記少なくとも1つの事前に定義される制約が、前記盗聴装置設置許 可に、それ以降に前記第2デバイスの前記秘密キーを取得する前記ステップが発 生しない終了日付および時刻が含まれるようなさらなる時間制約を具備する請求 の範囲第190項記載の方法。 193.前記少なくとも1つの事前に定義される制約が、前記盗聴装置設置許 可に、その以降に前記第2デバイスの前記秘密キーを取得する前記ステップが発 生しない終了日付および時刻が含まれるような時間制約を具備する請求の範囲第 190項記載の方法。 194.前記第2デバイスの秘密キーを取得する前記ステップが、 前記少なくとも一人の受託人のそれぞれから前記第2デバイスの秘密キーの前 記少なくとも1つの部分を回収するステップと、 前記秘密キーの前記回収された部分から前記秘密キーを再構築するステップと をさらに具備する請求の範囲第178項記載の方法。 195.前記取得するステップが、前記寄託センタにより実行される請求の範 囲第194項記載の方法。 196.前記取得するステップが、前記外部エンティティにより実行される請 求の範囲第194項記載の方法。 197.前記分割するステップが、前記秘密キーを再構築するために、N個の 部分すべてが必要となるように、前記秘密キーをN個の部分に分割し、 前記秘密キーの前記少なくとも1つの部分を回収する前記ステップが、前記秘 密キーのN個の部分のすべてが回収されるように、前記少なくとも一人の受託人 のそれぞれから前記秘密キーの前記少なくとも1つの部分のそれぞれを回収し、 前記秘密キーを再構築する前記ステップが、前記秘密キーの前記N個の回収さ れた部分すべてから前記秘密キーを再構築する請求の範囲第194項記載の方法 。 198.前記秘密キーのN個すべての部分を回収する前記ステップが、前記少 なくとも一人の受託人のそれぞれのために、前記秘密キーを再構築する前記ステ ップが前記外部エンティティにより実行されるように、前記少なくとも1つのデ バイス秘密キー部分を含む前記外部エンティティに対する通信を暗号化するステ ップをさらに具備する請求の範囲第197項記載の方法。 199.前記少なくとも1つのデバイス秘密キー部分を含む前記外部エンティ ティに対する通信を暗号化する前記ステップが、前記受託人が前記通信にディジ タル署名するステップをさらに具備する請求の範囲第198項記載の方法。 200.前記秘密キーのN個の部分すべてを回収する前記ステップが、前記秘 密キーを再構築する前記ステップが前記寄託センタにより実行されるように、前 記すくなくとも一人の受託人のそれぞれのために、前記少なくとも1つのデバイ ス秘密キー許容部を含む前記少なくとも1つの寄託センタに対する通信を暗号化 するステップをさらに具備する請求の範囲第197項記載の方法。 201.前記少なくとも1つのデバイス秘密キー部分を含む前記寄託センタに 対する通信を暗号化する前記ステップが、前記受託人が通信通信にディジタル署 名するステップをさらに具備する請求の範囲第200項記載の方法。 202.前記分割する方法が、M<Nの場合、前記秘密キーを再構築するため にM個の部分だけが必要となるように、前記秘密キーをN庫の部分に分割し、 前記秘密キーの前記少なくとも1つの部分を回収する前記ステップが、前記秘 密キーの少なくともM個の部分が回収されるように、前記少なくとも一人の受託 人から前記秘密キーの前記少なくとも1つの部分を回収し、 前記秘密キーを再構築する前記ステップが、前記秘密キーの前記少なくともM 個の回収された部分から前記秘密キーを再構築する請求の範囲第194項記載の 方法。 203.前記秘密キーの少なくともM個の部分を受け取る前記ステップが、前 記秘密キーを再構築する前記ステップが前記外部エンティティにより実行される ように、前記少なくとも一人の受託人のために、前記デバイス秘密キー部分を含 む前記外部エンティティに対する通信を暗号化するステップをさらに具備する請 求の範囲第202項記載の方法。 204.前記デバイス秘密キーを含む前記外部エンティティに対する通信を暗 号化する前記ステップが、前記受託人が前記通信にディジタル署名するステップ をさらに具備する請求の範囲第203項記載の方法。 205.前記秘密キーの少なくともM個の部分を受け取る前記ステップが、前 記秘密キーを再構築する前記ステップが前記寄託センタにより実行されるように 、前記少なくとも一人の受託人のそれぞれのために、前記デバイス秘密キー部分 を含む前記少なく後も1つの寄託センタに対する通信を暗号化するステップをさ らに具備する請求の範囲第202項記載の方法。 206.前記デバイス秘密キー部分を含む前記寄託センタに対する前記暗号化 するステップが、前記受託人が前記通信にディジタル署名するステップをさらに 具備する請求の範囲第205項記載の方法。 207.前記通信を暗号化するステップが、 前記第1デバイスと前記第2デバイスの間の暗号通信の暗号化および復号化両 方で使用するための一意の暗号化キーを作成するステップと、 前記第1デバイスによる前記暗号化キーを用いて前記第2デバイスに対する前 記通信を暗号化するステップとをさらに具備する請求の範囲第94項記載の方法 。 208.前記一意の暗号化キーを作成する前記ステップが、 前記第2デバイスの前記秘密キーおよび少なくとも1つの公開キーを使用して 、前記第2デバイスによる前記第2デバイスの中間番号を計算するステップと、 前記第1ユーザにより前記第2ユーザの中間番号を取得するステップと、 前記第1デバイスによる前記第1デバイスの前記秘密キーおよび前記第2デバ イスの前記中間番号を使用して前記暗号化キーを計算するステップとをさらに具 備し、 前記暗号化キーを使用して暗号化された前記第1デバイスから前記第2デバイ スへの前記通信が、前記暗号化キーを使用するだけで復号化できるようにする請 求の範囲第207項記載の方法。 209.前記第2デバイスの前記秘密キーが前記第2デバイスにより無作為に 作成される請求の範囲第208項記載の方法。 210.前記第2デバイスの前記中間番号が前記第2デバイスの前記公開キー を構成する請求の範囲第208項記載の方法。 211.前記第2デバイスの前記中間番号および前記少なくとも1つの公開番 号が、前記第2デバイスの前記公開キーを具備する請求の範囲第208項記載の 方法。 212.前記第1デバイスによる前記第1デバイスの前記秘密キーおよび前記 少なくとも1つの公開キーを使用して、前記第1デバイスの中間番号を計算する ステップをさらに具備する請求の範囲第208項記載の方法。 213.前記第1デバイスの前記秘密キーが、前記第1デバイスにより無作為 に作成される請求の範囲第212項記載の方法。 214.前記メッセージ制御ヘッダを入れるステップが、前記第1デバイスの 前記中間番号および前記少なくとも1つの公開番号を構成するメッセージ制御ヘ ッダパケットを形成するステップをさらに具備する請求の範囲第212項記載の 方法。 215.前記第2デバイスにより前記暗号化された通信を復号化する前記ステ ップが、 前記第2デバイスによる前記第2デバイスの前記秘密キーおよび前記第1デバ イスの前記中間番号を使用して、前記暗号化キーを計算するステップと、 前記第2デバイスによる前記暗号化キーを使用して前記第1デバイスからの前 記通信を復号化するステップとを具備する請求の範囲第214項記載の方法。 216.前記一意の暗号化キーを作成するステップが、前記第1デバイスおよ び第2デバイスのそれぞれにより対話で前記暗号化キーを作成するステップを具 備する請求の範囲第207項記載の方法。 217.前記第1デバイスおよび第2デバイスのそれぞれにより対話で前記暗 号化キーを作成する前記ステップが、 前記第1デバイスの前記秘密キーおよび少なくとも1つの公開番号を使用して 、前記第1デバイスによる第1中間番号を計算するステップと、 前記第2デバイスによる前記第2デバイスの前記秘密キーおよび前記少なくと も1つの公開番号を使用して、前記中間番号を計算するステップと、 前記第1デバイスによる前記第1デバイスの前記秘密キーおよび前記第2中間 番号を使用して、前記暗号化キーを計算するステップと、 前記第2デバイスによる前記第2デバイスの前記秘密キーおよび前記第1中間 番号を使用して、前記暗号化キーを計算するステップとを具備し、 前記暗号化キーを使用して暗号化された前記第1デバイスから前記第2デバイ スまたは前記第2デバイスから前記第1デバイスへの前記通信が、前記暗号化キ ーだけを用いて復号化できるようにする請求の範囲第216項記載の方法。 218.前記第1デバイスの前記秘密キーが前記第1デバイスにより無作為に 作成される請求の範囲第217項記載の方法。 219.前記第2デバイスの前記秘密キーが前記第2デバイスにより無作為に 作成される請求の範囲第217項記載の方法。 220.前記第2デバイスにより前記暗号化された通信を復号化する前記ステ ップが、さらに、前記暗号化キーを使用して、前記第1デバイスからの前記通信 の前記第2デバイスによる復号化のステップを具備する請求の範囲第217項記 載の方法。 221.第1の対応するキーのペアの公開キーが、前記デバイスへの暗号通信 の暗号化に使用され、前記第1の対応するキーのペアの対応する秘密キーが前記 暗号通信の復号化に使用され、第2の対応するキーのペアの秘密キーがディジタ ルデータにディジタル署名するために使用され、前記第2の対応するキーのペア の対応する秘密キーが前記ディジタル署名の確認に使用される、それぞれの信用 されるデバイスが無作為に作成された非対称暗号化キーの少なくとも2つの対応 するペアを持つ、複数の信用されるデバイスを備える暗号システムにおける、外 部エンティティが前記通信をモニタできるようにしつつ、複数のユーザデバイス の間の認証できる信用された暗号通信を作成するための方法であって、 前記信用されたデバイスのそれぞれの少なくとも1つの秘密復号化キーを、少 なくとも1つの寄託センタに寄託するステップと、 前記少なくとも1つの寄託センタにより前記デバイスのそれぞれの前記少なく とも1つの秘密復号化キーの寄託を認証するステップと、 前記デバイスのそれぞれの少なくとも1つの秘密署名キーを認証するステップ と、 前記第2デバイスの公開暗号化キーを使用して、前記ユーザデバイスの第2に 対する前記ユーザデバイスの第1からの通信を暗号化するステップと、 前記少なくとも1つの信用された寄託センタを識別するのに十分な情報を含む メッセージ制御ヘッダを、前記暗号化された通信で入れるステップと、 前記第2デバイスの秘密復号化キーを使用して、前記第2デバイスによる前記 暗号化された通信を復号化するステップとを具備し、 前記第2デバイスによる前記暗号化された通信を復号化する前記ステップが、 前記第1デバイスおよび第2デバイスのそれぞれの前記秘密復号化キーの認証お よび有効なメッセージ制御ヘッダの前記通信内での存在を条件とする方法。 222.前記第1デバイスからの通信を暗号化する前記ステップが、前記第1 デバイスおよび第2デバイスのそれぞれの前記秘密復号化キーの認証および有効 なメッセージ制御ヘッダの前記通信内での存在を条件とする請求の範囲第221 項記載の方法。 223.前記通信が、記憶のために前記第1デバイスからそれ自体に暗号化さ れるように、前記第1デバイスおよび前記第2デバイスが同一である請求の範囲 第221項記載の方法。 224.前記それぞれの信用されたデバイスが、前記少なくとも2つの対応す る暗号化キーのペアを暗号化および復号化のために、ならびに署名および確認の ために無作為に作成する能力と、安全な不正な動きを防止する、読み取ることが できないやり方で前記キーのペアのそれぞれを記憶する能力を備える請求の範囲 第221項記載の方法。 225.それぞれの前記信用されたデバイスに製造メーカーがあり、少なくと も1つの秘密署名キーを認証する前記ステップが、さらに、上位権威による前記 デバイスの前記キーを無作為に作成し記憶する能力を認証するステップを具備す る請求の範囲第224項記載の方法。 226.前記デバイスの能力を認証する前記ステップが、さらに、前記製造メ ーカーの信頼性および前記製造メーカーにより製造されるデバイスの前記キーを 読み取ることができない不正な動きを防止するやり方で無作為に作成、記憶する 能力を公証する、前記上位権威による製造メーカー認証を発行するステップを具 備する請求の範囲第225項記載の方法。 227.前記上位権威が全システム権威を構成する請求の範囲第226項記載 の方法。 228.前記製造メーカー認証が、前記製造メーカーにより作成された秘密署 名キーを使用して発行された各署名に添付される請求の範囲第226項記載の方 法。 229.上位権威による前記少なくとも1つの寄託センタの信頼性を認証する ステップをさらに具備する請求の範囲第221項記載の方法。 230.前記寄託センタを認証するステップが、寄託する目的で前記寄託セン タの信頼性を公証する、前記少なくとも1つの寄託センタのそれぞれに対する前 記上位権威による認証を発行するステップを具備する請求の範囲第229項記載 の方法。 231.前記上位権威が全システム権威を構成する請求の範囲第230項記載 の方法。 232.前記上位権威がデバイスの少なくとも1つの製造メーカーを構成する 請求の範囲第230項記載の方法。 233.前記寄託するステップが、各ユーザデバイスのために、 前記秘密復号化キーを部分に分割するステップと、 少なくとも一人の受託人のそれぞれに、前記秘密キーの少なくとも1つの部分 を提供するステップと、 前記少なくとも一人の受託人のそれぞれに、前記受託人が前記秘密キーの前記 少なくとも1つの部分の正しい受領を確認できるようにする確認情報を提供する ステップと、 前記少なくとも1つの寄託センタによる、前記秘密キーの前記少なくとも1つ の部分の前記少なくとも一人の受託人のそれぞれによる正しい受領を確認するス テップとをさらに具備する請求の範囲第221項記載の方法。 234.前記少なくとも1つの寄託センタのそれぞれが、信用されるデバイス を構成し、暗号化する前記ステップが、前記分割するステップが前記寄託センタ により実行される容易、前記ユーザ秘密復号化キーを含む前記少なくとも1つの 寄託センタに対する通信を暗号化するステップをさらに具備する請求の範囲第2 33項記載の方法。 235.前記分割するステップが、前記秘密キーを再構築するためにN個の部 分のすべてが必要とされるように、前記秘密キーをN個の部分に分割する請求の 範囲第234項記載の方法。 236.前記分割するステップが、M<Nの場合、前記秘密キーを再構築する ためにM個の部分だけが必要とされるように、前記秘密キーをN個の部分に分割 する請求の範囲第234項記載の方法。 237.唯一の寄託センタの公開暗号化キーが、前記寄託センタが寄託を行う 目的で前記製造メーカーにより選択されるように、前記デバイスの製造メーカー により前記ユーザデバイスの中に事前に埋め込まれており、 前記寄託するステップが、前記事前に埋め込まれた寄託センタ暗号化キーを使 用して、前記寄託センタに対する通信を暗号化するステップをさらに具備する請 求の範囲第234項記載の方法。 238.少なくとも1つの寄託センタの公開暗号化キーが、少なくとも1つの 寄託センタのグループが、寄託を行う目的で前記製造メーカーにより選択される ように、前記デバイスの製造メーカーにより前記ユーザデバイスの中に事前に埋 め込まれ、 寄託する前記ステップが、前記事前に埋め込まれた寄託センタ公開暗号化キー の1つを使用して、少なくとも1つの寄託センタの前記グループの1つに対する 前記秘密キーの少なくとも1つの部分を含む通信を暗号化するステップをさらに 具備する請求の範囲第234項記載の方法。 239.前記少なくとも1つの寄託センタの前記暗号化キーが、寄託認証ディ レクトリから前記ユーザデバイスにより取得される請求の範囲第234項記載の 方法。 240.前記ユーザデバイス秘密暗号化キーを含む前記少なくとも1つの寄託 センタに対する通信を暗号化する前記ステップが、前記秘密デバイス署名キーを 使用して、前記デバイスが前記通信にディジタル署名するステップをさらに具備 する請求の範囲第234項記載の方法。 241.前記少なくとも一人の受託人のそれぞれに前記秘密キーの少なくとも 1つの部分を提供する前記ステップが、前記寄託センタが、前記少なくとも1つ の受託人のそれぞれに対する前記秘密キーの前記少なくともつの部分を含む通信 を暗号化するステップをさらに具備する請求の範囲第234項記載の方法。 242.前記デバイス秘密キーの前記少なくとも1つの部分を含む前記少なく とも一人の受託人のそれぞれに対する通信を暗号化する前記ステップが、前記寄 託センタが前記通信にディジタル署名するステップをさらに具備する請求の範囲 第241項記載の方法。 243.前記少なくとも一人の受託人のそれぞれに確認情報を提供するステッ プが、前記秘密キーの前記少なくとも1つの部分を含む前記少なくとも一人の受 託人のそれぞれに対する前記通信に前記確認情報を入れる請求の範囲第241項 記載の方法。 244.前記少なくとも一人の受託人のそれぞれに対する通信を暗号化する前 記ステップが、前記寄託センタが前記通信にディジタル署名するステップをさら に具備する請求の範囲第243項記載の方法。 245.少なくとも一人の受託人のそれぞれが信用されたデバイスを構成し、 前記分割するステップが、前記デバイスにより実行される請求の範囲第233項 記載の方法。 246.前記秘密キーを再構築するためにN個の部分のすべてが必要となるよ うに、前記秘密キーをN個の部分に分割することを具備する請求の範囲第245 項記載の方法。 247.前記分割するステップが、M<Nの場合に、前記秘密キーを再構築す るためにM個の部分だけが必要とされるように、前記秘密キーをN個の部分に分 割する請求の範囲第245項記載の方法。 248.前記少なくとも一人の受託人の公開暗号化キーが、少なくとも一人の 受託人のグループが、寄託を行う目的で前記製造メーカーにより選択されるよう に、前記デバイスの製造メーカーによる前記ユーザデバイスの中に事前に埋め込 まれ、 少なくとも一人の受託人のそれぞれに、前記秘密キーの少なくとも1つの部分 を提供する前記ステップが、さらに、前記事前に埋め込まれた受託人の公開暗号 化キーを使用して、少なくとも一人の受託人の前記グループの間から、少なくと も一人の受託人のそれぞれに対する前記秘密キーの少なくとも1つの部分を含む 通信を前記デバイスが暗号化するステップを具備する請求の範囲第245項記載 の方法。 249.前記少なくとも一人の受託人のそれぞれに対する通信を暗号化する前 記ステップが、さらに、前記ユーザデバイスが前記通信にディジタル署名するス テップを具備する請求の範囲第248項記載の方法。 250.前記少なくとも一人の受託人のそれぞれに前記秘密キーの少なくとも 1つの部分を提供する前記ステップが、前記秘密キーの部分を前記ユーザデバイ スから受け取った前記少なくとも一人の受託人のそれぞれの識別を構成する、前 記確認ステップの中で後で使用するための、前記寄託センタに対する通信を前記 ユーザデバイスが暗号化するステップを具備する請求の範囲第248項記載の方 法。 251.前記少なくとも一人の受託人のそれぞれに確認情報を提供する前記ス テップが、前記秘密キーの前記少なくとも1つの部分を含む前記少なくとも一人 の受託人のそれぞれに対する前記通信の中に、前記ユーザデバイスが前記確認情 報を入れることを具備する請求の範囲第248項記載の方法。 252.前記少なくとも一人の受託人のそれぞれに対する通信を暗号化する前 記ステップが、前記ユーザデバイスが前記通信にディジタル署名するステップを さらに具備する請求の範囲第251項記載の方法。 253.前記少なくとも1つの寄託センタによる前記確認するステップが、各 受託人のために、 前記ユーザデバイスの前記秘密キーの前記少なくとも1つの部分の受領を前記 寄託センタに対して前記受託人により通知するステップと、 前記受託人による前記確認情報を前記寄託センタに対して通信するステップと 、 前記確認情報の前記受託人による正しい通信に基づき、前記秘密キーの前記少 なくとも1つの部分の前記受託人による正しい受領を前記寄託センタにより確証 するステップとを具備する請求の範囲第233項記載の方法。 254.前記受託人による前記確認情報を通信する前記ステップが、前記受託 人が前記確認情報を含む前記寄託センタに対する通信を暗号化するステップを具 備する請求の範囲第253項記載の方法。 255.前記確認情報を含む前記寄託センタに対する通信を暗号化する前記ス テップが、前記受託人が前記通信をディジタル署名するステップをさらに具備す る請求の範囲第254項記載の方法。 256.前記少なくとも1つの秘密復号化キーの寄託を認証する前記ステップ が、前記公開キーおよび前記秘密キーならびに前記対応するデバイスの間のつな がりを公証し、前記対応するキーペアの前記秘密復号化キーが寄託されているこ とを保証する、各前記ユーザデバイスの対応するキーペアごとに1つの寄託セン タによる寄託認証を発行するステップをさらに具備する請求の範囲第233項記 載の方法。 257.前記秘密復号化キーの寄託を認証する前記ステップが、前記寄託認証 を発行する前記ステップの前に、前記秘密復号化キーの寄託を確証するステップ をさらに具備する請求の範囲第256項記載の方法。 258.前記秘密復号化キーの寄託を確証する前記ステップが、各受託人のた めに、 前記デバイスの秘密復号化キーの前記少なくとも1つの部分の前記歌句人によ る受領を前記寄託センタに通知するステップと、 前記受託人による前記確認情報を前記寄託センタに通信するステップと、 前記確認情報の前記受託人による正しい通信に基づいて、前記デバイスの秘密 復号化キーの前記少なくとも1つの部分の前記受託人による正しい受領を前記寄 託センタにより確認するステップとを具備する請求の範囲第257項記載の方法 。 259.前記寄託センタが信用されたデバイスを構成し、前記確認情報を前記 受託人により前記寄託センタに通信するステップが、前記確認情報を含む前記寄 託センタに対する通信を暗号化するステップを具備する請求の範囲第258項記 載の方法。 260.前記受託人が信用されたデバイスを構成し、前記寄託センタに対する 通信を暗号化するステップが、前記受託人が秘密署名キーを使用して前記通信に ディジタル署名するステップをさらに具備する請求の範囲第259項記載の方法 。 261.前記確認するステップが、前記確認情報を含む前記通信上の受託人の 署名を確認することをさらに具備する請求の範囲第260項記載の方法。 262.前記寄託認証が前記認証発行寄託センタの識別、前記寄託認証のディ ジタル識別コード、および前記寄託された秘密復号化キーに対応する前記公開暗 号化キーを構成する請求の範囲第256項記載の方法。 263.前記暗号化された通信でメッセージ制御ヘッダを入れる前記ステップ が、前記第1ユーザデバイスの寄託センタの識別および前記第1ユーザデバイス の寄託認証の前記ディジタル識別コードを構成する暗号メッセージ制御ヘッダパ ケットを形成するステップを具備する請求の範囲第262項記載の方法。 264.前記メッセージ制御ヘッダを入れるステップが、前記第2ユーザデバ イスの寄託センタの識別および前記第2ユーザデバイスの寄託認証の前記ディジ タルコード識別を構成する暗号メッセージ制御ヘッダを形成するステップをさら に具備する請求の範囲第263項記載の方法。 265.前記第1デバイスの寄託センタおよび前記第2ユーザデバイスの寄託 センタが同一であり、 メッセージ制御ヘッダを入れる前記ステップが、さらに、前記第1デバイスお よび第2デバイスの寄託センタの識別および前記寄託認証のそれぞれの前記ディ ジタルコード識別を形成するステップを具備する請求の範囲第264項記載の方 法。 266.前記メッセージ制御ヘッダを入れるステップが、前記第1ユーザデバ イスの所有者の識別または前記1ユーザデバイスのユーザの雇用者または監督者 の識別を構成する暗号メッセージ制御ヘッダパケットを形成するステップをさら に具備する請求の範囲第263項記載の方法。 267.前記メッセージ制御ヘッダを入れるステップが、前記第2ユーザデバ イスの所有者の識別または前記第2ユーザデバイスのユーザの雇用者または監督 者の識別を構成する暗号メッセージ制御ヘッダパケットを形成するステップをさ らに具備する請求の範囲第266項記載の方法。 268.前記第1および第2ユーザデバイスの前記所有者または前記第1およ び第2ユーザデバイスの前記ユーザの前記雇用者または監督者が同一であり、 前記メッセージ制御ヘッダを入れるステップが、前記所有者、雇用者または監 督者の識別および前記寄託認証のそれぞれの前記ディジタルコード識別を構成す る暗号メッセージ制御ヘッダパケットを形成するステップをさらに具備する請求 の範囲第267項記載の方法。 269.前記メッセージ制御ヘッダを入れるステップが、前記第1ユーザデバ イスによる前記メッセージ制御ヘッダの作成の日付および時刻を示すタイムスタ ンプを構成する暗号メッセージ制御ヘッダパケットを形成するステップを具備す る請求の範囲第263項記載の方法。 270.前記各信用されたデバイスが、前記暗号通信および前記メッセージ制 御ヘッダの日付および時刻を示すタイムスタンプを作成するためにタイムクロッ クを具備し、 前記メッセージ制御ヘッダを入れるステップが、前記タイムスタンプの信頼性 を認証するステップをさらに具備する請求の範囲第269項記載の方法。 271.前記タイムスタンプの信頼性を認証するステップが、前記タイムスタ ンプを作成する目的で前記タイムクロックの信頼性を公証する上位権威による認 証を発行する請求の範囲第270項記載の方法。 272.前記タイムスタンプを認証するステップが、作成された前記タイムス タンプのそれぞれに前記タイムクロック認証を添付する請求の範囲第271項記 載の方法。 273.前記上位権威タイムクロックが全システム権威を具備する請求の範囲 第271項記載の方法。 274.前記上位権威タイムクロックが前記デバイスの製造メーカーを具備す る請求の範囲第271項記載の方法。 275.前記信用されたタイムクロックが前記タイムクロックの製造メーカー によってのみ設定または較正できる請求の範囲第270項記載の方法。 276.盗聴装置設置許可を持つ前記外部エンティティにより前記暗号通信を モニタするステップをさらに具備する請求の範囲第263項記載の方法。 277.前記モニタするステップが、 前記外部エンティティによる前記暗号化された通信に割り込むステップと、 前記第1ユーザデバイスの寄託センタに対して、前記盗聴装置設置許可および 前記メッセージ制御ヘッダを提示するステップと、 前記第1ユーザデバイスの寄託センタに寄託されている前記第1ユーザデバイ スの秘密復号化キーを取得するステップと、 前記第1ユーザデバイスの前記秘密復号化キーを前記暗号化された通信の復号 化に使用するステップとをさらに具備する請求の範囲第276項記載の方法。 278.前記提示するステップが、 前記メッセージ制御ヘッダから、前記第1ユーザデバイスの寄託センタの前記 識別および前記第1ユーザデバイスの寄託認証の前記ディジタル識別コードを抽 出するステップと、 前記盗聴装置設置許可および前記第1ユーザデバイスの寄託認証の前記ディジ タル識別コードを、前記ユーザデバイスの寄託センタに提示するステップとをさ らに具備する請求の範囲第277項記載の方法。 279.前記第1ユーザデバイスが、前記暗号通信および前記メッセージ制御 ヘッダの形成の日付および時刻を示すタイムスタンプを形成作成するために信用 されたタイムクロックを備え、 前記メッセージ制御ヘッダを入れるステップが、 タイムスタンプを構成する暗号メッセージ制御ヘッダパケットを形成するステ ップと、 タイムスタンプを作成する目的で前記タイムクロックの信頼性を認証するステ ップとをさらに具備する請求の範囲第278項記載の方法。 280.前記タイムスタンプの信頼性を認証する前記ステップが、前記タイム スタンプを作成する目的で、前記タイムクロックの信頼性を公証する、上位権威 による認証を発行する請求の範囲第279項記載の方法。 281.前記タイムスタンプを認証する前記ステップが、作成された前記タイ ムスタンプのそれぞれに前記タイムクロックを添付する請求の範囲第280項記 載の方法。 282.前記上位権威タイムクロックが全システム権威を具備する請求の範囲 第280項記載の方法。 283.前記信用されたタイムクロックが、製造タイムクロックの製造メーカ ーによってのみ設定または較正できる請求の範囲第279項記載の方法。 284.前記第1ユーザデバイスの前記秘密復号化キーを前記第1ユーザデバ イスの復号化に使用する前記ステップが、前記外部エンティティにより実行され る請求の範囲第277項記載の方法。 285.前記第1ユーザデバイスの前記秘密復号化キーを前記通信の復号化に 使用する前記ステップが、前記寄託センタにより実行される請求の範囲第277 項記載の方法。 286.前記盗聴装置設置許可が、少なくとも1つの事前定義された制限を条 件とする請求の範囲第277項記載の方法。 287.前記少なくとも1つの事前に定義される制約が、前記盗聴装置設置許 可に、それ以前は前記第1デバイスの前記秘密キーを取得する前記ステップが発 生してはならない開始日付および時刻を含むような時間制約を具備する請求の範 囲第286項記載の方法。 288.前記少なくとも1つの事前に定義される制約が、前記盗聴装置設置許 可に、それ以降は前記第1デバイスの前記秘密キーを取得する前記ステップが発 生してはならない終了日付および時刻を含むようなさらなる時間制約を具備する 請求の範囲第287項記載の方法。 289.前記少なくとも1つの事前に定義される制約が、前記盗聴装置設置許 可に、それ以降は前記第1デバイスの前記秘密キーを取得する前記ステップが発 生してはならない終了日付および時刻を含むような時間制約を具備する請求の範 囲第286項記載の方法。 290.前記第1デバイスの秘密キーを取得する前記ステップが、 前記第1ユーザデバイスの秘密キーの前記少なくとも1つの部分を前記少なく とも一人の受託人から回収するステップと、 前記秘密キーの前記回収された部分から前記秘密キーを再構築するステップと を具備する請求の範囲第277項記載の方法。 291.前記取得するステップが、前記寄託センタにより実行される請求の範 囲第290項記載の方法。 292.前記取得するステップが、前記外部エンティティにより実行される請 求の範囲第290項記載の方法。 293.前記分割するステップが、前記秘密キーを再構築するためにN個の部 分のすべてが必要とされるように、前記秘密キーをN個の部分に分割し、 前記秘密キーの前記少なくとも1つの部分を回収する前記ステップが、前記秘 密キーのN個の部分のすべてが必要とされるように、前記秘密キーの前記少なく とも一人の受託人から前記少なくとも1つの部分のそれぞれを回収し、 前記秘密キーを再構築する前記ステップが、前記秘密キーの前記N個の回収さ れた部分のすべてから前記秘密キーを再構築する請求の範囲第290項記載の方 法。 294.前記秘密キーのN個の部分すべてを回収する前記ステップが、前記秘 密キーを再構築する前記ステップが、前記外部エンティティにより実行されるよ うに、前記少なくとも一人の受託人のそれぞれに対して、前記少なくとも1つの デバイス秘密キー部分を含む前記外部エンティティに対する通信を暗号化するス テップをさらに具備する請求の範囲第293項記載の方法。 295.前記少なくとも1つのデバイス秘密キー部分を含む前記外部エンティ ティに対する通信を暗号化する前記ステップが、前記受託人が前記通信にディジ タル署名するステップをさらに具備する請求の範囲第293項記載の方法。 296.前記秘密キーのN個の部分すべてを回収する前記ステップが、前記秘 密キーを再構築する前記ステップが、前記寄託センタにより実行されるように、 前記少なくとも1つのデバイス秘密キー部分を含む前記少なくとも1つの寄託セ ンタに対する通信を暗号化するステップをさらに具備する請求の範囲第293項 記載の方法。 297.前記少なくとも1つのデバイス秘密キー部分を含む前記寄託センタに 対する通信を暗号化する前記ステップが、前記受託人が前記通信にディジタル署 名するステップをさらに具備する請求の範囲第296項記載の方法。 298.分割する前記ステップが、M<Nの場合、前記秘密キーを再構築する ためにM個の部分だけが必要とされるように、前記秘密キーをN個の部分に分割 し、 前記秘密キーの前記少なくとも1つの部分を回収する前記ステップが、前記秘 密キーの少なくともM個の部分が回収されるように、前記少なくとも一人の受託 人から前記秘密キーの前記少なくとも1つの部分を回収し、 前記秘密キーを再構築する前記ステップが、前記秘密キーの前記少なくともM 個の回収された部分から前記秘密キーを再構築する請求の範囲第290項記載の 方法。 299.前記秘密キーの少なくともM個の部分を回収する前記ステップが、前 記秘密キーを再構築する前記ステップが前記外部エンティティにより実行される ように、前記少なくとも一人の受託人のそれぞれのために、前記デバイス秘密キ ー部分を含む前記外部エンティティに対する通信を暗号化するステップをさらに 具備する請求の範囲第298項記載の方法。 300.前記デバイス秘密キー部分を含む前記外部エンティティに対する通信 を暗号化する前記ステップが、前記受託人が前記通信にディジタル署名するステ ップをさらに具備する請求の範囲第299項記載の方法。 301.前記秘密キーの少なくともM個の部分を回収する前記ステップが、前 記秘密キーを再構築する前記ステップが前記寄託センタにより実行されるように 、前記少なくとも一人の受託人のそれぞれのために、前記デバイス秘密キー部分 を含む前記少なくとも1つの寄託センタに対する通信を暗号化するステップをさ らに具備する請求の範囲第298項記載の方法。 302.前記デバイス秘密キー部分を含む前記寄託センタに対する通信を暗号 化する前記ステップが、前記受託人が前記通信にディジタル署名するステップを さらに具備する請求の範囲第301項記載の方法。 303.前記暗号化された通信でメッセージ制御ヘッダを入れる前記ステップ が、前記第2ユーザデバイスの寄託センタの識別および前記第2デバイスの寄託 認証の前記ディジタル識別コードを構成する暗号メッセージ制御ヘッダパケット を形成するステップを具備する請求の範囲第262項記載の方法。 304.前記メッセージ制御ヘッダを入れるステップが、前記第2ユーザデバ イスの所有者の識別または前記第2ユーザデバイスのユーザの雇用者または監督 者の識別を構成する暗号メッセージ制御ヘッダパケットを形成するステップをさ らに具備する請求の範囲第303項記載の方法。 305.盗聴装置設置許可を持つ前記外部エンティティによる前記暗号通信を モニタするステップをさらに具備する請求の範囲第303項記載の方法。 306.前記モニタするステップが、 前記外部エンティティによる前記暗号化された通信に割り込むステップと、 前記盗聴装置設置許可および前記メッセージ制御ヘッダを前記第2ユーザデバ イスの寄託センタに提示するステップと、 前記第2ユーザデバイスの寄託センタに寄託されている前記第2ユーザデバイ スの秘密復号化キーを取得するステップと、 前記第2ユーザデバイスの前記秘密復号化キーを前記暗号化された通信の復号 化に使用するステップとをさらに具備する請求の範囲第305項記載の方法。 307.前記提示するステップが、 前記メッセージ制御ヘッダから、前記第2ユーザデバイスの寄託センタの前記 識別および前記第2ユーザデバイスの寄託認証の前記ディジタル識別コードを抽 出するステップと、 前記盗聴装置設置許可および前記第2ユーザデバイスの寄託認証の前記ディジ タル識別コードを前記第2デバイスの寄託センタに提示するステップとをさらに 具備する請求の範囲第306項記載の方法。 308.前記第1デバイスが、前記暗号通信および前記メッセージ制御ヘッダ の作成の日付および時刻を示すタイムスタンプを作成するために信用されたタイ ムクロックを備え、 前記メッセージ制御ヘッダを入れる前記ステップが、 タイムスタンプを構成するメッセージ制御ヘッダパケットを形成するステップ と、 タイムスタンプを作成する目的で前記タイムクロックの信用性を認証するステ ップとをさらに具備する請求の範囲第307項記載の方法。 309.前記タイムスタンプの信頼性を認証する前記ステップが、前記タイム スタンプを作成する目的で前記タイムクロックの信頼性を公証する上位権威によ る認証を発行する請求の範囲第309項記載の方法。 