FREE patent keyword monitoring and additional FREE benefits. /images/triangleright (1K) REGISTER now for FREE triangleleft (1K)
Fresh Patents
Monitor Patents Patent Organizer File a Provisional Patent Browse Inventors Browse Industry Browse Agents Browse Locations


Information Security > Access Control Or Authentication

Access Control Or Authentication

Access Control Or Authentication patent applications listed are from June 2005 to current and include Date, Patent Application Number, Patent Title, Patent Abstract summary and are linked to the corresponding patent application page.

11/08/07 - 20070261103 - Method and apparatus for imposing quorum-based access control in a computer system
One embodiment of the present invention provides a system for executing a command on a computer system. During operation, the system receives a signed command from a first quorum member at a security manager, wherein one or more quorum members must accept the command before the command is executed. Along ...

11/08/07 - 20070261102 - Methods and systems for specifying and enforcing access control in a distributed system
Methods and systems for controlling access to objects of a distributed computing environment are described. In one configuration, a computing device receives a request from a principal to access a protected object and evaluating the transitive closure of the list of group identifiers. The protected object is associated with an ...

11/08/07 - 20070261101 - Methods and systems for providing scalable authentication
Methods and systems of authenticating a plurality of users for access to an on-line group activity are described. The systems and methods prevent overloading of any participant's computer due to authentication. In some configurations, multiple endpoints are designated as authenticators and requests for authentication are load balanced amongst the authenticators. ...

10/25/07 - 20070250907 - Method and system for controlling access to logical unit of a storage device shared by computers
An acquisition unit of a user terminal acquires an initiator ID including a user ID and a computer ID. The initiator ID is transmitted by a transmitter unit, and then, received by a transmitter/receiver unit of a storage device. A LUDB stores information determining a LU corresponding to each user ...

10/25/07 - 20070250906 - Mobile communication terminal and data access control method
A mobile communication terminal provided with a noncontact IC card, a platform part being an application program interface for getting an application program running, an application management part for controlling activation and deactivation of the application program, and an access control part operating in the platform part for relaying access ...

10/18/07 - 20070245403 - Systems and methods for secure transaction management and electronic rights protection
The present invention provides systems and methods for secure transaction management and electronic rights protection. Electronic appliances such as computers equipped in accordance with the present invention help to ensure that information is accessed and used only in authorized ways, and maintain the integrity, availability, and/or confidentiality of the information. ...

10/11/07 - 20070240199 - Identification label
An identification label (10) includes a microprocessor (38), a display (14), a keyboard (16) and a memory means for storing a security code and a plurality of editable screens of text, the label (10) being arranged to wake up from a sleep mode and display a start screen (50) selected ...

10/11/07 - 20070240198 - Smart site-management system
The present invention teaches a system for site management, and more specifically, for disaster site management. The system incorporates a network backbone for communication in a rugged, weather-resistant, flexibly-deployable scheme for monitoring and maintaining access to site perimeters, and providing access to personnel arriving at the site, while maintaining accountability ...

10/04/07 - 20070234403 - Program code version enforcement
Implementations described and claimed herein enforce versions of program code on a client based on an operating policy during execution of the software. The version of program code on the client is checked for compliance with the operating policy when the client attempts to execute the program code or access ...

10/04/07 - 20070234402 - Hierarchical trust based posture reporting and policy enforcement
A method that includes initiating a network access request from an access requester on a platform that couples to a network, the network access request made to a policy decision point for the network. The method also includes establishing a secure communication channel over a communication link between the policy ...

10/04/07 - 20070234401 - Securing wakeup network events
In an embodiment, a method is provided. The method of this embodiment provides receiving a packet having a wake-up pattern, and waking up if the wake-up pattern corresponds to one of a number of dynamically modifiable passwords on a pattern wake list, each of the dynamically modifiable passwords being based, ...

09/27/07 - 20070226778 - Bluetooth theft protection
A method and apparatus performs setting an operational state to one of a locked state to prevent establishing of a trusted relationship with a remote device or an unlocked state to allow establishing of a trusted relationship with a remote device; and controlling whether the wireless communications device is able ...

09/27/07 - 20070226777 - System and method for authenticating and configuring computing devices
A system and method for authenticating a host on a network enables the host to update IP configuration and internal configuration of a storage controller connected to the network. The host has an algorithm to decrypt a security key supplied by the storage controller. The host broadcasts a discovery command ...

09/20/07 - 20070220589 - Techniques for validating public keys using aaa services
Techniques for validating a first device are provided. A second device receives a first device public key and first device identification information from the first device. Validation of the first device identification information is required for a security process using a security protocol. The second device sends the first device ...

09/13/07 - 20070214495 - System and user interface supporting context sharing between concurrently operating applications
A system and associated communication protocol enables network compatible applications to be integrated into any process involving concurrent operation of applications. A system for use in a first application concurrently operating together with a plurality of network compatible applications includes an entitlement processor. The entitlement processor enables user access to ...

09/13/07 - 20070214493 - System and method for global access control
The global access control system and method presents a solution to synchronizing the physical access devices that federal agencies must try to meet Federal Information Processing Standards (FIPS) 201 requirements. The method encompasses wire and wireless technology, IP Security (IPSec), the assignment of IPv6 addresses to every device, integrating with ...

09/13/07 - 20070214492 - Personal lifestyle device
A personal lifestyle device (PLD) includes a communication module, a memory device, and a control module. The communication module communicates with a wireless network. The memory device stores authentication information that authorizes communication between the PLD and at least one of the wireless network and a lifestyle service provider, and ...

08/23/07 - 20070199048 - Method for controlling the access to a data network
A method for controlling access to a data network uses an end point identifier associated with an end point for control of the access to the data network. When a user X is logged in at the end point and a data query is directed from the end point to ...

08/23/07 - 20070199047 - Audit trail in a programmable safety instrumented system via biometric signature(s)
System(s) and method(s) that facilitate utilizing biometric sensors (e.g., fingerprint, hand scan, voice recognition . . . ) in manufacturing systems in order to maintain accurate safety audit trails. A safety audit system, utilizing a biometric sensing device, facilitates determining if a user is allowed to access and change the ...

08/23/07 - 20070199046 - Computer architecture for a handheld electronic device
Mobile PDA computer system (300) includes a non-secure processor (306), comprising an untrusted microprocessor and an untrusted operating system executing on the untrusted microprocessor. The system also includes a secure processor (302), comprising a trusted microprocessor and a trusted operating system executing on the trusted microprocessor. A cryptographic engine (304) ...

08/23/07 - 20070199045 - Method for preventing time of check to time of use exploits
A method for preventing time of check to time of use exploits includes receiving a system call from a user space at a system call intercept and copying user space parameters from the user space to a kernel space responsive to the system call. The method also includes copying the ...

08/16/07 - 20070192831 - Microcontroller, authentication method for microcontroller, and authentication program for microcontroller
In one step of a program, an arbitrary value is written to an authentication code generation module. In the subsequent step, an authentication code is read from the authentication code generation module and it is determined whether the authentication code matches the value written in the preceding step. Normal processing ...