310.前記タイムスタンプを認証するステップが、作成された前記タイムス タンプのそれぞれに前記タイムクロック認証を添付する請求の範囲第309項記 載の方法。 311.前記上位権威タイムクロックが全システム権威を具備する請求の範囲 第309項記載の方法。 312.前記上位権威タイムクロックが前記デバイスの製造メーカーを具備す る請求の範囲第309項記載の方法。 313.前記信用されたタイムクロックが、前記タイムクロックの製造メーカ ーによってのみ設定または較正できる請求の範囲第308項記載の方法。 314.前記第2ユーザデバイスの前記秘密復号化キーを前記通信の復号化に 使用する前記ステップが、前記外部エンティティにより実行される請求の範囲第 306項記載の方法。 315.前記第2ユーザデバイスの前記秘密復号化キーを前記通信の復号化に 使用する前記ステップが、前記寄託センタにより実行される請求の範囲第306 項記載の方法。 316.前記盗聴装置設置許可が、少なくとも1つの事前に定義された制約を 条件とする請求の範囲第306項記載の方法。 317.前記少なくとも1つの事前に定義された制約が、前記盗聴装置設置許 可に、それ以前に前記第2デバイスの前記秘密キーを取得する前記ステップが発 生してはならない開始日付および時刻が含まれるように時間制約を具備する請求 の範囲第316項記載の方法。 318.前記少なくとも1つの事前に定義された制約が、前記盗聴装置設置許 可に、それ以降に前記第2デバイスの前記秘密キーを取得する前記ステップが発 生してはならない終了日付および時刻が含まれるようなさらなる時間制約を具備 する請求の範囲第317項記載の方法。 319.前記少なくとも1つの事前に定義された制約が、前記盗聴装置設置許 可に、それ以降に前記第2デバイスの前記秘密キーを取得する前記ステップが発 生してはならない終了日付および時刻が含まれるような時間制約を具備する請求 の範囲第317項記載の方法。 320.前記第2ユーザデバイスの秘密復号化キーを取得する前記ステップが 、 前記少なくとも一人の受託人のそれぞれから、前記第2ユーザデバイスの秘密 キーの前記少なくとも1つの部分を回収するステップと、 前記秘密キーの前記回収された部分から前記秘密キーを再構築するステップと をさらに具備する請求の範囲第306項記載の方法。 321.前記取得するステップが、前記寄託センタにより実行される請求の範 囲第320項記載の方法。 322.前記取得するステップが、前記外部エンティティにより実行される請 求の範囲第320項記載の方法。 323.前記分割するステップが、前記秘密キーを再構築するにはN個の部分 すべてが必要とされるように前記秘密キーをN個の部分に分割し、 前記秘密キーの前記少なくとも1つの部分を回収する前記ステップが、前記秘 密キーのN個の部分のすべてが回収されるように、前記少なくとも一人の受託人 のそれぞれから前記秘密キーの前記少なくとも1つの部分のそれぞれを回収し、 前記秘密キーを再構築する前記ステップが、前記秘密キーの前記N個の回収さ れた部分すべてから前記秘密キーを再構築する請求の範囲第320項記載の方法 。 324.前記秘密キーのN個の部分のすべてを回収する前記ステップが、前記 秘密キーを再構築する前記ステップが前記外部エンティティにより実行されるよ うに、前記少なくとも一人の受託人のそれぞれのために、前記少なくとも1つの デバイス秘密キー部分を含む前記外部エンティティに対する通信を暗号化するス テップをさらに具備する請求の範囲第323項記載の方法。 325.前記少なくとも1つのデバイス秘密キー部分を含む前記外部エンティ ティに対する通信を暗号化する前記ステップが、前記受託人が前記通信にディジ タル署名するステップをさらに具備する請求の範囲第324項記載の方法。 326.前記秘密キーのN個の部分すべてを回収する前記ステップが、前記秘 密キーを再構築する前記ステップが、前記寄託センタにより実行されるように、 前記少なくとも一人の受託人のそれぞれのために、前記少なくとも1つのデバイ ス秘密キー部分を含む前記少なくとも1つの寄託センタに対する通信を暗号化す るステップをさらに具備する請求の範囲第323項記載の方法。 327.前記少なくとも1つのデバイス秘密キー部分を含む前記寄託センタに 対する通信を暗号化する前記ステップが、前記受託人が前記通信にディジタル署 名するステップをさらに具備する請求の範囲第326項記載の方法。 328.前記分割するステップが、M<Nの場合、前記秘密キーを再構築する ためにM個の部分だけが必要とされるように、前記秘密キーをN個の部分に分割 し、 前記秘密キーの前記少なくとも1つの部分を回収する前記ステップが、前記秘 密キーの少なくともM個の部分が回収されるように、前記すくなくとも一人の受 託人から前記秘密キーの前記少なくとも1つの部分を回収し、 前記秘密キーを再構築する前記ステップが、前記秘密キーの前記少なくともM 個の回収された部分から前記秘密キーを再構築する請求の範囲第320項記載の 方法。 329.前記秘密キーの少なくともM個の部分を回収する前記ステップが、前 記秘密キーを再構築する前記ステップが前記外部エンティティにより実行される ように、前記少なくとも一人の受託者のそれぞれのために、前記デバイス秘密キ ー部分を含む前記外部エンティティに対する通信を暗号化するステップを具備す る請求の範囲第328項記載の方法。 330.前記デバイス秘密キー部分を含む前記外部エンティティに対する通信 を暗号化する前記ステップが、前記受託人が前記通信にディジタル署名するステ ップをさらに具備する請求の範囲第329項記載の方法。 331.前記秘密キーの少なくともM個の部分を回収する前記ステップが、前 記秘密キーを再構築する前記ステップが前記寄託センタにより実行されるように 、前記少なくとも一人の受託人のそれぞれのために、前記デバイス秘密キー部分 を含む前記少なくとも1つの寄託センタに対する通信を暗号化するステップをさ らに具備する請求の範囲第328項記載の方法。 332.前記デバイス秘密キー部分を含む前記寄託センタに対する通信を暗号 化する前記ステップが、前記受託人が前記通信にディジタル署名するステップを 具備する請求の範囲第331項記載の方法。 333.信用されたデバイスに第1ユーザと第2関係者の間の電子トランザク ションを実行する許可を与え、前記信用されたデバイスが、ユーザにより変更す ることができない事前に決定された規則にしたがって前記電子トランザクション に従事する旨の保証を提供する方法であって、 前記信用されたデバイスから第三者に、前記電子トランザクションに従事する ための許可の要求を電子的に送信し、前記要求が前記信用されたデバイスのアイ デンティティを含み、 前記第三者により、前記信用されたデバイスが前記トランザクションに、少な くとも部分的には、前記信用されたデバイスが前記規則にしたがって動作すると いう判断に従い、従事する権限を与えられなければならないことを判断し、 前記第三者から前記信用されたデバイスに前記電子トランザクションに従事す る許可を電子的に送信し、前記許可が、前記第三者が前記許可を与えたという認 証を含み、 前記信用されたデバイスから前記第2関係者へ前記認証を、前記信用されたデ バイスが前記電子トランザクションに従事する権限が与えられ、前記規則に則っ てのみ従事するであろう旨の保証として電子的に送信し、 前記信用されたデバイスから前記第2関係者へ、前記規則に則ってトランザク ションデータを電子的に送信する方法。 334.前記許可伝送ステップが、前記第三者から前記信用されたデバイスへ の前記規則伝送のステップを含む請求の範囲第333項記載の方法。 335.前記信用されたデバイスが、前記許可伝送ステップの前に、前記規則 を備える請求の範囲第333項記載の方法。 336.前記許可伝送ステップが、前記第三者のディジタル署名を前記認証に 添付するステップを含む請求の範囲第333項記載の方法。 337.前記要求伝送ステップが、前記信用されたデバイスの製造メーカーに よりディジタル署名される前記信用されたデバイスの前記アイデンティティの認 証を伝送するステップを含む請求の範囲第333項記載の方法。 338.前記判断するステップが、前記デバイスが、前記信用されたデバイス の前記アイデンティティに基づき、不正な動きを防止する者であるかどうかを判 断するステップを含む請求の範囲第333項記載の方法。 339.前記信用されたデバイスが、非対称暗号システムの公開キーおよび秘 密キーをそれに関連づけ、前記伝送ステップが、前記デバイス公開キーを前記第 三者に伝送するステップを含む請求の範囲第333項記載の方法。 340.前記アイデンティティ認証が、前記信用されたデバイスの公開−秘密 キーペアの公開キーを含み、前記要求伝送ステップが、前記第三者が前記要求が 前記信用されたデバイスから生じたものであることを確認できるように、前記デ バイス秘密キーを用いて作成された前記信用されたデバイスのディジタル署名を 前記要求に添付することを含む請求の範囲第337項記載の方法。 341.前記信用されたデバイスが、非対称暗号システムの第1キーおよび第 2キーをそれに結び付け、トランザクションデータを前記第2関係者へ伝送する ステップが、前記第1キーを用いて作成された前記信用されたデバイスのディジ タル署名を添付するステップを含む請求の範囲第333項記載の方法。 342.前記トランザクションデータを前記第2関係者に伝送する前記ステッ プが、前記第2キーを前記第2関係者に伝送するステップを含む請求の範囲第3 40項記載の方法。 343.前記第1デバイスキーおよび前記第2デバイスキーが、それぞれ秘密 キーおよび公開キーである請求の範囲第341項または第342項記載の方法。
Applications Claiming Priority (5)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| US18185994A | 1994-01-13 | 1994-01-13 | |
| US08/181,859 | 1994-01-13 | ||
| US27220394A | 1994-07-08 | 1994-07-08 | |
| US08/272,203 | 1994-07-08 | ||
| PCT/US1995/000531 WO1995019672A2 (en) | 1994-01-13 | 1995-01-13 | Cryptographic system and method with key escrow feature |
Related Child Applications (2)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| JP2005229598A Division JP2005328574A (ja) | 1994-01-13 | 2005-08-08 | キー寄託機能付き暗号システムおよび方法 |
| JP2006170340A Division JP2006246543A (ja) | 1994-01-13 | 2006-06-20 | キー寄託機能付き暗号システムおよび方法 |
Publications (1)
| Publication Number | Publication Date |
|---|---|
| JPH09507729A true JPH09507729A (ja) | 1997-08-05 |
Family
ID=26877578
Family Applications (4)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| JP7519155A Withdrawn JPH09507729A (ja) | 1994-01-13 | 1995-01-13 | キー寄託機能付き暗号システムおよび方法 |
| JP2005229598A Withdrawn JP2005328574A (ja) | 1994-01-13 | 2005-08-08 | キー寄託機能付き暗号システムおよび方法 |
| JP2006170340A Withdrawn JP2006246543A (ja) | 1994-01-13 | 2006-06-20 | キー寄託機能付き暗号システムおよび方法 |
| JP2007201143A Pending JP2007282295A (ja) | 1994-01-13 | 2007-08-01 | キー寄託機能付き暗号システムおよび方法 |
Family Applications After (3)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| JP2005229598A Withdrawn JP2005328574A (ja) | 1994-01-13 | 2005-08-08 | キー寄託機能付き暗号システムおよび方法 |
| JP2006170340A Withdrawn JP2006246543A (ja) | 1994-01-13 | 2006-06-20 | キー寄託機能付き暗号システムおよび方法 |
| JP2007201143A Pending JP2007282295A (ja) | 1994-01-13 | 2007-08-01 | キー寄託機能付き暗号システムおよび方法 |
Country Status (22)
| Country | Link |
|---|---|
| US (6) | US5857022A (ja) |
| EP (1) | EP0739560B1 (ja) |
| JP (4) | JPH09507729A (ja) |
| CN (1) | CN1138927A (ja) |
| AP (1) | AP626A (ja) |
| AT (1) | ATE202439T1 (ja) |
| AU (1) | AU1680395A (ja) |
| BR (1) | BR9506414A (ja) |
| CA (1) | CA2176032A1 (ja) |
| CZ (1) | CZ197896A3 (ja) |
| DE (1) | DE69521413T2 (ja) |
| DK (1) | DK0739560T3 (ja) |
| ES (1) | ES2158081T3 (ja) |
| GR (1) | GR3036650T3 (ja) |
| HU (1) | HU216231B (ja) |
| MX (1) | MX9602773A (ja) |
| NZ (2) | NZ279622A (ja) |
| OA (1) | OA10456A (ja) |
| PL (1) | PL176458B1 (ja) |
| PT (1) | PT739560E (ja) |
| UA (1) | UA41387C2 (ja) |
| WO (1) | WO1995019672A2 (ja) |
Cited By (5)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| JP2005130458A (ja) * | 2003-09-12 | 2005-05-19 | Ricoh Co Ltd | 証明書設定方法 |
| JP2005537763A (ja) * | 2002-09-03 | 2005-12-08 | ベリサイン・インコーポレイテッド | 公開鍵インフラストラクチャ内で秘密鍵を安全にエスクローするための方法およびシステム |
| JP2008243228A (ja) * | 1996-05-15 | 2008-10-09 | Intertrust Technologies Corp | 閉鎖、接続された機器における記憶媒体電子権利管理用の暗号法の方法、機器およびシステム |
| JP2008270870A (ja) * | 2007-04-16 | 2008-11-06 | Sony Corp | 通信システム、通信装置及び通信方法、並びにコンピュータ・プログラム |
| KR101273465B1 (ko) * | 2007-03-16 | 2013-06-14 | 재단법인서울대학교산학협력재단 | 집합 검증 장치 및 그 방법 |
Families Citing this family (684)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US5557518A (en) | 1994-04-28 | 1996-09-17 | Citibank, N.A. | Trusted agents for open electronic commerce |
| US10361802B1 (en) | 1999-02-01 | 2019-07-23 | Blanding Hovenweep, Llc | Adaptive pattern recognition based control system and method |
| US6267670B1 (en) * | 1997-03-21 | 2001-07-31 | Walker Digital, Llc | System and method for performing lottery ticket transactions utilizing point-of-sale terminals |
| JPH07271865A (ja) | 1994-04-01 | 1995-10-20 | Mitsubishi Corp | データベース著作権管理方法 |
| US6088797A (en) * | 1994-04-28 | 2000-07-11 | Rosen; Sholom S. | Tamper-proof electronic processing device |
| US7302415B1 (en) | 1994-09-30 | 2007-11-27 | Intarsia Llc | Data copyright management system |
| DE69532434T2 (de) | 1994-10-27 | 2004-11-11 | Mitsubishi Corp. | Gerät für Dateiurheberrechte-Verwaltungssystem |
| US6424715B1 (en) | 1994-10-27 | 2002-07-23 | Mitsubishi Corporation | Digital content management system and apparatus |
| US6324558B1 (en) * | 1995-02-14 | 2001-11-27 | Scott A. Wilber | Random number generator and generation method |
| US6272632B1 (en) * | 1995-02-21 | 2001-08-07 | Network Associates, Inc. | System and method for controlling access to a user secret using a key recovery field |
| DE19514084C1 (de) * | 1995-04-13 | 1996-07-11 | Siemens Ag | Verfahren zum rechnergestützten Austausch kryptographischer Schlüssel zwischen einer Benutzercomputereinheit U und einer Netzcomputereinheit N |
| DE69503374T2 (de) * | 1995-08-28 | 1999-04-15 | Michael Ramat Gan Feldbau | Einrichtung und Verfahren zur Authentifizierung der Absendung und des Inhalts eines Dokuments |
| US8595502B2 (en) | 1995-09-29 | 2013-11-26 | Intarsia Software Llc | Data management system |
| US7822989B2 (en) * | 1995-10-02 | 2010-10-26 | Corestreet, Ltd. | Controlling access to an area |
| US7337315B2 (en) * | 1995-10-02 | 2008-02-26 | Corestreet, Ltd. | Efficient certificate revocation |
| US8015597B2 (en) | 1995-10-02 | 2011-09-06 | Corestreet, Ltd. | Disseminating additional data used for controlling access |
| US6766450B2 (en) | 1995-10-24 | 2004-07-20 | Corestreet, Ltd. | Certificate revocation system |
| US7600129B2 (en) | 1995-10-02 | 2009-10-06 | Corestreet, Ltd. | Controlling access using additional data |
| US7353396B2 (en) * | 1995-10-02 | 2008-04-01 | Corestreet, Ltd. | Physical access control |
| US7716486B2 (en) | 1995-10-02 | 2010-05-11 | Corestreet, Ltd. | Controlling group access to doors |
| US8732457B2 (en) | 1995-10-02 | 2014-05-20 | Assa Abloy Ab | Scalable certificate validation and simplified PKI management |
| US8261319B2 (en) | 1995-10-24 | 2012-09-04 | Corestreet, Ltd. | Logging access attempts to an area |
| US6026163A (en) * | 1995-12-13 | 2000-02-15 | Micali; Silvio | Distributed split-key cryptosystem and applications |
| US5774552A (en) * | 1995-12-13 | 1998-06-30 | Ncr Corporation | Method and apparatus for retrieving X.509 certificates from an X.500 directory |
| US5995630A (en) * | 1996-03-07 | 1999-11-30 | Dew Engineering And Development Limited | Biometric input with encryption |
| US5669975A (en) * | 1996-03-27 | 1997-09-23 | Sony Corporation | Plasma producing method and apparatus including an inductively-coupled plasma source |
| US8549310B2 (en) * | 1996-04-08 | 2013-10-01 | Walker Digital, Llc | Method and apparatus for secure measurement certification |
| US5815573A (en) * | 1996-04-10 | 1998-09-29 | International Business Machines Corporation | Cryptographic key recovery system |
| AU5340500A (en) * | 1996-06-13 | 2000-11-02 | Intel Corporation | Method for verifying integrity on an apparatus |
| US5901227A (en) * | 1996-06-20 | 1999-05-04 | Novell, Inc. | Method and apparatus for implementing partial and complete optional key escrow |
| US5913921A (en) * | 1996-07-12 | 1999-06-22 | Glenayre Electronics, Inc. | System for communicating information about nodes configuration by generating advertisements having era values for identifying time reference for which the configuration is operative |
| US5796830A (en) * | 1996-07-29 | 1998-08-18 | International Business Machines Corporation | Interoperable cryptographic key recovery system |
| US20040199402A1 (en) * | 1996-09-06 | 2004-10-07 | Walker Jay S. | Method and system for anonymous communication of information about a home |
| US6192131B1 (en) | 1996-11-15 | 2001-02-20 | Securities Industry Automation Corporation | Enabling business transactions in computer networks |
| US6212634B1 (en) * | 1996-11-15 | 2001-04-03 | Open Market, Inc. | Certifying authorization in computer networks |
| US5917913A (en) * | 1996-12-04 | 1999-06-29 | Wang; Ynjiun Paul | Portable electronic authorization devices and methods therefor |
| US8225089B2 (en) | 1996-12-04 | 2012-07-17 | Otomaku Properties Ltd., L.L.C. | Electronic transaction systems utilizing a PEAD and a private key |
| US6708221B1 (en) * | 1996-12-13 | 2004-03-16 | Visto Corporation | System and method for globally and securely accessing unified information in a computer network |
| US20060195595A1 (en) * | 2003-12-19 | 2006-08-31 | Mendez Daniel J | System and method for globally and securely accessing unified information in a computer network |
| US6353812B2 (en) * | 1998-02-19 | 2002-03-05 | Certco, Inc. | Computer-based method and system for aiding transactions |
| US7287271B1 (en) | 1997-04-08 | 2007-10-23 | Visto Corporation | System and method for enabling secure access to services in a computer network |
| US5917911A (en) * | 1997-01-23 | 1999-06-29 | Motorola, Inc. | Method and system for hierarchical key access and recovery |
| US6055575A (en) * | 1997-01-28 | 2000-04-25 | Ascend Communications, Inc. | Virtual private network system and method |
| US7212632B2 (en) | 1998-02-13 | 2007-05-01 | Tecsec, Inc. | Cryptographic key split combiner |
| US5920630A (en) * | 1997-02-25 | 1999-07-06 | United States Of America | Method of public key cryptography that includes key escrow |
| US7003480B2 (en) * | 1997-02-27 | 2006-02-21 | Microsoft Corporation | GUMP: grand unified meta-protocol for simple standards-based electronic commerce transactions |
| GB9704159D0 (en) * | 1997-02-28 | 1997-04-16 | Neopost Ltd | Security and authentication of postage indicia |
| US7606729B1 (en) | 1997-03-21 | 2009-10-20 | Walker Digital, Llc | Method and apparatus for facilitating the play of fractional lottery tickets utilizing point-of-sale terminals |
| US7233912B2 (en) | 1997-08-26 | 2007-06-19 | Walker Digital, Llc | Method and apparatus for vending a combination of products |
| US6477513B1 (en) * | 1997-04-03 | 2002-11-05 | Walker Digital, Llc | Method and apparatus for executing cryptographically-enabled letters of credit |
| US6766454B1 (en) | 1997-04-08 | 2004-07-20 | Visto Corporation | System and method for using an authentication applet to identify and authenticate a user in a computer network |
| US6289451B1 (en) * | 1997-04-18 | 2001-09-11 | Sun Microsystems, Inc. | System and method for efficiently implementing an authenticated communications channel that facilitates tamper detection |
| US6694433B1 (en) * | 1997-05-08 | 2004-02-17 | Tecsec, Inc. | XML encryption scheme |
| US6434561B1 (en) * | 1997-05-09 | 2002-08-13 | Neomedia Technologies, Inc. | Method and system for accessing electronic resources via machine-readable data on intelligent documents |
| AU7484898A (en) * | 1997-05-09 | 1998-11-27 | Gte Government Systems Corporation | Biometric certificates |
| US6381698B1 (en) * | 1997-05-21 | 2002-04-30 | At&T Corp | System and method for providing assurance to a host that a piece of software possesses a particular property |
| BR9809664A (pt) * | 1997-05-28 | 2000-09-05 | Adan Lucas Young | Processo e aparelho compreendendo um criptossistema que pode ser usado para gerar, verificar, usar, e recuperar códigos criptográficos |
| US6202150B1 (en) * | 1997-05-28 | 2001-03-13 | Adam Lucas Young | Auto-escrowable and auto-certifiable cryptosystems |
| US6314190B1 (en) | 1997-06-06 | 2001-11-06 | Networks Associates Technology, Inc. | Cryptographic system with methods for user-controlled message recovery |
| US6311171B1 (en) * | 1997-07-11 | 2001-10-30 | Ericsson Inc. | Symmetrically-secured electronic communication system |
| US6212635B1 (en) * | 1997-07-18 | 2001-04-03 | David C. Reardon | Network security system allowing access and modification to a security subsystem after initial installation when a master token is in place |
| US6058188A (en) * | 1997-07-24 | 2000-05-02 | International Business Machines Corporation | Method and apparatus for interoperable validation of key recovery information in a cryptographic system |
| US6370249B1 (en) * | 1997-07-25 | 2002-04-09 | Entrust Technologies, Ltd. | Method and apparatus for public key management |
| DE19733662C2 (de) * | 1997-08-04 | 2001-05-23 | Deutsche Telekom Mobil | Verfahren und Vorrichtung zur kundenseitigen Personalisierung von GSM-Chips |
| US6278782B1 (en) * | 1997-09-16 | 2001-08-21 | Safenet, Inc. | Method of implementing a key recovery system |
| US6128391A (en) * | 1997-09-22 | 2000-10-03 | Visa International Service Association | Method and apparatus for asymetric key management in a cryptographic system |
| US5970147A (en) * | 1997-09-30 | 1999-10-19 | Intel Corporation | System and method for configuring and registering a cryptographic device |
| US6357004B1 (en) | 1997-09-30 | 2002-03-12 | Intel Corporation | System and method for ensuring integrity throughout post-processing |
| US6052784A (en) * | 1997-10-14 | 2000-04-18 | Intel Corporation | Network discovery system and method |
| WO1999022486A1 (de) * | 1997-10-28 | 1999-05-06 | Brokat Infosystems Ag | Verfahren zum digitalen signieren einer nachricht |
| US6035398A (en) * | 1997-11-14 | 2000-03-07 | Digitalpersona, Inc. | Cryptographic key generation using biometric data |
| US6128735A (en) * | 1997-11-25 | 2000-10-03 | Motorola, Inc. | Method and system for securely transferring a data set in a data communications system |
| US6246771B1 (en) * | 1997-11-26 | 2001-06-12 | V-One Corporation | Session key recovery system and method |
| GB2331898B (en) * | 1997-12-01 | 2003-03-12 | Hewlett Packard Co | Fair escrow cryptosystems |
| US6151395A (en) | 1997-12-04 | 2000-11-21 | Cisco Technology, Inc. | System and method for regenerating secret keys in diffie-hellman communication sessions |
| US6108788A (en) * | 1997-12-08 | 2000-08-22 | Entrust Technologies Limited | Certificate management system and method for a communication security system |
| US7587044B2 (en) | 1998-01-02 | 2009-09-08 | Cryptography Research, Inc. | Differential power analysis method and apparatus |
| JP4496440B2 (ja) * | 1998-01-12 | 2010-07-07 | ソニー株式会社 | 暗号化コンテンツ送信装置 |
| US6055636A (en) * | 1998-01-27 | 2000-04-25 | Entrust Technologies, Limited | Method and apparatus for centralizing processing of key and certificate life cycle management |
| US6049826A (en) * | 1998-02-04 | 2000-04-11 | 3Com Corporation | Method and system for cable modem initialization using dynamic servers |
| US6170061B1 (en) | 1998-02-04 | 2001-01-02 | 3Com Corporation | Method and system for secure cable modem registration |
| US6070246A (en) * | 1998-02-04 | 2000-05-30 | 3Com Corporation | Method and system for secure cable modem initialization |
| US6058421A (en) * | 1998-02-04 | 2000-05-02 | 3Com Corporation | Method and system for addressing network host interfaces from a cable modem using DHCP |
| US6065049A (en) * | 1998-02-04 | 2000-05-16 | 3Com Corporation | Method and system for resolving addresses for network host interfaces from a cable modem |
| US6240464B1 (en) | 1998-02-04 | 2001-05-29 | 3Com Corporation | Method and system for managing addresses for network host interfaces in a data-over-cable system |
| US6185624B1 (en) | 1998-02-04 | 2001-02-06 | 3Com Corporation | Method and system for cable modem management of a data-over-cable system |
| EP0936805A1 (en) * | 1998-02-12 | 1999-08-18 | Hewlett-Packard Company | Document transfer systems |
| US8077870B2 (en) * | 1998-02-13 | 2011-12-13 | Tecsec, Inc. | Cryptographic key split binder for use with tagged data elements |
| US7079653B2 (en) * | 1998-02-13 | 2006-07-18 | Tecsec, Inc. | Cryptographic key split binding process and apparatus |
| EP0946019A1 (en) | 1998-03-25 | 1999-09-29 | CANAL+ Société Anonyme | Authentification of data in a digital transmission system |
| US6725373B2 (en) * | 1998-03-25 | 2004-04-20 | Intel Corporation | Method and apparatus for verifying the integrity of digital objects using signed manifests |
| EP0994599A4 (en) * | 1998-04-01 | 2009-06-03 | Panasonic Corp | METHOD FOR TRANSMITTING / RECEIVING DATA, DATA TRANSMITTER, DATA RECEIVER, DEVICE FOR SENDING / RECEIVING DATA, METHOD FOR TRANSMITTING AN AUDIOVISUAL CONTENT, METHOD FOR RECEIVING AN AUDIOVISUAL CONTENT, TRANSMITTER AND RECEIVER OF AN AUDIOVISUAL CONTENT, AND PROGRAMMING MEDIUM |
| US6970836B1 (en) * | 1998-04-14 | 2005-11-29 | Citicorp Development Center, Inc. | System and method for securely storing electronic data |
| US6370147B1 (en) | 1998-04-23 | 2002-04-09 | 3Com Corporation | Method for addressing of passive network hosts in a data-over-cable system |
| US6240512B1 (en) * | 1998-04-30 | 2001-05-29 | International Business Machines Corporation | Single sign-on (SSO) mechanism having master key synchronization |
| US6928546B1 (en) * | 1998-05-14 | 2005-08-09 | Fusion Arc, Inc. | Identity verification method using a central biometric authority |
| US6636485B1 (en) | 1998-05-14 | 2003-10-21 | 3Com Corporation | Method and system for providing quality-of-service in a data-over-cable system |
| US6223222B1 (en) | 1998-05-14 | 2001-04-24 | 3Com Corporation | Method and system for providing quality-of-service in a data-over-cable system using configuration protocol messaging |
| US6233341B1 (en) * | 1998-05-19 | 2001-05-15 | Visto Corporation | System and method for installing and using a temporary certificate at a remote site |
| JPH11331618A (ja) * | 1998-05-19 | 1999-11-30 | Canon Inc | 画像処理装置、画像データ配布装置、画像データ配布システム、画像データ配布方法、及び記憶媒体 |
| US6775276B1 (en) | 1998-05-27 | 2004-08-10 | 3Com Corporation | Method and system for seamless address allocation in a data-over-cable system |
| US6189102B1 (en) | 1998-05-27 | 2001-02-13 | 3Com Corporation | Method for authentication of network devices in a data-over cable system |
| US6275853B1 (en) | 1998-05-27 | 2001-08-14 | 3Com Corporation | System and method for extending communications features using generic management information base objects |
| US6295554B1 (en) | 1998-05-27 | 2001-09-25 | 3Com Corporation | System and method for communicating with a telco-return cable modem as a single communications device |
| US6510162B1 (en) | 1998-05-27 | 2003-01-21 | 3Com Corporation | System and method for managing channel usage in a data over cable system |
| US6560203B1 (en) | 1998-05-27 | 2003-05-06 | 3Com Corporation | Method for changing type-of-service in a data-over-cable system |
| US6331987B1 (en) | 1998-05-27 | 2001-12-18 | 3Com Corporation | Method and system for bundling data in a data-over-cable system |
| US6442158B1 (en) | 1998-05-27 | 2002-08-27 | 3Com Corporation | Method and system for quality-of-service based data forwarding in a data-over-cable system |
| US6442686B1 (en) | 1998-07-02 | 2002-08-27 | Networks Associates Technology, Inc. | System and methodology for messaging server-based management and enforcement of crypto policies |
| US6336186B1 (en) | 1998-07-02 | 2002-01-01 | Networks Associates Technology, Inc. | Cryptographic system and methodology for creating and managing crypto policy on certificate servers |
| JP4216475B2 (ja) | 1998-07-02 | 2009-01-28 | クリプターグラフィー リサーチ インコーポレイテッド | 漏洩抵抗力を有する暗号索引付き鍵の更新方法及びデバイス |
| US6816968B1 (en) * | 1998-07-10 | 2004-11-09 | Silverbrook Research Pty Ltd | Consumable authentication protocol and system |
| US6566858B1 (en) * | 1998-07-10 | 2003-05-20 | Silverbrook Research Pty Ltd | Circuit for protecting chips against IDD fluctuation attacks |
| BR9815908A (pt) * | 1998-07-15 | 2001-10-09 | Ibm | Processo de estabelecer o nìvel de confiabilidade de um participante em uma conexão de comunicação |
| US6751729B1 (en) * | 1998-07-24 | 2004-06-15 | Spatial Adventures, Inc. | Automated operation and security system for virtual private networks |
| US6226618B1 (en) * | 1998-08-13 | 2001-05-01 | International Business Machines Corporation | Electronic content delivery system |
| US6356935B1 (en) | 1998-08-14 | 2002-03-12 | Xircom Wireless, Inc. | Apparatus and method for an authenticated electronic userid |
| US6615348B1 (en) | 1999-04-16 | 2003-09-02 | Intel Corporation | Method and apparatus for an adapted digital signature |
| US6085321A (en) * | 1998-08-14 | 2000-07-04 | Omnipoint Corporation | Unique digital signature |
| US6591364B1 (en) * | 1998-08-28 | 2003-07-08 | Lucent Technologies Inc. | Method for establishing session key agreement |
| US7111173B1 (en) * | 1998-09-01 | 2006-09-19 | Tecsec, Inc. | Encryption process including a biometric unit |
| RU2153191C2 (ru) | 1998-09-29 | 2000-07-20 | Закрытое акционерное общество "Алкорсофт" | Способ изготовления вслепую цифровой rsa-подписи и устройство для его реализации (варианты) |
| US6892229B1 (en) | 1998-09-30 | 2005-05-10 | 3Com Corporation | System and method for assigning dynamic host configuration protocol parameters in devices using resident network interfaces |
| US6212563B1 (en) | 1998-10-01 | 2001-04-03 | 3Com Corporation | Method and system for setting and managing externally provided internet protocol addresses using the dynamic host configuration protocol |
| CA2347176A1 (en) | 1998-10-23 | 2000-05-04 | L-3 Communications Corporation | Apparatus and methods for managing key material in heterogeneous cryptographic assets |
| US7386727B1 (en) | 1998-10-24 | 2008-06-10 | Encorus Holdings Limited | Method for digital signing of a message |
| US6829712B1 (en) * | 1998-10-27 | 2004-12-07 | Sprint Communications Company L.P. | Object-based security system |
| US6820202B1 (en) * | 1998-11-09 | 2004-11-16 | First Data Corporation | Account authority digital signature (AADS) system |
| US7047416B2 (en) * | 1998-11-09 | 2006-05-16 | First Data Corporation | Account-based digital signature (ABDS) system |
| RU2157001C2 (ru) | 1998-11-25 | 2000-09-27 | Закрытое акционерное общество "Алкорсофт" | Способ проведения платежей (варианты) |
| US6473861B1 (en) * | 1998-12-03 | 2002-10-29 | Joseph Forte | Magnetic optical encryption/decryption disk drive arrangement |
| US6662135B1 (en) | 1998-12-09 | 2003-12-09 | 3Com Corporation | Method and apparatus for reflective mixer testing of a cable modem |
| US6307955B1 (en) * | 1998-12-18 | 2001-10-23 | Topaz Systems, Inc. | Electronic signature management system |
| US6351773B1 (en) | 1998-12-21 | 2002-02-26 | 3Com Corporation | Methods for restricting access of network devices to subscription services in a data-over-cable system |
| US6657991B1 (en) | 1998-12-21 | 2003-12-02 | 3Com Corporation | Method and system for provisioning network addresses in a data-over-cable system |
| US6986157B1 (en) | 1998-12-21 | 2006-01-10 | 3Com Corporation | Method and system for dynamic service registration in a data-over-cable system |
| US7209889B1 (en) | 1998-12-24 | 2007-04-24 | Henry Whitfield | Secure system for the issuance, acquisition, and redemption of certificates in a transaction network |
| US7171000B1 (en) | 1999-06-10 | 2007-01-30 | Message Secure Corp. | Simplified addressing for private communications |
| US6577642B1 (en) | 1999-01-15 | 2003-06-10 | 3Com Corporation | Method and system for virtual network administration with a data-over cable system |
| US6636481B1 (en) * | 1999-01-26 | 2003-10-21 | Matsushita Electric Industrial Co., Ltd. | Data connecting method, data connecting apparatus, program recording medium |
| DE19961151A1 (de) * | 1999-01-29 | 2000-08-03 | Ibm | Verfahren zum Erstellen und Lesen eines neuen Zertifikatstyps zur Zertifizierung von Schlüsseln |
| US6600908B1 (en) | 1999-02-04 | 2003-07-29 | Hark C. Chan | Method and system for broadcasting and receiving audio information and associated audio indexes |
| GB9905056D0 (en) | 1999-03-05 | 1999-04-28 | Hewlett Packard Co | Computing apparatus & methods of operating computer apparatus |
| US7099338B1 (en) | 1999-02-27 | 2006-08-29 | 3Com Corporation | System and method for insuring dynamic host configuration protocol operation by a host connected to a data network |
| US6778968B1 (en) | 1999-03-17 | 2004-08-17 | Vialogy Corp. | Method and system for facilitating opportunistic transactions using auto-probes |
| EP1039741A3 (en) * | 1999-03-22 | 2003-12-10 | Eastman Kodak Company | Health care system using data authentication |
| JP2000276445A (ja) * | 1999-03-23 | 2000-10-06 | Nec Corp | バイオメトリクス識別を用いた認証方法、装置、認証実行機、認証プログラムを記録した記録媒体 |
| US7245707B1 (en) * | 1999-03-26 | 2007-07-17 | Chan Hark C | Data network based telephone messaging system |
| US6973444B1 (en) | 1999-03-27 | 2005-12-06 | Microsoft Corporation | Method for interdependently validating a digital content package and a corresponding digital license |
| US7383205B1 (en) * | 1999-03-27 | 2008-06-03 | Microsoft Corporation | Structure of a digital content package |
| US7356688B1 (en) * | 1999-04-06 | 2008-04-08 | Contentguard Holdings, Inc. | System and method for document distribution |
| US7286665B1 (en) * | 1999-04-06 | 2007-10-23 | Contentguard Holdings, Inc. | System and method for transferring the right to decode messages |
| WO2000062181A1 (en) * | 1999-04-08 | 2000-10-19 | Keith Richard Holbrook | Information transmission and collection apparatus and method |
| AU4370400A (en) * | 1999-05-05 | 2000-11-21 | Uroam, Inc. | A method and apparatus for accessing a computer using a browser |
| EP1194869B2 (en) * | 1999-05-13 | 2015-03-25 | Ascom Hasler Mailing Systems, Inc. | Technique for secure remote configuration of a system |
| US7246244B2 (en) * | 1999-05-14 | 2007-07-17 | Fusionarc, Inc. A Delaware Corporation | Identity verification method using a central biometric authority |
| US7499551B1 (en) | 1999-05-14 | 2009-03-03 | Dell Products L.P. | Public key infrastructure utilizing master key encryption |
| US6697862B1 (en) | 1999-05-21 | 2004-02-24 | 3Com Corporation | System and method for network address maintenance using dynamic host configuration protocol messages in a data-over-cable system |
| US6611868B1 (en) | 1999-05-21 | 2003-08-26 | 3Com Corporation | Method and system for automatic link hang up |
| US6654387B1 (en) | 1999-05-21 | 2003-11-25 | 3Com Corporation | Method for network address table maintenance in a data-over-cable system using a network device registration procedure |
| US6754622B1 (en) | 1999-05-24 | 2004-06-22 | 3Com Corporation | Method for network address table maintenance in a data-over-cable system using destination reachibility |
| EP1641193A1 (en) * | 1999-05-25 | 2006-03-29 | Lucent Technologies Inc. | Method for telecommunications using internet protocol |
| US6985437B1 (en) | 1999-05-25 | 2006-01-10 | 3Com Corporation | Method for dynamic performance optimization in a data-over-cable system |
| CA2374968C (en) * | 1999-05-26 | 2010-11-16 | Neopost Technologies | Technique for split knowledge backup and recovery of a cryptographic key |
| US6785292B1 (en) | 1999-05-28 | 2004-08-31 | 3Com Corporation | Method for detecting radio frequency impairments in a data-over-cable system |
| DE19925910B4 (de) * | 1999-06-07 | 2005-04-28 | Siemens Ag | Verfahren zum Be- oder Verarbeiten von Daten |
| US6988199B2 (en) | 2000-07-07 | 2006-01-17 | Message Secure | Secure and reliable document delivery |
| US20020019932A1 (en) * | 1999-06-10 | 2002-02-14 | Eng-Whatt Toh | Cryptographically secure network |
| US20020101998A1 (en) * | 1999-06-10 | 2002-08-01 | Chee-Hong Wong | Fast escrow delivery |
| US7707420B1 (en) | 1999-06-23 | 2010-04-27 | Research In Motion Limited | Public key encryption with digital signature scheme |
| WO2001003087A1 (en) | 1999-06-30 | 2001-01-11 | Walker Digital, Llc | Vending machine system and method for encouraging the purchase of profitable items |
| DE19964198A1 (de) * | 1999-07-15 | 2001-04-12 | Erland Wittkoetter | Datenverarbeitungsvorrichtung |
| GB2353682B (en) * | 1999-07-15 | 2004-03-31 | Nds Ltd | Key management for content protection |
| IL130963A (en) * | 1999-07-15 | 2006-04-10 | Nds Ltd | Key management for content protection |
| KR100315387B1 (ko) * | 1999-08-02 | 2001-11-26 | 윤금 | 개인키 및 사용자 인증서 관리 시스템 및 그 관리 방법 |
| EP2802189A3 (en) * | 1999-08-12 | 2015-03-18 | Elad Barkan | Add-on base station for cellular network expansion |
| US7373517B1 (en) | 1999-08-19 | 2008-05-13 | Visto Corporation | System and method for encrypting and decrypting files |
| US6823456B1 (en) * | 1999-08-25 | 2004-11-23 | International Business Machines Corporation | System and method for providing trusted services via trusted server agents |