08/16/07 - 20070192830 - Security module having access limited based upon security level of code seeking access
Access to secrets and/or security related functionality within a security module (e.g., a platform trust module, etc.) is limited based upon a security level associated with a program seeking access to the secrets/functionality within a digital platform. ...

08/16/07 - 20070192829 - Authenticated communication using a shared unpredictable secret
Systems, methods and computer readable media for authenticating one or more client devices (1) to a server (5). A shared unpredictable secret (50) is generated. The shared unpredictable secret (50) is stored in the client device (1) and in the server device (5). The client device (1) proves possession of ...

08/16/07 - 20070192828 - Enhanced security memory access method and architecture
A memory device includes: at least one storage area for storing data; a protection control structure adapted to selectively allow an external device access to the at least one storage area of the memory, the storage area being not freely accessible by the external device if protected; a control logic ...

08/09/07 - 20070186275 - Enterprise-wide security system for computer devices
A system and method for securing data in mobile devices (104) includes a computing mode (102) and a plurality of mobile devices (104). A node security program (202) executed in the computing node (102) interfaces with a device security program (204) executed at a mobile device (104). The computing node ...

08/09/07 - 20070186274 - Zone based security model
An access control method includes dividing a data processing system into multiple zones. Memberships of processes and objects in the zones are identified, and internal relationships between the zones are defined. The relationships between the zones are used to grant or deny processes access to objects based on their memberships ...

08/09/07 - 20070186273 - Method and system for managing access authorization for a user in a local administrative domain when the user connects to an ip network
In order to control the authorisation of a user during an attempt to access an IP transport network (5) by means of an access network (1, 2), a user terminal (11, 12, 13) emits an access request to an access supplier (6, 7, 8), containing data for authenticating the user ...

08/02/07 - 20070180494 - Systems and methods for controlled transmittance in a telecommunication system
Systems and methods for authenticating digital assets in relation to a telecommunications network. In various cases, the systems include a network interface device associated with a customer premises. The network interface device includes a local authentication authority operable to authenticate one or more digital assets maintained in relation to the ...

08/02/07 - 20070180493 - Methods and systems for assigning access control levels in providing access to resources via virtual machines
A system for granting access to resources includes a client machine, a collection agent, a policy engine, and a broker server. The client machine requests access to a resource. The collection agent gathers information about the client machine. The policy engine receives the gathered information and assigns one of a ...

08/02/07 - 20070180492 - Secure device sharing
A device and method for placing the device in a locked state having an associated set of permitted tasks so as to permit the device owner to share the device with others but maintain security over aspects of the device. A task change request is evaluated to determine whether the ...

08/02/07 - 20070180491 - Authorization scheme to simplify security configurations
Various technologies and techniques are disclosed that provide a centralized model to assign, monitor, and manage security on home electronic devices. A three-dimensional security matrix uses a role-based model that allows users to map security into groupings. Users can be assigned security levels based on application role (what activity is ...

07/26/07 - 20070174898 - Authentication method for authenticating a first party to a second party
This invention relates to an authentication method for authenticating a first party to a second party, where an operation is performed on condition that the authentication succeeds. If the first party is not authenticated, then if the first party qualifies for a subauthorization, the operation is still performed. Further, a ...

07/26/07 - 20070174897 - Method and apparatus for protecting data stored in data storage devices
A method for managing access to a data storage device includes determining whether a request to access more than one non-contiguous sectors in the data storage device is made by an entity having privilege. Whether the more than one non-contiguous sectors is protected is determined. The request to access the ...

07/19/07 - 20070169173 - System and method for providing a secure environment for performing conditional access functions for a set top box
A system and method are provided for decrypting a selected program. The system and method can receive at least one authorization message and at least one control message associated with a selected program. The system and method stores the at least one authorization message. The system and method transmits a ...

07/19/07 - 20070169172 - Method and system for memory protection and security using credentials
A computer-implemented system and method for protecting a memory are provided. The system includes a memory section with privileged and non-privileged sections, a host gateway (HG) to generate a capability credential, a device controller (DC) to append the credential to data transmitted to the memory, and at least one IO ...

07/19/07 - 20070169171 - Technique for authenticating network users
A technique for authenticating network users is disclosed. In one particular exemplary embodiment, the technique may be realized as a method for authenticating network users. The method may comprise receiving, from a client device, a request for connection to a network. The method may also comprise evaluating a security context ...

07/12/07 - 20070162957 - Methods, systems and devices for securing supervisory control and data acquisition (scada) communications
A secure supervisory control and data acquisition (SCADA) system is presented. The inventive system includes a SCADA control host configured to process SCADA information, and at least one remote device configured to communicate with the control host. The remote device includes at least a first port and a second port ...

07/12/07 - 20070162956 - Securing standard test access port with an independent security key interface
A system to prevent unauthorized access to a protected device includes a test access port operable to mate with a test access connector, a security key port operable to mate with a security key and a security device in electrical communication with the test access port and the security key ...

07/12/07 - 20070162955 - Mechanism to support rights management in a pre-operating system environment
A computer system is disclosed. The computer system includes a chipset to access one or more partitioned regions of a storage device and a network controller coupled to the chipset. The network controller includes a manageability engine (ME) to enforce one or more policies as conditions for accessing each of ...

07/12/07 - 20070162954 - Network security system based on physical location
A network security system and method for monitoring, tracking, and authorizing the physical location of a network login. More specifically, the present invention relates to a system that maintains records (200) of authorized network users and monitors, tracks, and authorizes the physical location from which those users are authorized to ...

07/05/07 - 20070157289 - Resticting access to cookies
The present invention relates to a method of restricting access to cookie information stored on a client, said client being communicatively connected to servers via a public communication network, wherein the client receives first party data from said server, said first party data comprising embedded links to third party web ...

06/28/07 - 20070150938 - System and method for changing network behavior based on presence information
A system and method for changing network behavior based on presence information includes detecting one or more presence indicators. The one or more presence indicators indicate presence information. An electronic persistent presence (EPP) is formed based on the one or more presence indicators. It is determined whether to change the ...

06/21/07 - 20070143826 - Method, apparatus and system for providing stronger authentication by extending physical presence to a remote entity
A method, apparatus and system enable secure remote authentication. According to embodiments of the present invention, a remote administrator may be authenticated by accessing an approved secure location, transmitting location information with an access request and providing proof of physical presence in the access request. Additionally, in one embodiment, the ...

06/21/07 - 20070143825 - Apparatus and method of tiered authentication
A system and method of authenticating a user is thereby disclosed, comprising providing a plurality of authentication schemes for authenticating a user on a device, each of the plurality of authentication schemes having a varying level of security associated therewith, providing access to a plurality of services to the user ...

06/14/07 - 20070136785 - Content-based authorization method and apparatus
An Internet Protocol access gateway (200) characterized by having automatically and dynamically maintained end user profile information can receive (101) information (subsequent to otherwise authenticating an end user's ability to engage in a communication session) regarding content being sought by the end user via a communication session. That access gateway ...