| US6289455B1 (en) * | 1999-09-02 | 2001-09-11 | Crypotography Research, Inc. | Method and apparatus for preventing piracy of digital content |
| JP3593100B2 (ja) * | 1999-09-07 | 2004-11-24 | ノキア コーポレイション | 傍受したデータの順序付けされた送出 |
| US7181014B1 (en) | 1999-09-10 | 2007-02-20 | Cisco Technology, Inc. | Processing method for key exchange among broadcast or multicast groups that provides a more efficient substitute for Diffie-Hellman key exchange |
| US6987855B1 (en) | 1999-09-10 | 2006-01-17 | Cisco Technology, Inc. | Operational optimization of a shared secret Diffie-Hellman key exchange among broadcast or multicast groups |
| US6684331B1 (en) | 1999-12-22 | 2004-01-27 | Cisco Technology, Inc. | Method and apparatus for distributing and updating group controllers over a wide area network using a tree structure |
| US7434046B1 (en) | 1999-09-10 | 2008-10-07 | Cisco Technology, Inc. | Method and apparatus providing secure multicast group communication |
| US7013389B1 (en) | 1999-09-29 | 2006-03-14 | Cisco Technology, Inc. | Method and apparatus for creating a secure communication channel among multiple event service nodes |
| US7260716B1 (en) | 1999-09-29 | 2007-08-21 | Cisco Technology, Inc. | Method for overcoming the single point of failure of the central group controller in a binary tree group key exchange approach |
| US7103185B1 (en) * | 1999-12-22 | 2006-09-05 | Cisco Technology, Inc. | Method and apparatus for distributing and updating private keys of multicast group managers using directory replication |
| US7362973B1 (en) * | 1999-09-15 | 2008-04-22 | International Business Machines Corporation | Protecting secret data entry from infrared and audio eavesdropping |
| US6732113B1 (en) * | 1999-09-20 | 2004-05-04 | Verispan, L.L.C. | System and method for generating de-identified health care data |
| US7260724B1 (en) * | 1999-09-20 | 2007-08-21 | Security First Corporation | Context sensitive dynamic authentication in a cryptographic system |
| US6853988B1 (en) * | 1999-09-20 | 2005-02-08 | Security First Corporation | Cryptographic server with provisions for interoperability between cryptographic systems |
| WO2001022319A1 (en) * | 1999-09-20 | 2001-03-29 | Ethentica, Inc. | Trust arbitrage in cryptographic authentication |
| US7391865B2 (en) | 1999-09-20 | 2008-06-24 | Security First Corporation | Secure data parser method and system |
| JP2003510694A (ja) | 1999-09-20 | 2003-03-18 | クインタイルズ トランスナショナル コーポレイション | 匿名化された健康管理情報を分析するためのシステム及び方法 |
| US7269261B1 (en) * | 1999-09-22 | 2007-09-11 | Raytheon Company | Key escrow systems |
| US6553568B1 (en) | 1999-09-29 | 2003-04-22 | 3Com Corporation | Methods and systems for service level agreement enforcement on a data-over cable system |
| JP4011243B2 (ja) * | 1999-10-15 | 2007-11-21 | 富士通株式会社 | 電子原本管理装置および方法 |
| DE69929251T2 (de) * | 1999-10-20 | 2006-07-13 | Fujitsu Ltd., Kawasaki | Verschlüsselungssystem mit einem schlüssel veränderlicher länge |
| US7461022B1 (en) | 1999-10-20 | 2008-12-02 | Yahoo! Inc. | Auction redemption system and method |
| WO2001029762A2 (en) * | 1999-10-20 | 2001-04-26 | Spyrus, Inc. | Method and system for an integrated circuit card interface device with multiple modes of operation |
| KR100586030B1 (ko) * | 1999-11-03 | 2006-06-01 | 한국전자통신연구원 | 암호키 복구 정보 관리 방법 |
| US6826690B1 (en) * | 1999-11-08 | 2004-11-30 | International Business Machines Corporation | Using device certificates for automated authentication of communicating devices |
| US6823454B1 (en) * | 1999-11-08 | 2004-11-23 | International Business Machines Corporation | Using device certificates to authenticate servers before automatic address assignment |
| US7421472B1 (en) | 1999-11-19 | 2008-09-02 | Ross Jr Robert C | System, method, and computer program product for providing a multi-user e-mail system |
| US6826173B1 (en) | 1999-12-30 | 2004-11-30 | At&T Corp. | Enhanced subscriber IP alerting |
| US6889321B1 (en) * | 1999-12-30 | 2005-05-03 | At&T Corp. | Protected IP telephony calls using encryption |
| US6775267B1 (en) | 1999-12-30 | 2004-08-10 | At&T Corp | Method for billing IP broadband subscribers |
| US7180889B1 (en) | 1999-12-30 | 2007-02-20 | At&T Corp. | Personal control of address assignment and greeting options for multiple BRG ports |
| US6937713B1 (en) | 1999-12-30 | 2005-08-30 | At&T Corp. | IP call forward profile |
| US7089211B1 (en) | 2000-01-12 | 2006-08-08 | Cisco Technology, Inc. | Directory enabled secure multicast group communications |
| US7340600B1 (en) | 2000-01-14 | 2008-03-04 | Hewlett-Packard Development Company, L.P. | Authorization infrastructure based on public key cryptography |
| US7269726B1 (en) | 2000-01-14 | 2007-09-11 | Hewlett-Packard Development Company, L.P. | Lightweight public key infrastructure employing unsigned certificates |
| US7010683B2 (en) * | 2000-01-14 | 2006-03-07 | Howlett-Packard Development Company, L.P. | Public key validation service |
| US7020778B1 (en) * | 2000-01-21 | 2006-03-28 | Sonera Smarttrust Oy | Method for issuing an electronic identity |
| FR2804561B1 (fr) * | 2000-01-31 | 2002-03-01 | France Telecom | Procede de communication avec sequestre et recuperation de cle de chiffrement |
| US6965992B1 (en) | 2000-02-24 | 2005-11-15 | 3Com Corporation | Method and system for network security capable of doing stronger encryption with authorized devices |
| US20030101346A1 (en) * | 2000-02-29 | 2003-05-29 | Barron Austin Kesler | Method for notarizing receipt of electronic communications and enabling electronic registered mail; method for verifying identity of account party |
| AU2001250017A1 (en) | 2000-03-03 | 2001-09-17 | Dun And Bradstreet, Inc. | Facilitating a transaction in electronic commerce |
| EP1134977A1 (en) * | 2000-03-06 | 2001-09-19 | Irdeto Access B.V. | Method and system for providing copies of scrambled content with unique watermarks, and system for descrambling scrambled content |
| US8230482B2 (en) * | 2000-03-09 | 2012-07-24 | Pkware, Inc. | System and method for manipulating and managing computer archive files |
| US20050015608A1 (en) | 2003-07-16 | 2005-01-20 | Pkware, Inc. | Method for strongly encrypting .ZIP files |
| US20060143250A1 (en) * | 2000-03-09 | 2006-06-29 | Pkware, Inc. | System and method for manipulating and managing computer archive files |
| US6879988B2 (en) | 2000-03-09 | 2005-04-12 | Pkware | System and method for manipulating and managing computer archive files |
| US20060143714A1 (en) * | 2000-03-09 | 2006-06-29 | Pkware, Inc. | System and method for manipulating and managing computer archive files |
| US8959582B2 (en) | 2000-03-09 | 2015-02-17 | Pkware, Inc. | System and method for manipulating and managing computer archive files |
| US20060155731A1 (en) * | 2000-03-09 | 2006-07-13 | Pkware, Inc. | System and method for manipulating and managing computer archive files |
| US20060143252A1 (en) * | 2000-03-09 | 2006-06-29 | Pkware, Inc. | System and method for manipulating and managing computer archive files |
| US20060173848A1 (en) * | 2000-03-09 | 2006-08-03 | Pkware, Inc. | System and method for manipulating and managing computer archive files |
| US7844579B2 (en) | 2000-03-09 | 2010-11-30 | Pkware, Inc. | System and method for manipulating and managing computer archive files |
| US6895501B1 (en) * | 2000-03-13 | 2005-05-17 | Wrq, Inc. | Method and apparatus for distributing, interpreting, and storing heterogeneous certificates in a homogenous public key infrastructure |
| US20040186996A1 (en) * | 2000-03-29 | 2004-09-23 | Gibbs Benjamin K. | Unique digital signature |
| US7089580B1 (en) | 2000-03-29 | 2006-08-08 | 3Com Corporation | Method for improved cable modem ranging in a data-over-cable system |
| US7277549B2 (en) * | 2000-04-25 | 2007-10-02 | Secure Data In Motion, Inc. | System for implementing business processes using key server events |
| US6584564B2 (en) * | 2000-04-25 | 2003-06-24 | Sigaba Corporation | Secure e-mail system |
| US7325127B2 (en) * | 2000-04-25 | 2008-01-29 | Secure Data In Motion, Inc. | Security server system |
| US7376835B2 (en) * | 2000-04-25 | 2008-05-20 | Secure Data In Motion, Inc. | Implementing nonrepudiation and audit using authentication assertions and key servers |
| US7237114B1 (en) | 2000-04-26 | 2007-06-26 | Pronvest, Inc. | Method and system for signing and authenticating electronic documents |
| US6804262B1 (en) | 2000-04-28 | 2004-10-12 | 3Com Corporation | Method and apparatus for channel determination through power measurements |
| US7308718B1 (en) * | 2000-05-09 | 2007-12-11 | Neopost Technologies | Technique for secure remote configuration of a system |
| US7640580B1 (en) | 2000-05-17 | 2009-12-29 | F5 Networks, Inc. | Method and apparatus for accessing a computer behind a firewall |
| AU2001266736A1 (en) * | 2000-06-06 | 2001-12-17 | Ingeo Systems, Inc. | Processing electronic documents with embedded digital signatures |
| WO2001095078A1 (en) * | 2000-06-06 | 2001-12-13 | Ingeo Systems, Inc. | Creating and verifying electronic documents |
| FR2810138B1 (fr) * | 2000-06-08 | 2005-02-11 | Bull Cp8 | Procede de stockage securise d'une donnee sensible dans une memoire d'un systeme embarque a puce electronique, notamment d'une carte a puce, et systeme embarque mettant en oeuvre le procede |
| WO2001095068A2 (en) | 2000-06-09 | 2001-12-13 | Certicom Corp. | A method for the application of implicit signature schemes |
| US7493486B1 (en) * | 2000-06-09 | 2009-02-17 | Verizon Laboratories, Inc. | Method and apparatus for supporting cryptographic-related activities in a public key infrastructure |
| US6944881B1 (en) | 2000-06-19 | 2005-09-13 | 3Com Corporation | Method for using an initial maintenance opportunity for non-contention ranging |
| US20040073617A1 (en) * | 2000-06-19 | 2004-04-15 | Milliken Walter Clark | Hash-based systems and methods for detecting and preventing transmission of unwanted e-mail |
| US6891953B1 (en) * | 2000-06-27 | 2005-05-10 | Microsoft Corporation | Method and system for binding enhanced software features to a persona |
| US6941457B1 (en) | 2000-06-30 | 2005-09-06 | Cisco Technology, Inc. | Establishing a new shared secret key over a broadcast channel for a multicast group based on an old shared secret key |
| AU2001236580A1 (en) * | 2000-07-06 | 2002-01-21 | Hitae Lee | Three-way encryption/decryption system |
| AU7182701A (en) | 2000-07-06 | 2002-01-21 | David Paul Felsher | Information record infrastructure, system and method |
| US7251728B2 (en) | 2000-07-07 | 2007-07-31 | Message Secure Corporation | Secure and reliable document delivery using routing lists |
| US6816500B1 (en) | 2000-07-10 | 2004-11-09 | 3Com Corporation | Apparatus, method and system for multimedia access network channel management |
| AU2001284721A1 (en) * | 2000-08-04 | 2002-02-18 | First Data Corporation | Method and apparatus for access authentication entity |
| AU2008203525B2 (en) * | 2000-08-04 | 2011-11-10 | First Data Corporation | Linking public key of device to information during manufacturing |
| US6983368B2 (en) * | 2000-08-04 | 2006-01-03 | First Data Corporation | Linking public key of device to information during manufacture |
| US7096354B2 (en) * | 2000-08-04 | 2006-08-22 | First Data Corporation | Central key authority database in an ABDS system |
| US7010691B2 (en) * | 2000-08-04 | 2006-03-07 | First Data Corporation | ABDS system utilizing security information in authenticating entity access |
| US6978369B2 (en) * | 2000-08-04 | 2005-12-20 | First Data Corporation | Person-centric account-based digital signature system |
| US7082533B2 (en) * | 2000-08-04 | 2006-07-25 | First Data Corporation | Gauging risk in electronic communications regarding accounts in ABDS system |
| US6820201B1 (en) * | 2000-08-04 | 2004-11-16 | Sri International | System and method using information-based indicia for securing and authenticating transactions |
| US7558965B2 (en) | 2000-08-04 | 2009-07-07 | First Data Corporation | Entity authentication in electronic communications by providing verification status of device |
| US6789189B2 (en) * | 2000-08-04 | 2004-09-07 | First Data Corporation | Managing account database in ABDS system |
| US7552333B2 (en) | 2000-08-04 | 2009-06-23 | First Data Corporation | Trusted authentication digital signature (tads) system |
| WO2002013040A1 (en) * | 2000-08-09 | 2002-02-14 | Keith Richard Holbrook | Information transmission and collection apparatus and method |
| WO2002015081A1 (en) * | 2000-08-14 | 2002-02-21 | Yahoo! Inc. | Offline-online incentive points system and method |
| GB0020371D0 (en) * | 2000-08-18 | 2000-10-04 | Hewlett Packard Co | Apparatus and method for establishing trust |
| US8307098B1 (en) * | 2000-08-29 | 2012-11-06 | Lenovo (Singapore) Pte. Ltd. | System, method, and program for managing a user key used to sign a message for a data processing system |
| US7225231B2 (en) * | 2000-09-20 | 2007-05-29 | Visto Corporation | System and method for transmitting workspace elements across a network |
| ES2465967T3 (es) | 2000-09-21 | 2014-06-09 | Blackberry Limited | Sistema y método de firma mediante código por software |
| US7107326B1 (en) | 2000-10-13 | 2006-09-12 | 3Com Corporation | Method and system for integrating IP address reservations with policy provisioning |
| US20020048372A1 (en) * | 2000-10-19 | 2002-04-25 | Eng-Whatt Toh | Universal signature object for digital data |
| US20030021417A1 (en) * | 2000-10-20 | 2003-01-30 | Ognjen Vasic | Hidden link dynamic key manager for use in computer systems with database structure for storage of encrypted data and method for storage and retrieval of encrypted data |
| US6789193B1 (en) * | 2000-10-27 | 2004-09-07 | Pitney Bowes Inc. | Method and system for authenticating a network user |
| JP2002202719A (ja) * | 2000-11-06 | 2002-07-19 | Sony Corp | 暗号化装置及び方法、復号装置及び方法、並びに記憶媒体 |
| JP2004514977A (ja) * | 2000-11-20 | 2004-05-20 | シャンテ コーポレーション | システム、方法、およびマルチユーザ電子メールシステム用のコンピュータプログラム製品 |
| US7068597B1 (en) | 2000-11-27 | 2006-06-27 | 3Com Corporation | System and method for automatic load balancing in a data-over-cable network |
| US6948184B1 (en) | 2000-11-30 | 2005-09-20 | 3Com Corporation | System and method for calibrating power level during initial ranging of a network client device |
| US6940874B2 (en) * | 2000-11-30 | 2005-09-06 | 3Com Corporation | Method for reducing interference from initializing network devices in a data-over-cable system |
| US20020067833A1 (en) * | 2000-12-05 | 2002-06-06 | Han Ching-Chih (Jason) | Method and apparatus for providing conditional access to the source code of a program |
| US20080214300A1 (en) * | 2000-12-07 | 2008-09-04 | Igt | Methods for electronic data security and program authentication |
| KR100377019B1 (ko) * | 2000-12-09 | 2003-03-26 | 이임영 | 블라인드 기술을 이용한 신원위탁방법 |
| US7149310B2 (en) * | 2000-12-19 | 2006-12-12 | Tricipher, Inc. | Method and system for authorizing generation of asymmetric crypto-keys |
| US6934840B2 (en) * | 2000-12-21 | 2005-08-23 | International Business Machines Corporation | Composite keystore facility apparatus and method therefor |
| US20020080888A1 (en) * | 2000-12-22 | 2002-06-27 | Li Shu | Message splitting and spatially diversified message routing for increasing transmission assurance and data security over distributed networks |
| US6988196B2 (en) * | 2000-12-22 | 2006-01-17 | Lenovo (Singapore) Pte Ltd | Computer system and method for generating a digital certificate |
| US6948065B2 (en) | 2000-12-27 | 2005-09-20 | Intel Corporation | Platform and method for securely transmitting an authorization secret |
| JP4284867B2 (ja) * | 2001-01-18 | 2009-06-24 | 株式会社日立製作所 | 標準モデル上で適応的選択暗号文攻撃に対して安全な公開鍵暗号方法 |
| US6952428B1 (en) | 2001-01-26 | 2005-10-04 | 3Com Corporation | System and method for a specialized dynamic host configuration protocol proxy in a data-over-cable network |
| US6996842B2 (en) * | 2001-01-30 | 2006-02-07 | Intel Corporation | Processing internet protocol security traffic |
| AU742639B3 (en) * | 2001-02-15 | 2002-01-10 | Ewise Systems Pty Limited | Secure network access |
| US6895104B2 (en) | 2001-02-16 | 2005-05-17 | Sac Technologies, Inc. | Image identification system |
| US7073055B1 (en) | 2001-02-22 | 2006-07-04 | 3Com Corporation | System and method for providing distributed and dynamic network services for remote access server users |
| US7222255B1 (en) | 2001-02-28 | 2007-05-22 | 3Com Corporation | System and method for network performance testing |
| US20020129261A1 (en) * | 2001-03-08 | 2002-09-12 | Cromer Daryl Carvis | Apparatus and method for encrypting and decrypting data recorded on portable cryptographic tokens |
| US7711122B2 (en) * | 2001-03-09 | 2010-05-04 | Arcot Systems, Inc. | Method and apparatus for cryptographic key storage wherein key servers are authenticated by possession and secure distribution of stored keys |
| US7181017B1 (en) | 2001-03-23 | 2007-02-20 | David Felsher | System and method for secure three-party communications |
| CN1330122C (zh) * | 2001-03-29 | 2007-08-01 | 索尼公司 | 信息处理装置和信息处理方法 |
| GB2374497B (en) * | 2001-04-03 | 2003-03-12 | Ericsson Telefon Ab L M | Facilitating legal interception of IP connections |
| US7603703B2 (en) * | 2001-04-12 | 2009-10-13 | International Business Machines Corporation | Method and system for controlled distribution of application code and content data within a computer network |
| CA2446304C (en) * | 2001-05-01 | 2012-03-20 | Vasco Data Security, Inc. | Use and generation of a session key in a secure socket layer connection |
| ATE329426T1 (de) * | 2001-05-23 | 2006-06-15 | Daniel Buettiker | Verfahren und datenträger zur eintragung von benutzern einer public-key-infrastruktur und eintragungssystem |
| US20020191020A1 (en) * | 2001-06-18 | 2002-12-19 | International Business Machines Corporation | Method and apparatus for removing confindential information from a history |
| US20020191032A1 (en) * | 2001-06-18 | 2002-12-19 | International Business Machines Corporation | Method and apparatus for viewing and managing information in a history |
| US7103606B2 (en) * | 2001-06-18 | 2006-09-05 | International Business Machines Corporation | Method and apparatus for removing information from a server |
| US6834795B1 (en) * | 2001-06-29 | 2004-12-28 | Sun Microsystems, Inc. | Secure user authentication to computing resource via smart card |
| FI112904B (fi) * | 2001-06-29 | 2004-01-30 | Nokia Corp | Menetelmä suojata elektroninen laite ja elektroninen laite |
| US7257844B2 (en) | 2001-07-31 | 2007-08-14 | Marvell International Ltd. | System and method for enhanced piracy protection in a wireless personal communication device |
| EP1414183B1 (en) | 2001-08-01 | 2012-11-14 | Panasonic Corporation | Encrypted data delivery system |
| US20040128508A1 (en) * | 2001-08-06 | 2004-07-01 | Wheeler Lynn Henry | Method and apparatus for access authentication entity |
| US7088678B1 (en) | 2001-08-27 | 2006-08-08 | 3Com Corporation | System and method for traffic shaping based on generalized congestion and flow control |
| US7779267B2 (en) * | 2001-09-04 | 2010-08-17 | Hewlett-Packard Development Company, L.P. | Method and apparatus for using a secret in a distributed computing system |
| US7313828B2 (en) * | 2001-09-04 | 2007-12-25 | Nokia Corporation | Method and apparatus for protecting software against unauthorized use |
| FR2829644A1 (fr) * | 2001-09-10 | 2003-03-14 | St Microelectronics Sa | Procede securise de transmission de donnees multimedia |
| US20030051160A1 (en) * | 2001-09-11 | 2003-03-13 | Selkirk Stephen S. | Anti-piracy firmware update |
| JP4969745B2 (ja) * | 2001-09-17 | 2012-07-04 | 株式会社東芝 | 公開鍵基盤システム |
| KR20030028618A (ko) * | 2001-09-20 | 2003-04-10 | (주) 엘지텔레콤 | 네트워크를 이용한 인증서 발급 서비스 방법 |
| KR20040039443A (ko) | 2001-09-27 | 2004-05-10 | 마쯔시다덴기산교 가부시키가이샤 | 암호화 장치, 복호화 장치, 비밀 키 생성 장치, 저작권보호 시스템, 및 암호 통신 장치 |
| GB0123453D0 (en) * | 2001-09-28 | 2001-11-21 | Ncipher Corp Ltd | Time stamping device |
| US7207060B2 (en) | 2001-10-18 | 2007-04-17 | Nokia Corporation | Method, system and computer program product for secure ticketing in a communications device |
| US7178041B2 (en) | 2001-10-18 | 2007-02-13 | Nokia Corporation | Method, system and computer program product for a trusted counter in an external security element for securing a personal communication device |
| US20030076957A1 (en) * | 2001-10-18 | 2003-04-24 | Nadarajah Asokan | Method, system and computer program product for integrity-protected storage in a personal communication device |
| JP4055393B2 (ja) * | 2001-10-30 | 2008-03-05 | ソニー株式会社 | データ処理装置およびその方法とプログラム |
| US7085306B1 (en) | 2001-10-30 | 2006-08-01 | 3Com Corporation | System and method for a multi-frequency upstream channel in a computer network |
| US6973191B2 (en) * | 2001-11-02 | 2005-12-06 | Activcard | System and method for generating symmetric keys within a personal security device having minimal trust relationships |
| US6785381B2 (en) * | 2001-11-27 | 2004-08-31 | Siemens Information And Communication Networks, Inc. | Telephone having improved hands free operation audio quality and method of operation thereof |
| US7334125B1 (en) | 2001-11-27 | 2008-02-19 | Cisco Technology, Inc. | Facilitating secure communications among multicast nodes in a telecommunications network |
| US7007040B1 (en) | 2001-12-04 | 2006-02-28 | General Dynamics C4 Systems, Inc. | Method and apparatus for storing and updating information in a multi-cast system |
| WO2003049357A2 (en) * | 2001-12-07 | 2003-06-12 | Telefonaktiebolaget Lm Ericsson (Publ) | Lawful interception of end-to-end encrypted data traffic |
| US7171493B2 (en) * | 2001-12-19 | 2007-01-30 | The Charles Stark Draper Laboratory | Camouflage of network traffic to resist attack |
| US7225161B2 (en) * | 2001-12-21 | 2007-05-29 | Schlumberger Omnes, Inc. | Method and system for initializing a key management system |
| US7072337B1 (en) | 2002-01-25 | 2006-07-04 | 3Com Corporation | System and method for resolving network addresses for network devices on distributed network subnets |
| US20030145025A1 (en) * | 2002-01-31 | 2003-07-31 | Allred Rustin W. | Method of designing families of boost and cut filters, including treble and bass controls and graphic equalizers |
| US7818792B2 (en) * | 2002-02-04 | 2010-10-19 | General Instrument Corporation | Method and system for providing third party authentication of authorization |
| US7146009B2 (en) * | 2002-02-05 | 2006-12-05 | Surety, Llc | Secure electronic messaging system requiring key retrieval for deriving decryption keys |
| US7415440B1 (en) * | 2002-02-22 | 2008-08-19 | Entriq, Inc. | Method and system to provide secure key selection using a secure device in a watercrypting environment |
| US7251635B2 (en) * | 2002-02-25 | 2007-07-31 | Schlumberger Omnes, Inc. | Method and apparatus for managing a key management system |
| US7228417B2 (en) | 2002-02-26 | 2007-06-05 | America Online, Inc. | Simple secure login with multiple-authentication providers |
| US7308579B2 (en) * | 2002-03-15 | 2007-12-11 | Noel Abela | Method and system for internationally providing trusted universal identification over a global communications network |
| US7627753B2 (en) * | 2002-03-19 | 2009-12-01 | Microsoft Corporation | Secure digital data format and code enforced policy |
| GB2387301B (en) * | 2002-04-02 | 2005-02-09 | Clive Neil Galley | Private-key cryptosystem and other applications |
| US20030196096A1 (en) * | 2002-04-12 | 2003-10-16 | Sutton James A. | Microcode patch authentication |
| US7822495B2 (en) * | 2002-04-15 | 2010-10-26 | Fisher-Rosemount Systems, Inc. | Custom function blocks for use with process control systems |
| US7475248B2 (en) | 2002-04-29 | 2009-01-06 | International Business Machines Corporation | Enhanced message security |
| US7007159B2 (en) * | 2002-05-10 | 2006-02-28 | Intel Corporation | System and method for loading and integrating a firmware extension onto executable base system firmware during initialization |
| US20030212889A1 (en) * | 2002-05-13 | 2003-11-13 | Khieu Andrew K. | Method and system for exchanging data over networks using public key encryption |
| AU2003247364A1 (en) * | 2002-05-15 | 2003-12-02 | Bio-Key International, Inc. | Match template protection within biometric security systems |
| US7340770B2 (en) * | 2002-05-15 | 2008-03-04 | Check Point Software Technologies, Inc. | System and methodology for providing community-based security policies |
| US7096254B2 (en) * | 2002-05-30 | 2006-08-22 | International Business Machines Corporation | Electronic mail distribution network implementation for safeguarding sender's address book covering addressee aliases with minimum interference with normal electronic mail transmission |
| US7167843B2 (en) | 2002-06-05 | 2007-01-23 | Sun Microsystems, Inc. | Apparatus for private personal identification number management |
| US7596531B2 (en) * | 2002-06-05 | 2009-09-29 | Sun Microsystems, Inc. | Method and apparatus for protecting against side channel attacks against personal identification numbers |
| US7162456B2 (en) * | 2002-06-05 | 2007-01-09 | Sun Microsystems, Inc. | Method for private personal identification number management |
| US20030233562A1 (en) * | 2002-06-12 | 2003-12-18 | Sachin Chheda | Data-protection circuit and method |
| KR100466827B1 (ko) * | 2002-06-14 | 2005-01-17 | 이임영 | 키 복구를 지원하는 신원 위탁 방법 |
| US7352867B2 (en) * | 2002-07-10 | 2008-04-01 | General Instrument Corporation | Method of preventing unauthorized distribution and use of electronic keys using a key seed |
| CA2493989A1 (en) * | 2002-07-25 | 2004-02-05 | Bio-Key International, Inc. | Trusted biometric device |
| US8083585B2 (en) | 2002-09-10 | 2011-12-27 | Igt | Apparatus and method for copying gaming machine configuration settings |
| US7900051B2 (en) * | 2002-09-10 | 2011-03-01 | Stmicroelectronics S.A. | Secure multimedia data transmission method |
| US7983414B2 (en) * | 2002-09-11 | 2011-07-19 | Giesecke & Devrient Gmbh | Protected cryptographic calculation |
| US20040054901A1 (en) * | 2002-09-17 | 2004-03-18 | Microsoft Corporation | Creating and verifying a sequence of consecutive data |
| US7548621B1 (en) | 2002-09-26 | 2009-06-16 | Ncr Corporation | System and method for securing a base derivation key for use in injection of derived unique key per transaction devices |
| US7426382B2 (en) * | 2002-10-09 | 2008-09-16 | Motorola, Inc. | Contact validation and trusted contact updating in mobile wireless communications devices |
| US7574607B1 (en) * | 2002-10-29 | 2009-08-11 | Zix Corporation | Secure pipeline processing |
| KR100502066B1 (ko) * | 2002-10-31 | 2005-07-25 | 한국전자통신연구원 | 비밀키 관리 시스템 및 방법 |
| US7207067B2 (en) * | 2002-11-12 | 2007-04-17 | Aol Llc | Enforcing data protection legislation in Web data services |
| US7131003B2 (en) | 2003-02-20 | 2006-10-31 | America Online, Inc. | Secure instant messaging system |
| FR2849248B1 (fr) * | 2002-12-20 | 2005-06-24 | Oberthur Card Syst Sa | Entite electronique securisee permettant une certification du temps |
| EP1582024B1 (en) * | 2003-01-07 | 2009-09-30 | QUALCOMM Incorporated | System, apparatus and method for replacing a cryptographic key |
| US7640427B2 (en) * | 2003-01-07 | 2009-12-29 | Pgp Corporation | System and method for secure electronic communication in a partially keyless environment |
| US7562229B2 (en) * | 2003-01-23 | 2009-07-14 | Hewlett-Packard Development Company, L.P. | Codeword-based auditing of computer systems and methods therefor |
| US9818136B1 (en) | 2003-02-05 | 2017-11-14 | Steven M. Hoffberg | System and method for determining contingent relevance |
| US20100017627A1 (en) | 2003-02-07 | 2010-01-21 | Broadon Communications Corp. | Ensuring authenticity in a closed content distribution system |
| US7779482B1 (en) * | 2003-02-07 | 2010-08-17 | iGware Inc | Delivery of license information using a short messaging system protocol in a closed content distribution system |
| US8131649B2 (en) | 2003-02-07 | 2012-03-06 | Igware, Inc. | Static-or-dynamic and limited-or-unlimited content rights |
| CA2516580C (en) * | 2003-02-21 | 2011-01-25 | Research In Motion Limited | System and method of multiple-level control of electronic devices |
| US7370212B2 (en) | 2003-02-25 | 2008-05-06 | Microsoft Corporation | Issuing a publisher use license off-line in a digital rights management (DRM) system |
| US7168091B2 (en) * | 2003-03-14 | 2007-01-23 | Citibank, N.A. | Method and system of transaction security |
| US7490348B1 (en) | 2003-03-17 | 2009-02-10 | Harris Technology, Llc | Wireless network having multiple communication allowances |
| US20040190721A1 (en) * | 2003-03-24 | 2004-09-30 | Microsoft Corporation | Renewable conditional access system |
| US7536638B2 (en) | 2003-03-31 | 2009-05-19 | Ricoh Co., Ltd. | Action stickers for identifying and processing stored documents |
| US7739583B2 (en) | 2003-03-31 | 2010-06-15 | Ricoh Company, Ltd. | Multimedia document sharing method and apparatus |
| US7703002B2 (en) | 2003-03-31 | 2010-04-20 | Ricoh Company, Ltd. | Method and apparatus for composing multimedia documents |
| US7757162B2 (en) | 2003-03-31 | 2010-07-13 | Ricoh Co. Ltd. | Document collection manipulation |
| US7509569B2 (en) * | 2003-03-31 | 2009-03-24 | Ricoh Co., Ltd. | Action stickers for nested collections |
| US20040199768A1 (en) * | 2003-04-04 | 2004-10-07 | Nail Robert A. | System and method for enabling enterprise application security |
| US7836493B2 (en) | 2003-04-24 | 2010-11-16 | Attachmate Corporation | Proxy server security token authorization |
| US6834347B2 (en) | 2003-04-29 | 2004-12-21 | International Business Machines Corporation | Target self-security for upgrades for an embedded device |
| EP1627488A4 (en) | 2003-05-13 | 2008-06-04 | Corestreet Ltd | EFFICIENT AND SECURE DATA ACTUALITY SYSTEMS |
| WO2005001653A2 (en) * | 2003-06-24 | 2005-01-06 | Corestreet, Ltd. | Access control |
| US8214884B2 (en) * | 2003-06-27 | 2012-07-03 | Attachmate Corporation | Computer-based dynamic secure non-cached delivery of security credentials such as digitally signed certificates or keys |
| KR101000918B1 (ko) * | 2003-09-01 | 2010-12-13 | 삼성전자주식회사 | 공개 키/개인 키 쌍을 재사용하는 장치 및 방법 |
| US7290278B2 (en) | 2003-10-02 | 2007-10-30 | Aol Llc, A Delaware Limited Liability Company | Identity based service system |
| US7558954B2 (en) * | 2003-10-31 | 2009-07-07 | Hewlett-Packard Development Company, L.P. | Method and apparatus for ensuring the integrity of data |
| US8707030B2 (en) | 2003-11-19 | 2014-04-22 | Corestreet, Ltd. | Distributed delegated path discovery and validation |
| US7698557B2 (en) * | 2003-12-22 | 2010-04-13 | Guardtime As | System and method for generating a digital certificate |
| US7523315B2 (en) * | 2003-12-22 | 2009-04-21 | Ingeo Systems, Llc | Method and process for creating an electronically signed document |
| US8139770B2 (en) * | 2003-12-23 | 2012-03-20 | Wells Fargo Bank, N.A. | Cryptographic key backup and escrow system |
| CN1910882B (zh) * | 2003-12-30 | 2010-12-08 | 意大利电信股份公司 | 保护数据的方法和系统、相关通信网络以及计算机程序产品 |
| JP2005196412A (ja) * | 2004-01-06 | 2005-07-21 | Sony Corp | データ通信装置及びデータ通信装置のメモリ管理方法 |
| WO2005070116A2 (en) * | 2004-01-09 | 2005-08-04 | Corestreet, Ltd. | Communication-efficient real time credentials for ocsp and distributed ocsp |
| JP4434969B2 (ja) | 2004-01-21 | 2010-03-17 | 株式会社東芝 | コンテンツ提供側システム、ユーザ側システム、追跡システム、装置、方法及びプログラム |
| US20050172229A1 (en) * | 2004-01-29 | 2005-08-04 | Arcot Systems, Inc. | Browser user-interface security application |
| JP4556103B2 (ja) * | 2004-02-24 | 2010-10-06 | ソニー株式会社 | 暗号化装置及び暗号化方法 |
| KR101254209B1 (ko) * | 2004-03-22 | 2013-04-23 | 삼성전자주식회사 | 디바이스와 휴대용 저장장치간에 권리 객체를 이동,복사하는 방법 및 장치 |
| NZ549544A (en) * | 2004-03-22 | 2008-03-28 | Samsung Electronics Co Ltd | Method and apparatus for digital rights management using certificate revocation list |
| CN100512098C (zh) * | 2004-03-26 | 2009-07-08 | 上海山丽信息安全有限公司 | 具有指纹限制的机密文件访问授权系统 |
| US20060242406A1 (en) | 2005-04-22 | 2006-10-26 | Microsoft Corporation | Protected computing environment |