05/31/07 - 20070124800 - Image forming system, image forming program, management program and client apparatus
An image forming system includes: a server apparatus; a client apparatus connected via a network to the server apparatus; and an image forming apparatus connected to the client apparatus, wherein: the server apparatus includes: an authentication validation unit that makes authentication validation based on authentication information transmitted from the client ...

05/31/07 - 20070124799 - Authentication agent apparatus, authentication method, and program product therefor
An authentication agent apparatus that authenticates a user who uses an image processing apparatus has an agent portion. The agent portion intermediates an authentication process between an image processing apparatus and a corresponding authentication portion among multiple authentication portions having different protocols, when a request for the authentication process is ...

05/31/07 - 20070124798 - Tying hard drives to a particular system
In a system for accessing data stored on a storage device (SD) that is capable of being coupled to an information handling system (IHS), the SD includes a lock to control access to the data by a program and includes a storage media to store the data. The program is ...

05/24/07 - 20070118876 - Methods, systems, and computer program products for reconfiguring an operational mode of an input interface based on a privacy level
Methods, systems, and computer program products for reconfiguring an operational mode of an input interface based on a privacy level are disclosed. According to one method, at least one of an environment in which data is being entered into a computer via an input interface and a destination for the ...

05/24/07 - 20070118875 - Short-lived certificate authority service
An integrated authentication service is described which may receive a bundled request from one or more clients. One or more of the described techniques may be utilized to provide, in response to a single bundled request, a token for proof of identity and a certificate for establishing secure communications. ...

05/17/07 - 20070113268 - Intrusion resistant passive fiber optic components
In a method for secure transmission of data using a quantum key distribution system where individual photons each having a state of polarization are transmitted from the source to the recipient and where the state of polarization the photons is used to provide the series of bits of the encryption ...

05/17/07 - 20070113267 - Portable device for accessing host computer via remote computer
A portable device enables access to a host computer via a guest computer. The portable device is connected to the guest computer, and a program stored in a memory on the portable device is activated, the program including instructions for establishing communication with the host computer such that input to ...

05/10/07 - 20070107044 - System and method for authorization of transactions
System and method for authorizing transactions, such as payments or money transfers. A transaction authorization mechanism may be provided through which a transaction initiated via a first communications channel may be authorized through a second, separate communications channel or mechanism. A source entity may initiate a transaction to a target ...

05/10/07 - 20070107043 - Dynamic endpoint compliance policy configuration
Techniques are disclosed for implementing dynamic endpoint compliance policy configuration. In one embodiment, a security service is provided that automates endpoint compliance policy configuration. A customer identifies its deployed client security products, and specifies the desired level of security. This security product and level information is used by the security ...

05/10/07 - 20070107042 - System and method for limiting access to a shared multi-functional peripheral device
A system and method for providing selective access to the functions of a multi-function peripheral device are disclosed. The system includes a portable memory device storing user data; a reader configured to read the user data from the portable memory device; an authenticating device in data communication with the reader, ...

05/03/07 - 20070101400 - Method of providing secure access to computer resources
A method of providing varying levels of secure access to computer resources. A certificate is used to identify a particular data requester and the certificate is authenticated using asymmetrical encryption techniques, such as public-private key pairs. One or more trust authorities may be consulted to ascribe a trust level to ...

04/26/07 - 20070094710 - Remote feature activation authentication file system
A system for providing a user with authorization to perform one or more functions using or otherwise involving a computational component is provided. The system includes an authentication file system 100 operable to (a) receive a request from a user for a second set of authentication information permitting a second ...

04/26/07 - 20070094709 - Method and apparatus for dynamic home address assignment by home agent in multiple network interworking
A method and apparatus for dynamic home address assignment by a home agent in multiple network interworking. The invention provides a method and apparatus send a key authorization request from a mobile station to a network device, the request indicating that the mobile station wishes to use a foreign agent ...

04/26/07 - 20070094708 - System and method for automatically activating an electronic device
An electronic device may be remotely activated by an activation utility, such as a remote start-up utility. The remote utility may be initiated in response to activation of a security system. The security system may generate an electronic signal which initiates the remote utility. The remote utility sends activation instructions ...

04/19/07 - 20070089163 - System and method for controlling security of a remote network power device
A system and method for controlling security of a remote network power device powering a remote network device are disclosed. The system includes a remote network power supply device having a secure standard implemented thereon and having a power-supply-identity, a remote unattended network device powered from the power supply device, ...

04/05/07 - 20070079358 - Expert system analysis and graphical display of privilege elevation pathways in a computing environment
A data collection application is executed on a target system. Various data indicative of privilege elevation pathways is collected, including user account data, file permission data, and system registry data. The collected data is analyzed according to heuristics. System accounts are displayed on a graph as nodes. Detected privilege elevations ...

04/05/07 - 20070079357 - System and/or method for role-based authorization
The subject matter disclosed herein relates to authenticating an identity of users desiring access to an application program and determining whether an authenticated user is authorized to access one or more aspects of the application program. ...

04/05/07 - 20070079356 - System and/or method for class-based authorization
The subject matter disclosed herein relates to authenticating an identity of users desiring access to an application program and determining whether an authenticated user is authorized to access one or more aspects of the application program. ...

04/05/07 - 20070079355 - Data perspectives in controller system and production management systems
A programmable logic controller is disclosed that filters and presents to a user data that conforms to a hierarchically structured data model. The programmable logic controller through utilization of an input component that receives data and a filter component that filters the data based at least in part on one ...

03/29/07 - 20070074271 - System for identifying a password for a user to electronically access an institution
“SYSTEM FOR IDENTIFYING A PASSWORD FOR A USER TO ELECTRONICALLY ACCESS AN INSTITUTION”, comprising: an access password (S) formed by characters (41, 51) selected from at least two different character sets (40, 50) that define respective portions (S1, S2) of the access password (S);—a communication means (30) for transmitting instructions ...

03/29/07 - 20070074270 - Method and system for digital rights management of documents
A method and system for transmission of digital content via e-mail with point of use digital rights management is disclosed. The secured access rights to the digital content may be customized for individual recipients by the sender, and may evolve over time. The access rights are enforced according to a ...

03/22/07 - 20070067827 - Centralized identity authentication for electronic communication networks
A method of centralized identity authentication for use in connection with a communications network includes registering users of the communications network such that each registered user's identity is uniquely defined and determinable, and registering a plurality of vendors having a presence on the communications network. The registered vendors selectively transact ...

03/22/07 - 20070067826 - Method and system for preventing unsecure memory accesses
A system comprising a processor adapted to activate multiple privilege levels for the system, a monitoring unit coupled to the processor and employing security rules pertaining to the multiple privilege levels, and a memory management unit (MMU) coupled to the monitoring unit and adapted to partition memory into public and ...

03/22/07 - 20070067825 - Gaining access via a coded surface
A method of gaining access to a resource using an access token printed on a print medium, comprising the steps of: determining, using a sensor module of a mobile telecommunications device, the access token and a print media identifier printed on the print medium; and, causing the access token to ...

03/22/07 - 20070067824 - Retrieving an access token via a coded surface
A method of gaining access to a resource using an access token linked to a print medium, comprising the steps of: determining a print media identifier from the print medium using a sensor module of a mobile telecommunications device, the print media identifier having been linked to the access token; ...