| DE602004012233T2 (de) * | 2004-05-19 | 2008-06-26 | Alcatel Lucent | Verfahren zur Bereitstellung eines Signierungsschlüssels zur digitalen Signierung, Überprüfung oder Verschlüsselung von Daten |
| US7644409B2 (en) * | 2004-06-04 | 2010-01-05 | Sun Microsystems, Inc. | Techniques for accessing a shared resource using an improved synchronization mechanism |
| US7594234B1 (en) * | 2004-06-04 | 2009-09-22 | Sun Microsystems, Inc. | Adaptive spin-then-block mutual exclusion in multi-threaded processing |
| US8261336B2 (en) * | 2004-06-15 | 2012-09-04 | Emc Corporation | System and method for making accessible a set of services to users |
| US7421589B2 (en) * | 2004-07-21 | 2008-09-02 | Beachhead Solutions, Inc. | System and method for lost data destruction of electronic data stored on a portable electronic device using a security interval |
| CN100409138C (zh) * | 2004-07-21 | 2008-08-06 | 京瓷美达株式会社 | 密码验证装置及验证方法 |
| US7475397B1 (en) | 2004-07-28 | 2009-01-06 | Sun Microsystems, Inc. | Methods and apparatus for providing a remote serialization guarantee |
| WO2006018874A1 (ja) * | 2004-08-19 | 2006-02-23 | Mitsubishi Denki Kabushiki Kaisha | 管理サービス装置、バックアップサービス装置、通信端末装置及び記憶媒体 |
| US8284942B2 (en) * | 2004-08-24 | 2012-10-09 | Microsoft Corporation | Persisting private/public key pairs in password-encrypted files for transportation to local cryptographic store |
| JPWO2006022006A1 (ja) | 2004-08-26 | 2008-05-08 | 富士通株式会社 | コンテンツ管理プログラム、方法及び装置 |
| JP2006139747A (ja) * | 2004-08-30 | 2006-06-01 | Kddi Corp | 通信システムおよび安全性保証装置 |
| US7433847B2 (en) * | 2004-09-22 | 2008-10-07 | Pitney Bowes Inc. | System and method for manufacturing and securing transport of postage printing devices |
| US20060075254A1 (en) * | 2004-09-27 | 2006-04-06 | Cisco Technology, Inc. (A California Corporation) | Smart card functionality from a security co-processor and symmetric key in ROM |
| US7636852B1 (en) * | 2004-10-07 | 2009-12-22 | Sprint Communications Company L.P. | Call center dashboard |
| US9558341B1 (en) | 2004-10-07 | 2017-01-31 | Sprint Communications Company L.P. | Integrated user profile administration tool |
| JP4725070B2 (ja) * | 2004-10-13 | 2011-07-13 | パナソニック株式会社 | 正規コンテンツ確認方法、コンテンツ送受信システム、送信機、および受信機 |
| US8347078B2 (en) | 2004-10-18 | 2013-01-01 | Microsoft Corporation | Device certificate individualization |
| WO2006046484A1 (ja) * | 2004-10-25 | 2006-05-04 | Matsushita Electric Industrial Co., Ltd. | 認証方法 |
| US8266438B2 (en) | 2004-10-25 | 2012-09-11 | Security First Corp. | Secure data parser method and system |
| US7205882B2 (en) * | 2004-11-10 | 2007-04-17 | Corestreet, Ltd. | Actuating a security system using a wireless device |
| WO2006051404A2 (en) * | 2004-11-11 | 2006-05-18 | Certicom Corp. | Secure interface for versatile key derivation function support |
| US8176564B2 (en) | 2004-11-15 | 2012-05-08 | Microsoft Corporation | Special PC mode entered upon detection of undesired state |
| US8464348B2 (en) * | 2004-11-15 | 2013-06-11 | Microsoft Corporation | Isolated computing environment anchored into CPU and motherboard |
| US8336085B2 (en) | 2004-11-15 | 2012-12-18 | Microsoft Corporation | Tuning product policy using observed evidence of customer behavior |
| US7457960B2 (en) * | 2004-11-30 | 2008-11-25 | Analog Devices, Inc. | Programmable processor supporting secure mode |
| US20060129821A1 (en) * | 2004-12-13 | 2006-06-15 | Microsoft Corporation | Believably trustworthy enforcement of privacy enhancing technologies in data processing |
| US20080288786A1 (en) * | 2004-12-20 | 2008-11-20 | Michael Stephen Fiske | System with access keys |
| GB0428049D0 (en) * | 2004-12-22 | 2005-01-26 | Carnall Murat | Improvements to call management in a telecommunications system |
| GB2436487B (en) | 2004-12-30 | 2010-01-27 | Topaz Systems Inc | Electronic signature security system |
| US7936869B2 (en) * | 2005-01-07 | 2011-05-03 | First Data Corporation | Verifying digital signature based on shared knowledge |
| US7693277B2 (en) * | 2005-01-07 | 2010-04-06 | First Data Corporation | Generating digital signatures using ephemeral cryptographic key |
| US7490239B2 (en) * | 2005-01-07 | 2009-02-10 | First Data Corporation | Facilitating digital signature based on ephemeral private key |
| US7869593B2 (en) | 2005-01-07 | 2011-01-11 | First Data Corporation | Software for providing based on shared knowledge public keys having same private key |
| US20060156013A1 (en) * | 2005-01-07 | 2006-07-13 | Beeson Curtis L | Digital signature software using ephemeral private key and system |
| US7593527B2 (en) * | 2005-01-07 | 2009-09-22 | First Data Corporation | Providing digital signature and public key based on shared knowledge |
| US20060153370A1 (en) * | 2005-01-07 | 2006-07-13 | Beeson Curtis L | Generating public-private key pair based on user input data |
| US20060153364A1 (en) * | 2005-01-07 | 2006-07-13 | Beeson Curtis L | Asymmetric key cryptosystem based on shared knowledge |
| US20060153369A1 (en) * | 2005-01-07 | 2006-07-13 | Beeson Curtis L | Providing cryptographic key based on user input data |
| US7940179B2 (en) * | 2005-01-12 | 2011-05-10 | British Telecommunications Public Limited Company | Radio frequency identification tag security systems |
| US8312263B2 (en) * | 2005-01-25 | 2012-11-13 | Cisco Technology, Inc. | System and method for installing trust anchors in an endpoint |
| US8943310B2 (en) * | 2005-01-25 | 2015-01-27 | Cisco Technology, Inc. | System and method for obtaining a digital certificate for an endpoint |
| DE102005009852B3 (de) * | 2005-03-03 | 2006-06-29 | Siemens Ag | Einrichtung zur Aufnahme und Verwaltung medizinischer Bilddaten sowie zugehöriges Verfahren |
| US8438645B2 (en) | 2005-04-27 | 2013-05-07 | Microsoft Corporation | Secure clock with grace periods |
| US8725646B2 (en) | 2005-04-15 | 2014-05-13 | Microsoft Corporation | Output protection levels |
| US9436804B2 (en) | 2005-04-22 | 2016-09-06 | Microsoft Technology Licensing, Llc | Establishing a unique session key using a hardware functionality scan |
| US9363481B2 (en) | 2005-04-22 | 2016-06-07 | Microsoft Technology Licensing, Llc | Protected media pipeline |
| US8175277B2 (en) * | 2005-04-28 | 2012-05-08 | Cisco Technology, Inc. | Intercepting a communication session in a telecommunication network |
| US20060265758A1 (en) | 2005-05-20 | 2006-11-23 | Microsoft Corporation | Extensible media rights |
| JP4121134B2 (ja) * | 2005-05-31 | 2008-07-23 | インターナショナル・ビジネス・マシーンズ・コーポレーション | プログラム、分類方法およびシステム |
| US8353046B2 (en) | 2005-06-08 | 2013-01-08 | Microsoft Corporation | System and method for delivery of a modular operating system |
| US8028329B2 (en) * | 2005-06-13 | 2011-09-27 | Iamsecureonline, Inc. | Proxy authentication network |
| US8295492B2 (en) * | 2005-06-27 | 2012-10-23 | Wells Fargo Bank, N.A. | Automated key management system |
| US7836306B2 (en) * | 2005-06-29 | 2010-11-16 | Microsoft Corporation | Establishing secure mutual trust using an insecure password |
| US7596225B2 (en) * | 2005-06-30 | 2009-09-29 | Alcatl-Lucent Usa Inc. | Method for refreshing a pairwise master key |
| US8682979B2 (en) * | 2005-07-01 | 2014-03-25 | Email2 Scp Solutions Inc. | Secure electronic mail system |
| US10021062B2 (en) * | 2005-07-01 | 2018-07-10 | Cirius Messaging Inc. | Secure electronic mail system |
| US8438115B2 (en) * | 2005-09-23 | 2013-05-07 | Pitney Bowes Inc. | Method of securing postage data records in a postage printing device |
| US8340289B2 (en) | 2005-09-29 | 2012-12-25 | Research In Motion Limited | System and method for providing an indication of randomness quality of random number data generated by a random data service |
| US7885412B2 (en) * | 2005-09-29 | 2011-02-08 | International Business Machines Corporation | Pre-generation of generic session keys for use in communicating within communications environments |
| US8874477B2 (en) | 2005-10-04 | 2014-10-28 | Steven Mark Hoffberg | Multifactorial optimization system and method |
| US9118754B2 (en) * | 2005-10-18 | 2015-08-25 | Robert H. Nagel | System and method for providing a public/private telephone number system |
| US8260908B2 (en) * | 2005-11-16 | 2012-09-04 | Cisco Technologies, Inc. | Techniques for sequencing system log messages |
| CN103384196A (zh) | 2005-11-18 | 2013-11-06 | 安全第一公司 | 安全数据解析方法和系统 |
| US20070255951A1 (en) * | 2005-11-21 | 2007-11-01 | Amiram Grynberg | Token Based Multi-protocol Authentication System and Methods |
| KR100652017B1 (ko) * | 2005-12-08 | 2006-12-01 | 한국전자통신연구원 | 물리보안공격에 대한 닥시스 케이블 모뎀의 보안 방법 |
| US8989390B2 (en) * | 2005-12-12 | 2015-03-24 | Qualcomm Incorporated | Certify and split system and method for replacing cryptographic keys |
| US8230487B2 (en) | 2005-12-21 | 2012-07-24 | International Business Machines Corporation | Method and system for controlling access to a secondary system |
| JP2007172294A (ja) * | 2005-12-22 | 2007-07-05 | Hitachi Ltd | 利用者の認証機能を備えた情報処理装置 |
| US7499552B2 (en) * | 2006-01-11 | 2009-03-03 | International Business Machines Corporation | Cipher method and system for verifying a decryption of an encrypted user data key |
| US20070179903A1 (en) * | 2006-01-30 | 2007-08-02 | Microsoft Corporation | Identity theft mitigation |
| JP2009525631A (ja) * | 2006-01-30 | 2009-07-09 | コーニンクレッカ フィリップス エレクトロニクス エヌ ヴィ | データ信号内の電子透かしの検索 |
| US20070223685A1 (en) * | 2006-02-06 | 2007-09-27 | David Boubion | Secure system and method of providing same |
| DE102006012311A1 (de) * | 2006-03-17 | 2007-09-20 | Deutsche Telekom Ag | Verfahren und Vorrichtung zur Pseudonymisierung von digitalen Daten |
| US9860055B2 (en) * | 2006-03-22 | 2018-01-02 | Synopsys, Inc. | Flexible architecture for processing of large numbers and method therefor |
| US20070255823A1 (en) * | 2006-05-01 | 2007-11-01 | International Business Machines Corporation | Method for low-overhead message tracking in a distributed messaging system |
| US10664575B2 (en) | 2006-05-02 | 2020-05-26 | Acer Cloud Technology, Inc. | Virtual vault of licensed content |
| US7703673B2 (en) | 2006-05-25 | 2010-04-27 | Buchheit Brian K | Web based conversion of non-negotiable credits associated with an entity to entity independent negotiable funds |
| US8668146B1 (en) | 2006-05-25 | 2014-03-11 | Sean I. Mcghie | Rewards program with payment artifact permitting conversion/transfer of non-negotiable credits to entity independent funds |
| US9704174B1 (en) | 2006-05-25 | 2017-07-11 | Sean I. Mcghie | Conversion of loyalty program points to commerce partner points per terms of a mutual agreement |
| US8684265B1 (en) | 2006-05-25 | 2014-04-01 | Sean I. Mcghie | Rewards program website permitting conversion/transfer of non-negotiable credits to entity independent funds |
| US10062062B1 (en) | 2006-05-25 | 2018-08-28 | Jbshbm, Llc | Automated teller machine (ATM) providing money for loyalty points |
| WO2007139560A1 (en) * | 2006-06-01 | 2007-12-06 | Google, Inc. | Modular computing environments |
| CA2653778C (en) * | 2006-06-01 | 2013-03-26 | Exaflop Llc | Data center uninterruptible power distribution architecture |
| CA2653808C (en) * | 2006-06-01 | 2014-10-14 | Exaflop Llc | Controlled warm air capture |
| US8006298B1 (en) | 2006-07-11 | 2011-08-23 | Sprint Communications Company L.P. | Fraud detection system and method |
| US20080271001A1 (en) * | 2006-09-11 | 2008-10-30 | Yo Nonomura | Method of generating program, information processing device and microcomputer |
| EP2084591B1 (en) * | 2006-10-10 | 2019-09-11 | Google LLC | Updating a power supply microcontroller |
| US7870379B2 (en) * | 2006-10-10 | 2011-01-11 | Exaflop Llc | Updating a power supply microcontroller |
| US7624276B2 (en) | 2006-10-16 | 2009-11-24 | Broadon Communications Corp. | Secure device authentication system and method |
| US8200960B2 (en) * | 2006-10-20 | 2012-06-12 | Oracle America, Inc. | Tracking of resource utilization during cryptographic transformations |
| JP4304300B2 (ja) * | 2006-11-01 | 2009-07-29 | 日本電気株式会社 | ユーザ装置、サーバ、アップグレードサービスシステム、その方法およびプログラム |
| EP2078274B1 (en) * | 2006-11-02 | 2015-09-09 | NDS Limited | Privacy-aware content protection system |
| CA2668676C (en) | 2006-11-07 | 2016-01-05 | Security First Corp. | Systems and methods for distributing and securing data |
| US9141819B2 (en) * | 2006-11-08 | 2015-09-22 | International Business Machines Corporation | Encrypted tape access control via challenge-response protocol |
| US7578346B2 (en) * | 2006-11-08 | 2009-08-25 | Schlumberger Technology Corporation | Method of plugging fractured formation |
| US7613915B2 (en) | 2006-11-09 | 2009-11-03 | BroadOn Communications Corp | Method for programming on-chip non-volatile memory in a secure processor, and a device so programmed |
| US8116456B2 (en) * | 2006-11-28 | 2012-02-14 | Oracle International Corporation | Techniques for managing heterogeneous key stores |
| GB2446199A (en) * | 2006-12-01 | 2008-08-06 | David Irvine | Secure, decentralised and anonymous peer-to-peer network |
| EP2482218A3 (en) | 2006-12-05 | 2012-10-31 | Security First Corporation | Improved storage backup method using a secure data parser |
| US8135135B2 (en) * | 2006-12-08 | 2012-03-13 | Microsoft Corporation | Secure data protection during disasters |
| US8015039B2 (en) * | 2006-12-14 | 2011-09-06 | Sap Ag | Enterprise verification and certification framework |
| US9355273B2 (en) * | 2006-12-18 | 2016-05-31 | Bank Of America, N.A., As Collateral Agent | System and method for the protection and de-identification of health care data |
| FR2912841B1 (fr) * | 2007-02-15 | 2009-05-22 | Soitec Silicon On Insulator | Procede de polissage d'heterostructures |
| EP2140605A1 (en) * | 2007-03-20 | 2010-01-06 | Dmvich Software, Llc | Secure electronic messaging system requiring key retrieval for deriving decryption key |
| US10339227B1 (en) | 2007-06-08 | 2019-07-02 | Google Llc | Data center design |
| SE532600C2 (sv) * | 2007-06-29 | 2010-03-02 | Oniteo Ab | Metod och system för säker provisionering av hårdvara |
| US8457307B2 (en) * | 2007-07-17 | 2013-06-04 | Certicom Corp. | Method and system for generating implicit certificates and applications to identity-based encryption (IBE) |
| US8080900B2 (en) * | 2007-07-18 | 2011-12-20 | Exaflop Llc | Direct-coupled IT load |
| EP2181413A2 (en) * | 2007-07-23 | 2010-05-05 | Intertrust Technologies Corporation | Tethered device systems and methods |
| EP2026266B1 (en) * | 2007-07-27 | 2011-02-16 | NTT DoCoMo, Inc. | Method and apparatus for performing delegated transactions |
| JP2009064055A (ja) * | 2007-09-04 | 2009-03-26 | Hitachi Ltd | 計算機システム及びセキュリティ管理方法 |
| CN102932136B (zh) | 2007-09-14 | 2017-05-17 | 安全第一公司 | 用于管理加密密钥的系统和方法 |
| US8341410B2 (en) * | 2007-10-08 | 2012-12-25 | Microsoft Corporation | Efficient certified email protocol |
| ES2372128T3 (es) * | 2007-10-15 | 2012-01-16 | Penango, Inc. | Método y sistema para fomentar las comunicaciones seguras. |
| WO2009052524A2 (en) * | 2007-10-20 | 2009-04-23 | Penango, Inc. | Methods and systems for indicating trustworthiness of secure communications |
| JP5139028B2 (ja) * | 2007-10-24 | 2013-02-06 | エイチジーエスティーネザーランドビーブイ | コンテンツデータ管理システム及び方法 |
| US20090113328A1 (en) * | 2007-10-30 | 2009-04-30 | Penango, Inc. | Multidimensional Multistate User Interface Element |
| JP5125426B2 (ja) * | 2007-11-06 | 2013-01-23 | 沖電気工業株式会社 | 取引装置及び該取引装置における暗証番号処理方法 |
| CN101197674B (zh) * | 2007-12-10 | 2010-10-27 | 华为技术有限公司 | 加密通信方法、服务器及加密通信系统 |
| US20100027790A1 (en) * | 2007-12-20 | 2010-02-04 | Balaji Vembu | Methods for authenticating a hardware device and providing a secure channel to deliver data |
| EP2232763A4 (en) | 2007-12-21 | 2012-08-08 | Cocoon Data Holdings Ltd | SYSTEM AND METHOD FOR DATA BACKUP |
| WO2009083708A1 (en) * | 2007-12-28 | 2009-07-09 | British Telecommunications Public Limited Company | Radio frequency identification devices and reader systems |
| EP2077514A1 (en) * | 2007-12-28 | 2009-07-08 | British Telecmmunications public limited campany | Radio frequency identification devices and processes therefor |
| US9137015B2 (en) * | 2008-01-04 | 2015-09-15 | Arcsoft, Inc. | Protection scheme for AACS keys |
| CN103178965B (zh) | 2008-01-07 | 2016-08-31 | 安全第一公司 | 使用多因素或密钥式分散对数据进行保护的系统和方法 |
| CN101981890B (zh) | 2008-02-22 | 2014-10-15 | 安全第一公司 | 安全工作组管理和通信的系统和方法 |
| US20090257593A1 (en) * | 2008-04-10 | 2009-10-15 | Comverse Ltd. | Method and apparatus for secure messaging |
| JP2009278223A (ja) * | 2008-05-13 | 2009-11-26 | Panasonic Corp | 電子証明システム及び秘匿通信システム |
| US8074023B2 (en) * | 2008-05-22 | 2011-12-06 | Nuvoton Technology Corporation | In-system programming to switch memory access from one area to another in memory cards |
| US8170216B2 (en) * | 2008-06-18 | 2012-05-01 | Apple Inc. | Techniques for validating and sharing secrets |
| US8099761B2 (en) * | 2008-08-14 | 2012-01-17 | Microsoft Corporation | Protocol for device to station association |
| US8943551B2 (en) | 2008-08-14 | 2015-01-27 | Microsoft Corporation | Cloud-based device information storage |
| US8769612B2 (en) * | 2008-08-14 | 2014-07-01 | Microsoft Corporation | Portable device association |
| TWI406175B (zh) * | 2008-08-20 | 2013-08-21 | Nuvoton Technology Corp | 記憶卡以及用於記憶卡之方法 |
| US20100114607A1 (en) * | 2008-11-04 | 2010-05-06 | Sdi Health Llc | Method and system for providing reports and segmentation of physician activities |
| US20100121928A1 (en) | 2008-11-07 | 2010-05-13 | Penango, Inc. | Methods and systems for allocating and indicating trustworthiness of secure communications |
| US8370640B2 (en) | 2008-12-01 | 2013-02-05 | Research In Motion Limited | Simplified multi-factor authentication |
| US8499154B2 (en) * | 2009-01-27 | 2013-07-30 | GM Global Technology Operations LLC | System and method for establishing a secure connection with a mobile device |
| US8374930B2 (en) * | 2009-02-02 | 2013-02-12 | Trustifi Corporation | Certified email system and method |
| US9141758B2 (en) * | 2009-02-20 | 2015-09-22 | Ims Health Incorporated | System and method for encrypting provider identifiers on medical service claim transactions |
| EP2228942B1 (en) * | 2009-03-13 | 2012-06-06 | Sap Ag | Securing communications sent by a first user to a second user |
| EP2433409A2 (en) | 2009-05-19 | 2012-03-28 | Security First Corporation | Systems and methods for securing data in the cloud |
| US8178997B2 (en) | 2009-06-15 | 2012-05-15 | Google Inc. | Supplying grid ancillary services using controllable loads |
| US8341023B2 (en) * | 2009-06-17 | 2012-12-25 | Trustifi Corporation | Certified email system and method |
| US9608826B2 (en) * | 2009-06-29 | 2017-03-28 | Jpmorgan Chase Bank, N.A. | System and method for partner key management |
| US8380591B1 (en) * | 2009-07-10 | 2013-02-19 | United Services Automobile Association (Usaa) | System and method for providing warning and protection for bill payments |
| US8195819B1 (en) | 2009-07-13 | 2012-06-05 | Sprint Communications Company L.P. | Application single sign on leveraging virtual local area network identifier |
| US9565207B1 (en) | 2009-09-04 | 2017-02-07 | Amazon Technologies, Inc. | Firmware updates from an external channel |
| US10177934B1 (en) | 2009-09-04 | 2019-01-08 | Amazon Technologies, Inc. | Firmware updates inaccessible to guests |
| US8214653B1 (en) | 2009-09-04 | 2012-07-03 | Amazon Technologies, Inc. | Secured firmware updates |
| US8887144B1 (en) | 2009-09-04 | 2014-11-11 | Amazon Technologies, Inc. | Firmware updates during limited time period |
| US8102881B1 (en) | 2009-09-08 | 2012-01-24 | Amazon Technologies, Inc. | Streamlined guest networking in a virtualized environment |
| US8971538B1 (en) | 2009-09-08 | 2015-03-03 | Amazon Technologies, Inc. | Firmware validation from an external channel |
| US8601170B1 (en) | 2009-09-08 | 2013-12-03 | Amazon Technologies, Inc. | Managing firmware update attempts |
| US8640220B1 (en) | 2009-09-09 | 2014-01-28 | Amazon Technologies, Inc. | Co-operative secure packet management |
| US8300641B1 (en) | 2009-09-09 | 2012-10-30 | Amazon Technologies, Inc. | Leveraging physical network interface functionality for packet processing |
| US8959611B1 (en) | 2009-09-09 | 2015-02-17 | Amazon Technologies, Inc. | Secure packet management for bare metal access |
| US8381264B1 (en) | 2009-09-10 | 2013-02-19 | Amazon Technologies, Inc. | Managing hardware reboot and reset in shared environments |
| WO2011030352A2 (en) * | 2009-09-11 | 2011-03-17 | 3I Infotech Consumer Services Ltd. | System and method for mobile phone resident digital signing and encryption/decryption of sms |
| CN104917780A (zh) * | 2009-11-25 | 2015-09-16 | 安全第一公司 | 对移动中数据进行保护的系统和方法 |
| CN102725737B (zh) | 2009-12-04 | 2016-04-20 | 密码研究公司 | 可验证防泄漏的加密和解密 |
| US8917840B2 (en) * | 2009-12-14 | 2014-12-23 | International Business Machines Corporation | Enhanced privacy caller identification system |
| US9922063B2 (en) * | 2009-12-29 | 2018-03-20 | International Business Machines Corporation | Secure storage of secret data in a dispersed storage network |
| EP2553904A2 (en) | 2010-03-31 | 2013-02-06 | Rick L. Orsini | Systems and methods for securing data in motion |
| US8300831B2 (en) * | 2010-04-26 | 2012-10-30 | International Business Machines Corporation | Redundant key server encryption environment |
| US8443429B1 (en) | 2010-05-24 | 2013-05-14 | Sprint Communications Company L.P. | Integrated sign on |
| US8601498B2 (en) | 2010-05-28 | 2013-12-03 | Security First Corp. | Accelerator system for use with secure data storage |
| US9443071B2 (en) | 2010-06-18 | 2016-09-13 | At&T Intellectual Property I, L.P. | Proximity based device security |
| CA2882602A1 (en) | 2010-09-20 | 2012-03-29 | Rick L. Orsini | Systems and methods for secure data sharing |
| JP5669517B2 (ja) * | 2010-10-18 | 2015-02-12 | オリンパスイメージング株式会社 | 画像データ販売システムおよび画像データ販売方法ならびに撮影装置、サーバ装置 |
| US8646059B1 (en) | 2010-12-17 | 2014-02-04 | Google Inc. | Wallet application for interacting with a secure element application without a trusted server for authentication |
| US8335921B2 (en) | 2010-12-17 | 2012-12-18 | Google, Inc. | Writing application data to a secure element |
| US8352749B2 (en) | 2010-12-17 | 2013-01-08 | Google Inc. | Local trusted services manager for a contactless smart card |
| US9619662B1 (en) * | 2011-01-13 | 2017-04-11 | Google Inc. | Virtual network pairs |
| US9137014B2 (en) * | 2011-01-25 | 2015-09-15 | Adobe Systems Incorporated | Systems and methods for controlling electronic document use |
| US8611544B1 (en) | 2011-01-25 | 2013-12-17 | Adobe Systems Incorporated | Systems and methods for controlling electronic document use |
| DE102011001430A1 (de) * | 2011-03-21 | 2012-09-27 | Wincor Nixdorf International Gmbh | Verfahren zum Betreiben einer Geldkassette mit kundenspezifischen Schlüsseln |
| US20120272051A1 (en) * | 2011-04-22 | 2012-10-25 | International Business Machines Corporation | Security key distribution in a cluster |
| US8775533B2 (en) | 2011-05-20 | 2014-07-08 | Microsoft Corporation | Auto connect in peer-to-peer network |
| US9565708B2 (en) | 2011-05-20 | 2017-02-07 | Microsoft Technology Licensing, Llc | Auto-connect in a peer-to-peer network |
| US8806023B2 (en) | 2011-05-20 | 2014-08-12 | Microsoft Corporation | Auto-connect in a peer-to-peer network |
| US8891772B2 (en) * | 2011-06-17 | 2014-11-18 | Microsoft Corporation | Cloud key escrow system |
| US8627508B2 (en) | 2011-06-17 | 2014-01-07 | Microsoft Corporation | Cloud key directory for federating data exchanges |
| US10333711B2 (en) * | 2011-06-17 | 2019-06-25 | Microsoft Technology Licensing, Llc | Controlling access to protected objects |
| EP2541458B1 (en) * | 2011-06-27 | 2017-10-04 | Nxp B.V. | Resource management system and corresponding method |
| US8548172B2 (en) * | 2011-07-08 | 2013-10-01 | Sap Ag | Secure dissemination of events in a publish/subscribe network |
| US8914635B2 (en) | 2011-07-25 | 2014-12-16 | Grey Heron Technologies, Llc | Method and system for establishing secure communications using composite key cryptography |
| JP5214782B2 (ja) | 2011-08-31 | 2013-06-19 | 株式会社東芝 | メモリ装置、ストレージメディア、ホスト装置、及びシステム |
| US8171525B1 (en) | 2011-09-15 | 2012-05-01 | Google Inc. | Enabling users to select between secure service providers using a central trusted service manager |
| US8255687B1 (en) | 2011-09-15 | 2012-08-28 | Google Inc. | Enabling users to select between secure service providers using a key escrow service |
| US8313036B1 (en) | 2011-09-16 | 2012-11-20 | Google Inc. | Secure application directory |
| US8193662B1 (en) | 2011-10-17 | 2012-06-05 | Google Inc. | Power supply source blending and smoothing |
| US9754253B1 (en) | 2011-11-28 | 2017-09-05 | Amazon Technologies, Inc. | Conditioned use of certificates |
| CN103188219A (zh) * | 2011-12-28 | 2013-07-03 | 北大方正集团有限公司 | 一种数字版权管理方法、设备及系统 |
| US9009500B1 (en) | 2012-01-18 | 2015-04-14 | Google Inc. | Method of correlating power in a data center by fitting a function to a plurality of pairs of actual power draw values and estimated power draw values determined from monitored CPU utilization of a statistical sample of computers in the data center |
| US10484355B1 (en) | 2017-03-08 | 2019-11-19 | Amazon Technologies, Inc. | Detecting digital certificate expiration through request processing |
| US8385553B1 (en) * | 2012-02-28 | 2013-02-26 | Google Inc. | Portable secure element |
| US9065642B2 (en) | 2012-03-07 | 2015-06-23 | Certicom Corp. | Intercepting key sessions |
| US8627097B2 (en) | 2012-03-27 | 2014-01-07 | Igt | System and method enabling parallel processing of hash functions using authentication checkpoint hashes |
| US8843739B2 (en) * | 2012-04-04 | 2014-09-23 | Lockheed Martin Corporation | Anti-tamper device, system, method, and computer-readable medium |
| US8429409B1 (en) | 2012-04-06 | 2013-04-23 | Google Inc. | Secure reset of personal and service provider information on mobile devices |
| CN102664893B (zh) * | 2012-04-23 | 2015-06-24 | 重庆理工大学 | 自适应重传与分段嵌入签名的数据传输方法 |
| US8832443B2 (en) * | 2012-05-31 | 2014-09-09 | Daon Holdings Limited | Methods and systems for increasing the security of private keys |
| US9032250B1 (en) | 2012-11-05 | 2015-05-12 | Google Inc. | Online testing of secondary power unit |
| KR101442504B1 (ko) | 2012-12-28 | 2014-09-23 | 사단법인 금융보안연구원 | 거래인증을 이용한 경량화된 부인방지시스템 |
| US9485096B2 (en) * | 2013-02-06 | 2016-11-01 | Apurva Shrivastava | Encryption / decryption of data with non-persistent, non-shared passkey |
| WO2014127147A1 (en) | 2013-02-13 | 2014-08-21 | Security First Corp. | Systems and methods for a cryptographic file system layer |
| US20140237258A1 (en) * | 2013-02-20 | 2014-08-21 | Kabushiki Kaisha Toshiba | Device and authentication method therefor |
| US9787672B1 (en) | 2013-03-15 | 2017-10-10 | Symantec Corporation | Method and system for smartcard emulation |
| US9059987B1 (en) | 2013-04-04 | 2015-06-16 | Sprint Communications Company L.P. | Methods and systems of using single sign-on for identification for a web server not integrated with an enterprise network |
| ES2523423B1 (es) | 2013-04-10 | 2015-11-24 | Crypto Solutions, S.L. | Dispositivo de cifrado simetrico y procedimiento empleado |
| US9032106B2 (en) | 2013-05-29 | 2015-05-12 | Microsoft Technology Licensing, Llc | Synchronizing device association data among computing devices |
| US10181124B2 (en) * | 2013-05-30 | 2019-01-15 | Dell Products, L.P. | Verifying OEM components within an information handling system using original equipment manufacturer (OEM) identifier |
| JP6151140B2 (ja) * | 2013-09-13 | 2017-06-21 | 株式会社日立製作所 | 情報の暗号化・復号化方法、情報提供システムおよびプログラム |
| WO2015048389A1 (en) * | 2013-09-26 | 2015-04-02 | Krimmeni Technologies, Inc. | Systems and methods for establishing and using distributed key servers |
| US9874414B1 (en) | 2013-12-06 | 2018-01-23 | Google Llc | Thermal control system |
| GB2522032A (en) * | 2014-01-10 | 2015-07-15 | Ibm | Controlling the configuration of computer systems |
| US8978153B1 (en) | 2014-08-01 | 2015-03-10 | Datalogix, Inc. | Apparatus and method for data matching and anonymization |
| US10657262B1 (en) * | 2014-09-28 | 2020-05-19 | Red Balloon Security, Inc. | Method and apparatus for securing embedded device firmware |
| CN105578461B (zh) * | 2014-11-10 | 2019-08-02 | 阿里巴巴集团控股有限公司 | 在移动终端间建立通讯、通讯接入/呼出方法、装置及系统 |
| US9733849B2 (en) | 2014-11-21 | 2017-08-15 | Security First Corp. | Gateway for cloud-based secure storage |
| US10453058B2 (en) | 2014-12-17 | 2019-10-22 | Heartland Payment Systems, Inc. | E-signature |
| US9805344B1 (en) | 2015-01-23 | 2017-10-31 | Island Intellectual Property, Llc | Notification system and method |
| US10057067B2 (en) * | 2015-05-27 | 2018-08-21 | International Business Machines Corporation | Automatic root key rollover during digital signature verification |
| CN106549919B (zh) * | 2015-09-21 | 2021-01-22 | 创新先进技术有限公司 | 一种信息注册、认证方法及装置 |
| US10567357B2 (en) * | 2015-10-02 | 2020-02-18 | Zixcorp Systems, Inc. | Secure transmission system with upgraded encryption strength |
| WO2017083985A1 (en) | 2015-11-20 | 2017-05-26 | Genetec Inc. | Media streaming |
| WO2017160660A2 (en) * | 2016-03-15 | 2017-09-21 | Visa International Service Association | Validation cryptogram for interaction |
| US9923755B2 (en) * | 2016-08-01 | 2018-03-20 | Data I/O Corporation | Device programming with system generation |
| US10129025B2 (en) * | 2016-09-19 | 2018-11-13 | Red Hat, Inc. | Binding data to a network in the presence of an entity with revocation capabilities |
| US11373010B2 (en) * | 2017-01-04 | 2022-06-28 | Gerhard Schwartz | Asymmetrical system and network architecture |
| US10516542B2 (en) * | 2017-03-08 | 2019-12-24 | Amazon Technologies, Inc. | Digital certificate issuance and monitoring |
| US10615987B2 (en) | 2017-03-08 | 2020-04-07 | Amazon Technologies, Inc. | Digital certificate usage monitoring systems |
| US10990707B1 (en) | 2017-03-30 | 2021-04-27 | Comodo Security Solutions, Inc. | Device for safe data signing |
| US10938560B2 (en) | 2017-06-21 | 2021-03-02 | Microsoft Technology Licensing, Llc | Authorization key escrow |
| US10440006B2 (en) | 2017-06-21 | 2019-10-08 | Microsoft Technology Licensing, Llc | Device with embedded certificate authority |
| US12256024B2 (en) | 2017-06-21 | 2025-03-18 | Microsoft Technology Licensing, Llc | Device provisioning |
| US10558812B2 (en) | 2017-06-21 | 2020-02-11 | Microsoft Technology Licensing, Llc | Mutual authentication with integrity attestation |
| US10715504B2 (en) * | 2017-07-12 | 2020-07-14 | Wickr Inc. | Provisioning ephemeral key pools for sending and receiving secure communications |
| US11316666B2 (en) | 2017-07-12 | 2022-04-26 | Amazon Technologies, Inc. | Generating ephemeral key pools for sending and receiving secure communications |
| US11082412B2 (en) | 2017-07-12 | 2021-08-03 | Wickr Inc. | Sending secure communications using a local ephemeral key pool |
| CN113765657B (zh) | 2017-08-28 | 2023-10-24 | 创新先进技术有限公司 | 一种密钥数据处理方法、装置及服务器 |
| US11095662B2 (en) | 2017-08-29 | 2021-08-17 | Amazon Technologies, Inc. | Federated messaging |
| US11368442B2 (en) * | 2017-08-29 | 2022-06-21 | Amazon Technologies, Inc. | Receiving an encrypted communication from a user in a second secure communication network |
| US10791196B2 (en) | 2017-08-29 | 2020-09-29 | Wickr Inc. | Directory lookup for federated messaging with a user from a different secure communication network |
| US11349659B2 (en) * | 2017-08-29 | 2022-05-31 | Amazon Technologies, Inc. | Transmitting an encrypted communication to a user in a second secure communication network |
| US11374760B2 (en) | 2017-09-13 | 2022-06-28 | Microsoft Technology Licensing, Llc | Cyber physical key |
| US10546276B2 (en) * | 2017-09-13 | 2020-01-28 | Microsoft Technology Licensing, Llc | Cyber ownership transfer |
| US10693662B2 (en) * | 2018-02-22 | 2020-06-23 | Idlogiq Inc. | Methods for secure serialization of supply chain product units |
| WO2019178440A1 (en) * | 2018-03-16 | 2019-09-19 | Walmart Apollo, Llc | System and method for securing private keys behind a biometric authentication gateway |