03/22/07 - 20070067823 - System and apparatus for rogue voip phone detection and managing voip phone mobility
A method and a system track network access information for authorized network devices. The access information facilitates tracking movement of the device throughout the network. In addition the access information can be used to detect when an unauthorized device attempts to access the network, posing as an authorized device. ...

03/22/07 - 20070067822 - Multi-authenticating method and system also for use in organism authenication
A multi-authenticating system also for use in organism authentication has at least a first authenticating apparatus A 12 and a second authenticating apparatus B 13 and also has a managing apparatus 11 which manages them. The first authenticating apparatus A 12 includes a biometrics authenticating apparatus 12-1 which makes the ...

03/15/07 - 20070061869 - Access of internet use for a selected user
A system for the provision of accountability for and blocking of Internet use of a selected computer user. The system includes a computer which has Internet access blocked, a remote server, and a second computer at which an Accountability Partner communicates to the remote server, such that Internet access is ...

03/15/07 - 20070061868 - One-time password client
The present invention is directed to an OTP client, comprising: a plurality of tickets, each having an impression of a subsequent OTP value of an OTP sequence; and a ticket dispenser, for storing the tickets and for dispensing the tickets to a user for an authentication session. The OTP client ...

03/15/07 - 20070061867 - Information processing apparatus, method and computer product for controlling activation of application
A storing unit stores determining data pertaining to permission of activation of an application. A control unit determines, when an activation request for an application is received, whether activation of the application is permitted based on the determining data, and activates the application when it is determined that the activation ...

03/15/07 - 20070061866 - Method and system for secure connection of peripheral device to processing device
A method, system and apparatus are provided for securely connecting a peripheral device to a processing device in a wireless network. The peripheral device makes a request for access to the processing device, which generates a challenge message and prompts a user to respond. The peripheral device is allowed access ...

03/15/07 - 20070061865 - Cued one-time passwords
A method, apparatus, system, and signal-bearing medium that, in an embodiment, receive cues, one-time passwords, and a presentation order. The cues and one-time passwords are associated with a user name. In response to a cue request, the cues are presented in the presentation order and input data is received. If ...

03/15/07 - 20070061864 - Computer-implemented method, system, and program product for managing log-in strikes
The present invention provides a computer-implemented method, system, and program product for managing log-in strikes in a geographically distributed computer infrastructure. Specifically, under the present invention, when a strike message is received on a strikeout server pursuant to an incorrect password input during an attempted log-in of a user, the ...

03/15/07 - 20070061863 - Method and system for distribution of digital protected content data via a peer-to-peer data network
Disclosed is a method and system for distribution of digital protected content data via a peer-to-peer data network, wherein for each user connected to said peer-to-peer data network a corresponding credit counter is provided for acquiring protected content data from a content provider, wherein said credit counter is increased depending ...

02/22/07 - 20070044140 - Program, system and method for authenticating permission to use a computer system and inhibiting access to an unauthorized user
An authenticating program, system and method for authenticating permission of a user to use a computer system, by storing inhibiting information, supervising input manipulation to a protected computer upon transition of the operating condition of the protected computer to the usable condition, acquiring input information to indicate contents of relevant ...

02/22/07 - 20070044139 - Method and system for authentication of a physical object
A system for authenticating a physical object includes an enrolment device, an authentication device, and a storage for storing authentication data. The enrolment device includes an input for receiving a property set Y of the object measured using a measurement procedure. A processor is used for creating a property set ...

02/15/07 - 20070039038 - Phishing detection, prevention, and notification
Phishing detection, prevention, and notification is described. In an embodiment, a messaging application facilitates communication via a messaging user interface, and receives a communication, such as an email message, from a domain. A phishing detection module detects a phishing attack in the communication by determining that the domain is similar ...

02/15/07 - 20070039037 - Mode-based access control method and device
Provided is a mode-based access control method that includes: making a security mode list which indicates security setting states of devices existing in a home network; setting a specific security mode selected from the modes on the security mode list; and making the devices perform functions thereof in the specific ...

02/08/07 - 20070033639 - Phishing detection, prevention, and notification
Phishing detection, prevention, and notification is described. In an embodiment, a messaging application facilitates communication via a messaging user interface, and receives a communication, such as an email message, from a domain. A phishing detection module detects a phishing attack in the communication by determining that the domain is similar ...

02/08/07 - 20070033638 - Isolation of application-specific data within a user account
A mechanism is provided for isolating application-specific data in an environment where multiple applications share a same user account. This mechanism enables data specific to an application to be accessed only by the application. When an application requests application-specific data, the data is loaded and a handle to the data ...

02/08/07 - 20070033637 - System and method for securely sharing electronic documents
A system and method for the selective sharing of an electronic document. The method enables a user to share access to an electronic document stored on a repository on a document management system. A user, via a document processing services network, generates a password and token corresponding to the document ...

02/01/07 - 20070028297 - Method and system for information leak prevention
A method for mitigating false positive type errors while applying an information leak prevention policy, the method comprising the computer implemented steps of: defining at least one positive criterion for a positive set, wherein the positive criterion comprises at least one indicator of a possible breach of the information leak ...

02/01/07 - 20070028296 - Secure patch installation for wwan systems
The present invention relates methods for patching WWAN (Wireless Wide Area Network) communication devices and corresponding WWAN communication devices, integrated circuit chips and computer-readable media. The WWAN communication device includes a first processor, a second processor and a memory. The first processor is arranged to process patches updating software running ...

02/01/07 - 20070028295 - Method and apparatus for facilitating optimistic authorization in a database
One embodiment of the present invention provides a system that facilitates authorizing a user during a database transaction. The system starts by receiving a request at the database to perform a database operation. Upon receiving the request, the database sends an authorization request to an authorization module to determine if ...

02/01/07 - 20070028294 - Desktop security
In aspects, interactions between processes of a desktop are allowed or denied based on security data. The security data may comprise a first bitmap that indicates whether a requesting process is allowed to cause an action to occur, a second bitmap that indicates whether a process is protected from having ...

02/01/07 - 20070028293 - Content router asynchronous exchange
An apparatus, method and computer program product in a content routing system for facilitating transportation of commands having separable segments among a plurality of content nodes comprising detaching the segments prior to the commands being saved to a command memory of a store and forward logic. ...

02/01/07 - 20070028292 - Bus bridge security system and method for computers
A computer security system comprising security logic that is independent of the host CPU (13) for controlling access between the host CPU (13) and the storage device (21). A program memory (41) that is independent of the computer memory unalterably stores and provides computer programs for operating the processor (37) ...

01/25/07 - 20070022467 - Method and system for limiting access to a shared network device
A system and method for limiting access to shared network devices only to authorized users is disclosed. First, access information associated with authorized users is stored in a memory of a network device. When a user enters a command to the network device from a networked computer, the user is ...

01/11/07 - 20070011721 - Data transmitting apparatus and data receiving apparatus
According to one embodiment, a data transmitting apparatus includes an authentication unit configured to execute authentication processing between communication partners in order to confirm with each other, an encryption unit configured to encrypt data by using a session key generated from the authentication processing by the authentication unit, and a ...