| US11854007B2 (en) * | 2018-04-16 | 2023-12-26 | Visa International Service Association | Method and system for pre-authorizing a delivery transaction |
| US10867046B2 (en) * | 2018-08-08 | 2020-12-15 | Quanta Computer Inc. | Methods and apparatus for authenticating a firmware settings input file |
| CN109598489A (zh) * | 2018-11-09 | 2019-04-09 | 海南新软软件有限公司 | 一种数字钱包助记词存储的方法、装置及系统 |
| CN109547212B (zh) * | 2018-12-04 | 2021-06-18 | 中国电子科技集团公司第三十研究所 | 一种基于sm2签名算法的门限签名方法 |
| WO2020123959A1 (en) * | 2018-12-14 | 2020-06-18 | Iot And M2M Technologies, Llc | Secure ids certificate verification for a primary platform |
| EP3671663B1 (en) * | 2018-12-20 | 2024-07-03 | Assa Abloy AB | Co-signing delegations |
| US11477086B2 (en) * | 2019-05-08 | 2022-10-18 | Schlumberger Technology Corporation | Methods and systems for provisioning and commissioning an industrial gateway |
| US11233658B2 (en) * | 2019-08-14 | 2022-01-25 | OX Labs Inc. | Digital transaction signing for multiple client devices using secured encrypted private keys |
| CN110765438B (zh) * | 2019-10-24 | 2021-01-01 | 江苏云涌电子科技股份有限公司 | 一种高性能密码卡及其工作方法 |
| US11671265B2 (en) | 2019-10-25 | 2023-06-06 | John A. Nix | Secure configuration of a secondary platform bundle within a primary platform |
| US12050692B2 (en) | 2019-10-30 | 2024-07-30 | John A. Nix | Secure and flexible boot firmware update for devices with a primary platform |
| US11216433B2 (en) * | 2019-12-12 | 2022-01-04 | Google Llc | Encrypted search with no zero-day leakage |
| US11438152B2 (en) | 2020-01-31 | 2022-09-06 | Visa International Service Association | Distributed symmetric encryption |
| FR3107414A1 (fr) * | 2020-02-19 | 2021-08-20 | Orange | Procédé de calcul d’une clé de session, procédé de récupération d’une telle clé de session |
| JP7502618B2 (ja) * | 2020-07-20 | 2024-06-19 | 富士通株式会社 | 通信プログラム、通信装置、及び通信方法 |
| EP3951516A1 (de) * | 2020-08-04 | 2022-02-09 | Siemens Aktiengesellschaft | System und verfahren zum verifizieren von komponenten eines industriellen kontrollsystems |
| US11502830B2 (en) | 2020-10-12 | 2022-11-15 | Kyndryl, Inc. | Ultrasound split key transmission for enhanced security |
| CN112463454B (zh) * | 2020-12-04 | 2021-11-05 | 北京深思数盾科技股份有限公司 | 数据恢复方法、服务器、终端设备及存储介质 |
| US11372986B1 (en) | 2021-01-18 | 2022-06-28 | Axiom Technologies LLC | Systems and methods for encrypted content management |
| IT202100017405A1 (it) | 2021-07-01 | 2023-01-01 | Telecom Italia Spa | “metodo e sistema per la decifratura di messaggi cifrati end-to-end per intercettazione legale” |
| IL291459A (en) * | 2022-03-17 | 2023-10-01 | Kazuar Advanced Tech Ltd | Key management system |
| CN114900291B (zh) * | 2022-04-26 | 2024-11-26 | 北京数字认证股份有限公司 | 一种授权激活的方法、装置、计算机设备及可读存储介质 |
| CN114785527B (zh) * | 2022-06-17 | 2022-09-16 | 深圳市深圳通有限公司 | 数据传输方法、装置、设备及存储介质 |
| US20240323016A1 (en) * | 2023-03-21 | 2024-09-26 | Micron Technology, Inc. | Verify Public Keys by Devices without Secrets for the Generation of Respective Private Keys |
| US12574255B2 (en) | 2023-07-10 | 2026-03-10 | Dediprog Technology Co., Ltd. | Secure programming system, operating method thereof and computer readable recording medium using such operating method |
| US12425191B1 (en) | 2023-10-06 | 2025-09-23 | The Bank Of New York Mellon | System and method for providing multiple key encryption |
| FR3159245A1 (fr) * | 2024-02-13 | 2025-08-15 | Stmicroelectronics International N.V. | Protection de données |
Family Cites Families (39)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US4200770A (en) * | 1977-09-06 | 1980-04-29 | Stanford University | Cryptographic apparatus and method |
| US4218582A (en) * | 1977-10-06 | 1980-08-19 | The Board Of Trustees Of The Leland Stanford Junior University | Public key cryptographic apparatus and method |
| US4405829A (en) * | 1977-12-14 | 1983-09-20 | Massachusetts Institute Of Technology | Cryptographic communications system and method |
| US4558176A (en) * | 1982-09-20 | 1985-12-10 | Arnold Mark G | Computer systems to inhibit unauthorized copying, unauthorized usage, and automated cracking of protected software |
| US4748620A (en) * | 1986-02-28 | 1988-05-31 | American Telephone And Telegraph Company, At&T Bell Laboratories | Time stamp and packet virtual sequence numbering for reconstructing information signals from packets |
| US4771461A (en) * | 1986-06-27 | 1988-09-13 | International Business Machines Corporation | Initialization of cryptographic variables in an EFT/POS network with a large number of terminals |
| JPS63317862A (ja) * | 1987-06-12 | 1988-12-26 | エイ・ティ・アンド・ティ グローバル インフォメーション ソルーションズ インターナショナル インコーポレイテッド | 安全モジユールの動作制御方法 |
| US4868877A (en) * | 1988-02-12 | 1989-09-19 | Fischer Addison M | Public key/signature cryptosystem with enhanced digital signature certification |
| US5214702A (en) * | 1988-02-12 | 1993-05-25 | Fischer Addison M | Public key/signature cryptosystem with enhanced digital signature certification |
| US5005200A (en) * | 1988-02-12 | 1991-04-02 | Fischer Addison M | Public key/signature cryptosystem with enhanced digital signature certification |
| US4888801A (en) * | 1988-05-02 | 1989-12-19 | Motorola, Inc. | Hierarchical key management system |
| EP0383985A1 (de) * | 1989-02-24 | 1990-08-29 | Claus Peter Prof. Dr. Schnorr | Verfahren zur Identifikation von Teilnehmern sowie zur Generierung und Verifikation von elektronischen Unterschriften in einem Datenaustauschsystem |
| US5175765A (en) * | 1989-05-09 | 1992-12-29 | Digital Equipment Corporation | Robust data broadcast over a distributed network with malicious failures |
| DE3922642A1 (de) * | 1989-07-10 | 1991-01-24 | Ant Nachrichtentech | Verfahren zur verschluesselten datenuebertragung |
| US5001752A (en) * | 1989-10-13 | 1991-03-19 | Fischer Addison M | Public/key date-time notary facility |
| US5136643A (en) * | 1989-10-13 | 1992-08-04 | Fischer Addison M | Public/key date-time notary facility |
| JP2874916B2 (ja) * | 1989-11-21 | 1999-03-24 | 株式会社東芝 | 携帯用暗号鍵記憶装置 |
| FR2662007B1 (fr) * | 1990-05-10 | 1992-07-10 | Bull Sa | Procede d'obtention d'une attestation en clair securisee dans un environnement de systeme informatique distribue. |
| US5070528A (en) * | 1990-06-29 | 1991-12-03 | Digital Equipment Corporation | Generic encryption technique for communication networks |
| US5073934A (en) * | 1990-10-24 | 1991-12-17 | International Business Machines Corporation | Method and apparatus for controlling the use of a public key, based on the level of import integrity for the key |
| ATE119726T1 (de) * | 1990-10-24 | 1995-03-15 | Omnisec Ag | Geheimübertragungssystem mit möglichkeit zur verschlüsselten kommunikation zwischen benutzern mit gesichertem schlüssel, welcher ohne benutzereinwirkung bestimmt wird. |
| US5199070A (en) * | 1990-12-18 | 1993-03-30 | Matsushita Electric Industrial Co., Ltd. | Method for generating a public key |
| JP3027988B2 (ja) * | 1991-01-31 | 2000-04-04 | 松下電器産業株式会社 | 識別情報に基づく秘密鍵生成方法 |
| US5200999A (en) * | 1991-09-27 | 1993-04-06 | International Business Machines Corporation | Public key cryptosystem key management based on control vectors |
| US5164988A (en) * | 1991-10-31 | 1992-11-17 | International Business Machines Corporation | Method to establish and enforce a network cryptographic security policy in a public key cryptosystem |
| US5222140A (en) * | 1991-11-08 | 1993-06-22 | Bell Communications Research, Inc. | Cryptographic method for key agreement and user authentication |
| US5557518A (en) * | 1994-04-28 | 1996-09-17 | Citibank, N.A. | Trusted agents for open electronic commerce |
| US5261002A (en) * | 1992-03-13 | 1993-11-09 | Digital Equipment Corporation | Method of issuance and revocation of certificates of authenticity used in public key networks and other systems |
| US5313521A (en) * | 1992-04-15 | 1994-05-17 | Fujitsu Limited | Key distribution protocol for file transfer in the local area network |
| US5276737B1 (en) * | 1992-04-20 | 1995-09-12 | Silvio Micali | Fair cryptosystems and methods of use |
| US5315658B1 (en) * | 1992-04-20 | 1995-09-12 | Silvio Micali | Fair cryptosystems and methods of use |
| ATE177857T1 (de) * | 1992-05-15 | 1999-04-15 | Addison M Fischer | Verfahren und vorrichtung zur sicherheit eines computersystem mit programmberechtigungsdatenstrukturen |
| US5396558A (en) * | 1992-09-18 | 1995-03-07 | Nippon Telegraph And Telephone Corporation | Method and apparatus for settlement of accounts by IC cards |
| US5349642A (en) * | 1992-11-03 | 1994-09-20 | Novell, Inc. | Method and apparatus for authentication of client server communication |
| US5499295A (en) * | 1993-08-31 | 1996-03-12 | Ericsson Inc. | Method and apparatus for feature authorization and software copy protection in RF communications devices |
| US5371794A (en) * | 1993-11-02 | 1994-12-06 | Sun Microsystems, Inc. | Method and apparatus for privacy and authentication in wireless networks |
| US5787172A (en) * | 1994-02-24 | 1998-07-28 | The Merdan Group, Inc. | Apparatus and method for establishing a cryptographic link between elements of a system |
| US5539828A (en) * | 1994-05-31 | 1996-07-23 | Intel Corporation | Apparatus and method for providing secured communications |
| US5557346A (en) * | 1994-08-11 | 1996-09-17 | Trusted Information Systems, Inc. | System and method for key escrow encryption |
-
1995
- 1995-01-13 PL PL95315574A patent/PL176458B1/pl unknown
- 1995-01-13 NZ NZ279622A patent/NZ279622A/en unknown
- 1995-01-13 HU HU9601870A patent/HU216231B/hu not_active IP Right Cessation
- 1995-01-13 CN CN95191205A patent/CN1138927A/zh active Pending
- 1995-01-13 AT AT95908511T patent/ATE202439T1/de not_active IP Right Cessation
- 1995-01-13 WO PCT/US1995/000531 patent/WO1995019672A2/en not_active Ceased
- 1995-01-13 EP EP95908511A patent/EP0739560B1/en not_active Expired - Lifetime
- 1995-01-13 CA CA002176032A patent/CA2176032A1/en not_active Abandoned
- 1995-01-13 AU AU16803/95A patent/AU1680395A/en not_active Abandoned
- 1995-01-13 NZ NZ329891A patent/NZ329891A/xx unknown
- 1995-01-13 BR BR9506414A patent/BR9506414A/pt not_active Application Discontinuation
- 1995-01-13 MX MX9602773A patent/MX9602773A/es unknown
- 1995-01-13 PT PT95908511T patent/PT739560E/pt unknown
- 1995-01-13 DK DK95908511T patent/DK0739560T3/da active
- 1995-01-13 AP APAP/P/1996/000811A patent/AP626A/en active
- 1995-01-13 ES ES95908511T patent/ES2158081T3/es not_active Expired - Lifetime
- 1995-01-13 CZ CZ961978A patent/CZ197896A3/cs unknown
- 1995-01-13 JP JP7519155A patent/JPH09507729A/ja not_active Withdrawn
- 1995-01-13 UA UA96072822A patent/UA41387C2/uk unknown
- 1995-01-13 DE DE69521413T patent/DE69521413T2/de not_active Expired - Fee Related
-
1996
- 1996-05-31 OA OA60829A patent/OA10456A/en unknown
-
1997
- 1997-02-19 US US08/802,584 patent/US5857022A/en not_active Expired - Lifetime
- 1997-02-19 US US08/803,176 patent/US5799086A/en not_active Expired - Lifetime
- 1997-02-19 US US08/802,603 patent/US6009177A/en not_active Expired - Lifetime
- 1997-02-19 US US08/802,818 patent/US5872849A/en not_active Expired - Lifetime
- 1997-02-19 US US08/803,024 patent/US5850451A/en not_active Expired - Lifetime
- 1997-04-11 US US08/840,227 patent/US5841865A/en not_active Expired - Lifetime
-
2001
- 2001-09-18 GR GR20010401508T patent/GR3036650T3/el not_active IP Right Cessation
-
2005
- 2005-08-08 JP JP2005229598A patent/JP2005328574A/ja not_active Withdrawn
-
2006
- 2006-06-20 JP JP2006170340A patent/JP2006246543A/ja not_active Withdrawn
-
2007
- 2007-08-01 JP JP2007201143A patent/JP2007282295A/ja active Pending
Cited By (5)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| JP2008243228A (ja) * | 1996-05-15 | 2008-10-09 | Intertrust Technologies Corp | 閉鎖、接続された機器における記憶媒体電子権利管理用の暗号法の方法、機器およびシステム |
| JP2005537763A (ja) * | 2002-09-03 | 2005-12-08 | ベリサイン・インコーポレイテッド | 公開鍵インフラストラクチャ内で秘密鍵を安全にエスクローするための方法およびシステム |
| JP2005130458A (ja) * | 2003-09-12 | 2005-05-19 | Ricoh Co Ltd | 証明書設定方法 |
| KR101273465B1 (ko) * | 2007-03-16 | 2013-06-14 | 재단법인서울대학교산학협력재단 | 집합 검증 장치 및 그 방법 |
| JP2008270870A (ja) * | 2007-04-16 | 2008-11-06 | Sony Corp | 通信システム、通信装置及び通信方法、並びにコンピュータ・プログラム |
Also Published As
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| US5841865A (en) | Enhanced cryptographic system and method with key escrow feature | |
| JP5190036B2 (ja) | 認証された文書の電子的送信、格納および検索システムおよび方法 | |
| US11232415B2 (en) | Method for cryptographically managing title transactions | |
| EP3509006B1 (en) | Information sharing system | |
| CN102932136B (zh) | 用于管理加密密钥的系统和方法 | |
| US20010050990A1 (en) | Method for initiating a stream-oriented encrypted communication | |
| US6938157B2 (en) | Distributed information system and protocol for affixing electronic signatures and authenticating documents | |
| JP2023098847A (ja) | 装置、方法、コンピュータプログラム(プライバシー保護ブロックチェーンの選択的監査プロセス) | |
| US20230259899A1 (en) | Method, participant unit, transaction register and payment system for managing transaction data sets | |
| US20140372752A1 (en) | Method and database system for secure storage and communication of information | |
| US11924348B2 (en) | Honest behavior enforcement via blockchain | |
| WO2013166518A1 (en) | Secure transaction object creation, propagation and invocation | |
| US20230267426A1 (en) | Payment system, coin register, participant unit, transaction register, monitoring register and method for payment with electronic coin data sets | |
| CN115668856B (zh) | 分散式数据库中的许可事件 | |
| Abadi et al. | Payment with dispute resolution: A protocol for reimbursing frauds victims | |
| CN114896616B (zh) | 基于区块链的保单处理方法及系统 | |
| Razzaque et al. | Enhancing E-voting security with blockchain-backed decentralized authorization | |
| AU705473B2 (en) | Cryptographic system and method with key escrow feature | |
| AU4461999A (en) | Cryptographic system and method with key escrow feature | |
| HK1083252A1 (en) | System and method for a remote access service enabling trust and interoperability when retrieving certificate status from multiple certification authority reporting components |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| A131 | Notification of reasons for refusal |
Free format text: JAPANESE INTERMEDIATE CODE: A131 Effective date: 20050208 |
|
| A601 | Written request for extension of time |
Free format text: JAPANESE INTERMEDIATE CODE: A601 Effective date: 20050509 |
|
| A602 | Written permission of extension of time |
Free format text: JAPANESE INTERMEDIATE CODE: A602 Effective date: 20050620 |
|
| A521 | Request for written amendment filed |
Free format text: JAPANESE INTERMEDIATE CODE: A523 Effective date: 20050808 |
|
| A131 | Notification of reasons for refusal |
Free format text: JAPANESE INTERMEDIATE CODE: A131 Effective date: 20051220 |
|
| A601 | Written request for extension of time |
Free format text: JAPANESE INTERMEDIATE CODE: A601 Effective date: 20060320 |
|
| A602 | Written permission of extension of time |
Free format text: JAPANESE INTERMEDIATE CODE: A602 Effective date: 20060508 |
|
| A521 | Request for written amendment filed |
Free format text: JAPANESE INTERMEDIATE CODE: A523 Effective date: 20060620 |
|
| A02 | Decision of refusal |
Free format text: JAPANESE INTERMEDIATE CODE: A02 Effective date: 20060808 |
|
| A521 | Request for written amendment filed |
Free format text: JAPANESE INTERMEDIATE CODE: A523 Effective date: 20061206 |
|
| A911 | Transfer to examiner for re-examination before appeal (zenchi) |
Free format text: JAPANESE INTERMEDIATE CODE: A911 Effective date: 20070201 |
|
| A912 | Re-examination (zenchi) completed and case transferred to appeal board |
Free format text: JAPANESE INTERMEDIATE CODE: A912 Effective date: 20070315 |
|
| A601 | Written request for extension of time |
Free format text: JAPANESE INTERMEDIATE CODE: A601 Effective date: 20090420 |
|
| A602 | Written permission of extension of time |
Free format text: JAPANESE INTERMEDIATE CODE: A602 Effective date: 20090508 |
|
| A761 | Written withdrawal of application |
Free format text: JAPANESE INTERMEDIATE CODE: A761 Effective date: 20100107 |