01/04/07 - 20070006283 - Identifying dependencies of an application upon a given security context
A technique for identifying dependencies of an application upon a given security context includes monitoring security checks generated by the application. The security checks requiring elevated rights are identified and the state of execution of the application corresponding to the identified security checks may be logged. The security checks requiring ...

01/04/07 - 20070006282 - Techniques for authenticated posture reporting and associated enforcement of network access
Architectures and techniques that allow a firmware agent to operate as a tamper-resistant agent on a host platform that may be used as a trusted policy enforcement point (PEP) on the host platform to enforce policies even when the host operating system is compromised. The PEP may be used to ...

01/04/07 - 20070006281 - Apparatus and method for platform-independent identity manageability
An apparatus and method for platform and device independent identity manageability. In one embodiment, the method includes validation of a manageable identity (MID) held within trusted storage of a user platform according to a user request to move the MID to a target platform. Once the MID is validated, available ...

12/28/06 - 20060294578 - Unified authorization for heterogeneous applications
An enterprise system may separate the executable functionality existing in backend applications, and the separation may be at differing levels of granularity. The separated functions of the application may be registered in a catalog in the form of metadata objects. Once the executable functionality has been registered, the authorization information ...

12/21/06 - 20060288402 - Security component for dynamic properties framework
This invention relates to dynamic properties framework and particularly to a security framework for the dynamic properties framework. The dynamic properties framework comprises at least one property, each of which have a metadata interface for providing information of the property in question, which metadata interface comprises an owner tag and ...

12/14/06 - 20060282879 - Replicating selected secrets to local domain controllers
A domain controller hierarchy includes one or more hub domain controllers in communication with one or more local domain controllers, such as local domain controllers at a branch office. The hub domain controller(s) is writable, while the local domain controller(s) is typically read-only. Non-secure and secure information is partitioned to ...

12/07/06 - 20060277594 - Policy implementation delegation
The present invention allows a user (e.g., a policy implementer) to be identified and delegated responsibility for implementing a policy. This can occur, implicitly, semi-implicitly or explicitly. In a typical embodiment, a policy provided (e.g., by a policy owner) is automatically parsed to determine a minimum set of access rights ...

12/07/06 - 20060277593 - Access administration using activatable rules
Access to information instances is administered using selectively activatable rules. A computer program product includes rules establishing authorizations to information instances in a computer system, each of the rules authorizing a predefined subject to perform a predefined action on a predefined object. The computer program product includes an activation function ...

11/30/06 - 20060272008 - Method and security system for indentifying and blocking web attacks by enforcing read-only parameters
A method for detecting and blocking web attacks, the method comprising identifying read-only parameters by parsing responses received from uniform resource locators. The combinations of binding correlation values (BCVs) of the read-only parameters are compared to their respective previously observed values. ...

11/30/06 - 20060272007 - User authentication using personal objects
A method and system of authentication for accessing one or more applications by a user by using a personal object belonging to the user. Such a personal object is one that is already in use by the user for purposes other than accessing the one or more applications. ...

11/30/06 - 20060272006 - Systems and methods for processing electronic data
A method of processing electronic data includes receiving electronic data, and scanning at least a portion of the electronic data against a first signature, wherein the first signature is not data-type dependent. A method of processing electronic data includes receiving electronic data to be scanned, identifying a portion of the ...

11/30/06 - 20060272005 - Security optimization techniques for web applications
A method for determining whether to provide a requested service includes steps of receiving a current request for at least one secure service; searching a cache for a stored decision on whether to provide the at least one secure service, wherein the stored decision was made responsive to a prior ...

11/30/06 - 20060272004 - Granting an access to a computer-based object
In order to grant an access to a computer-based object, a memory card having a program code processor is provided, on which at least one public and private key assigned to the memory card are stored. In addition, an item of license information is provided, which comprises at least one ...

11/23/06 - 20060265735 - Content transmission apparatus, content reception apparatus, content transmission method and content reception method
Disclosed are a content transmission apparatus and a content reception apparatus so constructed as to mutually authenticate before transmitting content. In authentication, the time period from the transmission of an authentication request or of authentication response to the arrival of a reception confirmation is measured; only when the measured value ...

11/23/06 - 20060265734 - Method and apparatus for constructing an access control matrix for a set-top box security processor
In multimedia systems requiring secure access, a method and apparatus for constructing an access control matrix for a set-top box security processor are provided. A security processor may comprise multiple security components and may support multiple user modes. For each user mode supported, at least one access rule table may ...

11/16/06 - 20060259956 - System and method for filtering unavailable devices in a presence and availability management system
A method for communicating communication network availability information regarding an individual to at least one subscriber of the individual's availability information. According to one embodiment, the method includes detecting whether the individual is present on at least one communication network and determining availability of the individual for each access level ...

11/16/06 - 20060259955 - Attribute-based allocation of resources to security domains
The invention relates to a method for the optimized assignment of access rights to IT resources managed by means of a security management system and to a correspondingly adapted security management system. According to the invention a security domain is defined on the basis of at least one attribute of ...

11/16/06 - 20060259954 - System and method for dynamic data redaction
A system, method and media for dynamically redacting data based on the evaluation of one or more policies. This abstract is not intended to be a complete description of, or limit the scope of, the invention. Other features, aspects and objects of the invention can be obtained from a review ...

11/16/06 - 20060259953 - Method and apparatus for managing computer system access
A method and apparatus for managing access to information in a computer system. A first profile is provided to one or more system users. The first profile indicates predetermined access privileges to the information in the computer system. The first profile may then be accessed by one of the system ...

11/09/06 - 20060253896 - Proxy on demand
In a first aspect of the present invention, a Wholesaler dynamically identifies one of a plurality of AAA services at a remote domain to route an access request to. The AAA service is selected based upon a set of rules applied to information which has been received dynamically from the ...

11/09/06 - 20060253895 - Video communication call authorization
The disclosed systems and methods provide a centrally located call manger for authorizing calls from a caller to a recipient. In particular, the systems and methods relate to using a centralized store of authorization parameters relating to one or more appliances, callers, recipients, or content types. Packet-based communications between a ...

11/09/06 - 20060253894 - Mobility device platform
A mobility device platform allowing for secure mobile computing is provided. In an illustrative implementation, an exemplary mobility device platform comprises a mobility device operable to communicate with at least one host environment through one or more communications interfaces. The mobility device is further operable to process and store data. ...

11/09/06 - 20060253893 - Method and network for wlan session control
A network is provided comprising at least one access point (AP1, AP2) and one access-controlling node (WSN, AS) whereby the identity of the station can be approved by the access controlling node (WSN, AS). The at least one access-controlling node WSN issues at least one IAPP message causing the AP ...

10/19/06 - 20060236372 - Application-backed groups in a common address book
A computerized method for allowing multiple applications to create groups in a common address book while maintaining control over access to the created group. A creating application creates a group within a shared address book and may provide access logic for access to the group. Additional applications may then send ...

10/19/06 - 20060236371 - Mechanism to determine trust of out-of-band management agents
According to one embodiment, computer system is disclosed. The computer system includes a central processing unit (CPU) to simultaneously operate a trusted environment and an untrusted environment and a chipset coupled to the CPU. The chipset includes an interface to couple to a management agent, and protected registers having a ...

10/05/06 - 20060225127 - Systems and methods for authenticating a user interface to a computer user
Access to an authentication image may be protected so that only authenticated processes have access to the image. The image can be displayed to authenticate a User Interface (UI) to a computer user. The image indicates the UI can be trusted. If the image is not displayed, it may be ...

10/05/06 - 20060225126 - Securely using a display to exchange information
A first device has a display that is able to show information. The information is to be exchanged with a second device. The information is cleared from the display following receipt of an indication from the second device that the information has been successfully inputted at the second device. ...

10/05/06 - 20060225125 - Terminal device login method and system
A terminal device login system and method using the same for managing login allocation process for client computers are proposed. The terminal login device system at least has a detecting unit, a storage unit, a request unit, a processing unit, and a control unit. First, the detecting unit of the ...

09/28/06 - 20060218622 - Home network system
A home network system including a server apparatus and an apparatus, which are capable of communicating therebetween, each of which has an authentication ID control unit equipped with an authentication ID storage unit for storing an authentication ID given from an authentication ID giving unit. Connection between the server apparatus ...

09/21/06 - 20060212926 - Method and device for printing sensitive data
In a method and system for printing of sensitive data, encrypted sensitive data to be printed is transferred to a printing device having a printing unit. This sensitive data to be printed is decrypted to create decrypted sensitive data. The decrypted sensitive data is converted into control signals for activation ...

09/14/06 - 20060206920 - Method and apparatus for backing up and restoring domain information
A method of backing up domain information relating to the construction of a domain is provided. In the method, the domain information is encrypted and the encrypted domain information is stored in a predetermined storage device in the domain the encrypted domain information to the predetermined storage device, thereby securely ...

09/14/06 - 20060206919 - System and method of secure login on insecure systems
A method for authenticating a user for use of a server computing device wherein the server computing device is connected by a network to a host device. Generating a key representation image having thereon a plurality of individual key images placed at random positions, each corresponding to a possible character ...

09/14/06 - 20060206918 - System and method for using a visual password scheme
A system and method for inputting a password. The system and method operates to associate unique non-descriptive graphical features with unique text-based characters. The system and method operates to receive in sequence, a plurality of text-based characters. The system and method operates to display in sequence, in accordance with a ...

09/07/06 - 20060200855 - Electronic verification systems
A verification system which can be used over electronic networks, such as the Internet, to help prevent phishing, electronic identity theft, and similar illicit activities, by verifying the authenticity of electronic entities (for example, websites). Users and electronic entities register with an authenticating entity. The authenticating entity shares an encryption ...

09/07/06 - 20060200854 - Server with authentication function, and authentication method
A server for authenticating a user has a receiving unit, an identification mail transmitting unit and an authentication control section. The receiving unit receives an authentication request from the user. The identification mail transmitting unit transmits an identification mail to the user. The identification mail identifies whether or not the ...

08/24/06 - 20060190989 - Information processing apparatus and data management system
It is an object to provide an information processing apparatus and a data management system which can access data and maintain security even in an environment where the apparatus cannot be connected to a security managing server. To accomplish the object, a secure application discriminates whether or not authentication can ...

08/24/06 - 20060190988 - Trusted file relabeler
A trusted relabeler system and software is provided that allows for the simultaneous reclassification of multiple files to multiple classification labels (security domains or computer networks) through automation of the multi-person review process. Roles, used to break down the requirements of the multi-person review process, dictate what specific function a ...

08/17/06 - 20060184997 - Control for inviting an unauthenticated user to gain access to display of content that is otherwise accessible with an authentication mechanism
Enabling an unauthenticated user to access content associated with an authenticated user as though the unauthenticated user had a selected user relationship with the authenticated user. The user relationship may comprise a relationship degree, a relationship category, a relationship rating, and/or the like. An invitation to join an electronic service, ...

08/17/06 - 20060184996 - Method and system of auditing databases for security compliance
Method and system of auditing databases for security compliance. The method and system relating to querying databases for security parameters and auditing the queried parameters against authorized security parameters to determine security compliance of the databases. ...

08/10/06 - 20060179473 - Power tool system
A power tool system with enhanced antitheft capability has a hand-held power tool and a wearable piece worn by the user. The wearable piece incorporates a certification unit which stores an identification code specifying the power tool and transmits the identification code to an authenticator incorporated in the power tool. ...

08/10/06 - 20060179472 - System and method for effectuating computer network usage
In one example of an embodiment of the invention, a method to control usage of resources on a network by an entity comprising a user and a host device to couple the user to the network is disclosed, comprising receiving identification information from the entity, evaluating the identity of user, ...

08/10/06 - 20060179471 - System and method for providing secure disclosure of a secret
A method, system, and computer program product for processing entry of a secret that comprises an ordered sequence of elements. In accordance with the method of the present invention a set of elements is presented in a mutually fixed element arrangement to a prover. The presenting step further includes assigning ...

08/03/06 - 20060174321 - Digital data file management method and recording medium for recording digital data file management program thereon
The digital data file management method reads a header of the digital data file stored on an external medium. Based on the read header, the digital data file is selectively uploaded and/or managed. ...

07/27/06 - 20060168644 - Rfid tag with embedded internet address
A radio frequency identification (RFID) transponder comprises a memory space having a predetermined data field for storing a destination address identifying a location on the Internet corresponding to the RFID transponder. The Internet address may further comprise an e-mail address or Uniform Resource Locator (URL). In an embodiment of the ...

07/27/06 - 20060168643 - User authentication
A system determines whether to grants access to a network server by a user. Initially, a user attempts to gain access to a network server, such as a web server. Prior to granting access to the network server, the network server authenticates the user by sending an authentication request to ...

07/27/06 - 20060168642 - Using presence to inform other clients about capability limitations
A presence service is employed to keep track of the kinds of content types that are supported by various subscribing client devices as well as any size limitations for a given content type supported by a given device so that another client device wishing to send a message to a ...

07/20/06 - 20060161968 - Method and apparatus for secure delivery and evaluation of prototype software over a network
Prototype software is securely delivered and evaluated by electronic transfer over a network. The software is secured by multiple levels of encryption to prevent unauthorized copying, modification, and/or use of the prototype software. Electronic transfer of the prototype software minimizes the time and cost associated with providing prototype software for ...

07/20/06 - 20060161967 - Sharing of authenticated data
Methods and apparatus for sharing of authenticated data includes sharing of location information data from a certified source. The method of sending authenticated data from a sender to a third party comprises the steps of: determining data associated with a communication session initiated by a user, the data being unauthenticated; ...

07/13/06 - 20060156386 - Information storage medium storing management information of application executable from a plurality of storage media, and method and apparatus for executing the application
An information storage medium storing management information of an application executable from a plurality of information storage media, and a method and apparatus for executing the application based on the management information are provided. The method includes: if a new information storage medium is inserted into a reproducing apparatus during ...

07/13/06 - 20060156385 - Method and apparatus for providing authentication using policy-controlled authentication articles and techniques
A method and apparatus provides first or second factor authentication by providing selectability of a plurality of second factor authentication policies associated with a second factor authentication article. The first or second factor authentication article includes authentication information, such as a plurality of data elements in different cells or locations ...

07/13/06 - 20060156384 - Method and apparatus for extensible security authorization grouping
A method and apparatus for providing an extensible grouping mechanism for security applications for use in a computer system. Groups may be established and maintained by non-system administrators and used to control actions that are taken with respect to objects, such as files and other resources. The groups and associated ...

06/29/06 - 20060143691 - System and method for manipulating and managing computer archive files
Certain embodiments of the present invention provide an archive management application that operates within a host application to provide access to an archive and/or allow access to and/or modification of files in an archive using the host application's interface, instead of operating as a separate standalone archive management application. In ...

06/29/06 - 20060143690 - Multiple methods for transacting, publishing and purchasing copyrighted digital content
A method is disclosed for transacting, purchasing and publishing copyrighted digital content that solves problems of the digital copyright that could not protect by methods of the prior art. The present invention allows various sales methods and licensing methods by using a copyrighted digital content description file, and effectively controls ...

06/22/06 - 20060136992 - Image processing apparatus, method for controlling the same, program, and storage medium
An image processing apparatus for providing at least a service to a service requester receives a service execution request and authentication information of a service requester from the service requester and issues a request for authenticating the service requester to an authentication service. Also, the image processing apparatus executes the ...

06/22/06 - 20060136991 - Method and system for assigning access rights in a computer system
The invention relates to a system and a method for assigning access rights in a computer system. The system transforms an existing system of access rights to a more structured system. In many cases this is a prerequisite such that role-based administration can be used. The method identifies the existing ...

06/22/06 - 20060136990 - Specializing support for a federation relationship
The invention provides federated functionality within a data processing system by means of a set of specialized runtimes. Each of the plurality of specialized runtimes provides requested federation services for selected ones of the requestors according to configuration data of respective federation relationships of the requestors with the identity provider. ...

06/22/06 - 20060136989 - Method of authentication of memory device and device therefor
A memory device authentication method that includes providing a memory device in a host device, and providing both an encryption algorithm, triggering the encryption algorithm during writing of data in the memory device, wherein the encryption algorithm during writing of data and generates a device altered data, then sorting the ...

06/15/06 - 20060130123 - Method for authenticating database connections in a multi-tier environment
Method, system, and product for authenticating database connections between a database server box having a database server and a database gateway; and an application server box having an application server and a connection authenticator. The application server and the connection authenticator are connected to the database server over an IP ...

06/15/06 - 20060130122 - Image forming apparatus and image forming method
In a case where a client user is already registered in a database server, user authentication is executed. Specifically, login to a network with use of a username and a password is executed and an authentication server carries out an authentication process, or authentication with use of a user certificate ...

06/08/06 - 20060123466 - System and method of extending communications with the weigand protocol
An extension of the industry standard Wiegand protocol for enabling two way extended communication, enhanced error detection, encryption, multiple reader capability, and enhanced information regarding the embedded data stream between a Wiegand device such as a card reader and a control panel on the existing 5-wire bus structure without requiring ...

06/08/06 - 20060123465 - Method and system of authentication on an open network
A system for authentication over an open network includes at least a first endpoint on the open network and a second endpoint on the open network that require authentication of a transaction therebetween. A transaction authority communicates with the first endpoint and the second endpoint via the open network. An ...

06/08/06 - 20060123464 - Phishing detection, prevention, and notification
Phishing detection, prevention, and notification is described. In an embodiment, a messaging application facilitates communication via a messaging user interface, and receives a communication, such as an email message, from a domain. A phishing detection module detects a phishing attack in the communication by determining that the domain is similar ...

06/08/06 - 20060123463 - Security access device and method
A security system and method is provided. An embodiment includes a security access device that includes a first transmitter for transmitting authentication to a computer and a second transmitter for transmitting verification information to a computer. The first transmitter is typically active and consumes power from the access device, while ...

06/01/06 - 20060117377 - Process for securing the access to the resources of an information handling system (i.h.s.)
A process for securing the access to the resources of an Information Handling System (I.H.S.) in accordance with the present invention which involves the steps of: initiating a first preliminary qualification process for the purpose of generating a system qualification file (SQF) comprising a list and identifiers of components detected ...

05/18/06 - 20060107309 - Using an access key
In an embodiment, a secure module is provided that provides access keys to an unsecured system. In an embodiment, the secure module may generate passcodes and supply the passcodes to the unsecured system. In an embodiment, the access keys are sent to the unsecured system after the receiving the passcode ...

05/18/06 - 20060107308 - Method, system, and program for processing complexes to access shared devices
Provided are a method, system and program for processing complexes to access shared devices. A lock to a plurality of shared devices is maintained and accessible to a first and second processing systems. The first processing complex determines a first delay time and the second processing complex determines a second ...

05/18/06 - 20060107307 - Object location based security using rfid
A system and method for controlling access to a wireless networking system using RFID tags is provided. The security system and method uses RFID tags to determine the location of mobile computing device. The security system and method selectively allows access to the wireless networking system based on the determined ...

05/11/06 - 20060101505 - Automatic re-authentication
Upon successfully authenticating a client device with a server system, the client device and server system share auto-reconnect data. Upon subsequently losing and re-establishing communications with the server system, the client sends an auto-authenticate request to the server. The auto-authenticate request includes a session verifier that is based at least ...

05/04/06 - 20060095954 - Generic access network (gan) controller selection in plmn environment
In one embodiment, a scheme is provided for selecting a generic access network (GAN) controller by a user equipment (UE) device disposed in a network environment including a GAN. Responsive to a query request by the UE device, one or more IP addresses of GANC nodes are obtained, each node ...

04/20/06 - 20060085839 - Centrally managed proxy-based security for legacy automation systems
A system that facilitates enhanced security with respect to an industrial automation environment comprises a legacy device that is existent within an industrial automation system and a central access authority that provides access rules to a proxy. The proxy receives an access request directed to the legacy device and determines ...

04/13/06 - 20060080726 - Method and apparatus for determining controlller authorizations in advance
The present invention relates to a method, for a controller (103) for invoking actions on a device (105), of determining which actions are authorized to be invoked on said device (105). The controller (103) is adapted for invoking actions on the device (105) by sending an action command (A1, A2, ...

04/06/06 - 20060075471 - Authentication method, authentication apparatus and computer-readable storage medium
An authentication method makes a personal identification when a plurality of operation target regions corresponding to a personal identification code are operated in a predetermined sequence. The authentication method judges whether or not a predetermined operation target region that is preset is operated in a preset operation direction or a ...

04/06/06 - 20060075470 - Storage network system and access control method
There is provided means for preventing a wrong DD from being registered to an initiator for storage devices connected to an IP network through iSCSI, thereby providing security functionality. A storage network system including hosts 100, an iSNS server 130, and storage devices 120 interconnected through a network and being ...

04/06/06 - 20060075469 - Integrated access authorization
A facility for performing an access control check as an integral component of an operating system and utilizing a centralized policy store is provided. The facility executes as an integral part of an operating system executing on a computer and receives an authorization query to determine whether a principal has ...

04/06/06 - 20060075468 - System and method for locating malware and generating malware definitions
A system and method for managing malware is described. One embodiment includes a downloader for downloading portion of a Web site, a parser for parsing the downloaded portion of the Web site; an active browser for identifying changes to the known configuration of the active browser, wherein the changes are ...

03/30/06 - 20060070114 - Log-on service providing credential level change without loss of session continuity
A security architecture has been developed in which a single sign-on is provided for multiple information resources. Rather than specifying a single authentication scheme for all information resources, the security architecture associates trust-level requirements with information resources. Authentication schemes (e.g., those based on passwords, certificates, biometric techniques, smart cards, etc.) ...

03/30/06 - 20060070113 - Method for wireless network security exposure visualization and scenario analysis
According to an embodiment of the present invention, security exposure analysis of wireless network within a selected local geographic area is provided. A computer model of the selected local geographic region comprising a layout is generated. Information regarding wireless network components is provided to the computer model. Using the computer ...

03/23/06 - 20060064738 - Device usage information writing apparatus and method thereof, image forming apparatus and device system having the apparatus
A device usage information writing apparatus comprises a memory having a usage information storage area wherein the usage information of a job execution device of a user is stored with reference to the user; a determination part of an existence of area wherein the existence of the usage information storage ...

03/16/06 - 20060059540 - Network security through configuration servers in the fabric environment
A network configuration device or entity has control of defined management and security functions in the network, or in many embodiments, in a Fibre Channel fabric. The network configuration device may control many functions. Foremost, it may control the recognition, operation and succession procedure for network configuration entities. It may ...

03/09/06 - 20060053480 - Authentication of handheld devices for access to applications
The present invention provides a method and system for communicating via a handheld device to Internet applications such as customer relationship management applications. Automatically generated user information, such as an electronic mail (e-mail) address, containing a certification key is used to authenticate a mobile user's access to Internet applications. Access ...

02/23/06 - 20060041930 - Accessing personal information
Dependents of benefit plan participants can be given access to personal information of a plan participant. The dependents, who are not existing users or members of the plan, can be allowed access to some or all of the personal information associated with the plan participant. ...

02/16/06 - 20060037062 - Method, system and program product for securing resources in a distributed system
Under the present invention, a mapping is provided that interrelates security permissions for an application-based resource with security permissions for a set of IT-based resources in the distributed system. When a desired security permission for the application-based resource is expressed, the mapping can be accessed to determine the corresponding security ...

02/09/06 - 20060031924 - Message processing apparatus and method in a portable internet system
The invention relates to a message processing method and apparatus in a portable Internet system, in which a base station of the portable Internet system is designed to have a number of connection processors and connection controllers. This can increase the number of mobile subscriber stations that a single base ...

01/26/06 - 20060021008 - Security output device, security output system, output device control program and storage medium, and security output method
A security output device including: an output data receiving unit that receives output data on the basis of communication setting related to setting of a communication path; an output unit that performs output on the basis of the output data received by the output data receiving unit; an output start ...

01/26/06 - 20060021007 - System and method for lost data destruction of electronic data stored on portable electronic devices
A data security system and method protects stored data from unauthorized access. According to one aspect of the invention, a client computing device communicates periodically with a server. If communications is note established between the client and the server for a selected activation interval and a subsequent grace period, the ...

01/26/06 - 20060021006 - System and method for lost data destruction of electronic data stored on a portable electronic device which communicates with servers that are inside of and outside of a firewall
A data security system and method protects stored data from unauthorized access. According to one aspect of the invention, a client computing device communicates periodically with a server. If communications is note established between the client and the server for a selected activation interval and a subsequent grace period, the ...

01/26/06 - 20060021005 - System and method for lost data destruction of electronic data stored on a portable electronic device using a security interval
A data security system and method protects stored data from unauthorized access. According to one aspect of the invention, a client computing device communicates periodically with a server. If communications is not established between the client and the server for a selected activation interval and a subsequent grace period, the ...

01/26/06 - 20060021004 - Method and system for externalized http authentication
A method is presented for providing an HTTP-based authentication mechanism. A request for a controlled resource is received from a client at a first server, which sends a request for an uncontrolled resource to a second server, which may be an HTTP-based authentication server, e.g., by redirecting a request via ...

12/29/05 - 20050289639 - System and method of securing the management of documentation
The present invention provides an integrated method and system implemented on a plurality of computer systems in a network. The method is for securing and controlling access to digitized files utilized in the documentation management process. The method further comprises generating a project encryption key for an identified project having ...

12/22/05 - 20050283826 - Systems and methods for performing secure communications between an authorized computing platform and a hardware component
A hardware-based method for performing secure communications between an authorized computing platform (ACP) and a hardware component is provided. In this method, a secure communication path is established between the ACP and the hardware component. Thereafter, data transmitted over the secure communication path between the ACP and the hardware component ...

12/22/05 - 20050283825 - Method and system for providing networked physical security
An information handling system outputs via an Internet protocol, a message, in response to which, one or more devices perform one or more operations for providing physical security. ...

12/15/05 - 20050278775 - Multifactor device authentication
Method and apparatus for device authentication with multiple factors. In one embodiment a combination of attributes and/or identifying values known by the device and the authenticator are presented for authentication. The combination of attributes may be presented together, or separately. Invalidity of one of the combination of attributes may result ...

11/24/05 - 20050262550 - Authentication apparatus, method and program
An authentication apparatus for solving problems involving convenience and security is disclosed. The authentication apparatus according to the present invention is an authentication apparatus having a plurality of authentication mechanisms, the apparatus determining (S23) whether authentication information that has been input by a card reader for inputting authentication information of ...

11/17/05 - 20050257247 - System and method for maintaining security in a distributed computer network
A system and method for maintaining security in a distributed computing environment comprises a policy manager located on a server for managing and distributing a security policy, and an application guard located on a client for managing access to securable components as specified by the security policy. In the preferred ...

11/10/05 - 20050251854 - System, apparatuses, methods and computer-readable media for determining security status of computer before establishing connection thereto first group of embodiments-claim set iii
A system of the invention comprises first and second computers. The first computer retrieves and incorporates its security state data in a message requesting a network connection with the second computer. The second computer receives the message and determines whether its security policy data permits connection with the first computer ...

11/03/05 - 20050246762 - Changing access permission based on usage of a computer resource
Changing access permission based on usage of computer resources including maintaining records of a user's usage of computer resources in a security domain, the user having a scope of access permission for the computer resources; measuring the user's disuse of one or more of the computer resources in the security ...

10/20/05 - 20050235339 - Limiting access to publicly exposed object-oriented interfaces via password arguments
Limiting access to publicly exposed object-oriented interfaces is disclosed. A system includes inter-related first objects that share a predetermined password. First object-oriented interfaces define methods supported by the first objects. The first objects publicly expose the first interfaces, which are queryable by the first objects and second objects. Each first ...



###

FreshPatents.com Support