FREE patent keyword monitoring and additional FREE benefits. /images/triangleright (1K) REGISTER now for FREE triangleleft (1K)
Fresh Patents
Monitor Patents Patent Organizer How to File a Provisional Patent Browse Inventors Browse Industry Browse Agents Browse Locations


Information Security > Access Control Or Authentication > Network > Credential

Credential

Credential patent applications listed are from June 2005 to current and include Date, Patent Application Number, Patent Title, Patent Abstract summary and are linked to the corresponding patent application page.

11/15/07 - 20070266428 - Method, system, and apparatus for nested security access/authentication
The disclosure details a nested security access system that manages access points/verification requests to create a series of layered security applications for securing access/user identification data. The NSA system works in coordination with an access point/verification module to generate a series of instructions as a login/verification module that may be ...

11/15/07 - 20070266427 - Biometric template similarity based on feature locations
The present invention relates to a method and a system of determining correspondence between location sets. A basic idea of the present invention is to provide a scheme in which correspondence between location sets is determined. A feature location set (X) comprising a number (n+1) of components is transformed into ...

11/15/07 - 20070266426 - Method and system for protecting against denial of service attacks using trust, quality of service, personalization, and hide port messages
According to an embodiment of the invention, a method for processing a plurality of service requests in a client-server system includes server steps of receiving at least one request for service from a client and providing a level of service based on a trust level provided in the at least ...

11/08/07 - 20070261108 - Service method and apparatus by granting authorization before authentication
In a service method by granting authorization before authentication, a service processing unit receives a service request that includes authentication information, and provides corresponding service. An authentication unit is used to authenticate the authentication information of the service request. A decision control unit is used to determine whether the service ...

11/08/07 - 20070261107 - Method and apparatus for managing bootstrap credentials for credentials-storage systems
One embodiment of the present invention provides a system that facilitates accessing a credential. During operation, the system receives a request at a credentials-storage framework (CSF) to retrieve the credential. If a target credential store containing the credential is not already connected to the CSF, the system looks up a ...

11/01/07 - 20070256122 - Method and system for creating and tracking network sessions
A method and system is disclosed for creating and tracking network sessions. A request to access a network is received from an entity. The entity is authenticated after the request is received. Authenticated identity information associated with the entity, network address information associated with the entity, and network location information ...

11/01/07 - 20070256121 - Providing guest users access to network resources through an enterprise network
Guest user are enabled to access network resources through an enterprise network using a guest user account. A guest user account may be created for a guest for a limited time. Guest account credentials of the guest account may be provided to the guest to use the guest account using ...

11/01/07 - 20070256120 - System and method for implementing fast reauthentication
A system for efficiently reauthenticating a client of a network. In a specific embodiment, the system includes an authentication server and a Security GateWay (SGW) in communication with the client. The SGW includes reauthentication information associated with the client. In a more specific embodiment, the authentication server includes an Authentication, ...

10/25/07 - 20070250918 - Authentication system and security device
An authentication system for authenticating a computer user to a content server comprises an interface software program to be executed on a client computer for interfacing said client computer via a network to said content server and a digital identification key, said digital identification certificate cooperating with said interface software ...

10/25/07 - 20070250917 - Method and device for the remote configuration of an access unit
A method for configuration of a data processing unit, in particular, a WLAN access point is disclosed. In order to prevent misuse of the data processing unit, activatable/deactivatable functions are automatically configured. ...

10/25/07 - 20070250916 - B2c authentication
Embodiments of the invention provide systems and methods for providing authentication of a web site. According to one embodiment, authenticating a web site can comprise receiving a request from a verifier to authenticate the web site. For example, the web site can be authenticated based on pre-stored registration information for ...

10/25/07 - 20070250915 - Versatile access control system
An access control system and method are provided, which include a plurality of authorities, a plurality of access control elements and an access control list. Each authority associates at least one of a plurality of proof of knowledge operations with at least one of a plurality of proof of knowledge ...

10/25/07 - 20070250914 - Method and system for resetting secure passwords
A method and system for resetting passwords in which an authenticated user who requests a new password is substantially immediately provided with one portion of the reset password while a second portion of the password is sent to a location to which the legitimate user for which the password is ...

10/18/07 - 20070245408 - Association of in-band and out-of-band identification credentials of a target device
An association between a system's in-band identification credentials with out-of-band identification credentials may arise by making a universal serial bus device emulation in the form of either a virtual mass storage device or a virtual network adaptor. In the case of the former, a machine readable name is decoded to ...

10/18/07 - 20070245407 - Login screen with identifying data
Techniques are described which may be employed to provide a login screen with identifying data. In an implementation, a login screen is displayed having an image that identifies a user. Credentials are received via the login screen to log the user onto a service provider over a network. ...

10/11/07 - 20070240205 - Security level establishment under generic bootstrapping architecture
Security level establishment for an application in a terminal equipment under a generic bootstrapping architecture offering a plurality of different bootstrapping mechanisms, the terminal equipment comprising a credential establishment entity and an application entity, comprising a request for a credential for the application from the application entity to the credential ...

09/20/07 - 20070220595 - System and method for network-based fraud and authentication services
A system and method for providing identity protection services. According to an embodiment, a validation server receives over a network a response from a credential associated with a user, the credential response provided by the user in order to authenticate the user to one of a plurality of sites on ...

09/20/07 - 20070220594 - Software based dynamic key generator for multifactor authentication
A software based method and system providing secure and robust multifactor authentication of internet users using at least one factor each of 1) Something you know; 2) Something you have; and 3) Something you are—A physical characteristic of the user or his/her computer/device. This method of authenticating the identity of ...

09/13/07 - 20070214500 - System and method for dynamic discovery and database password expiration management
A system and method that proactively manages login security data is provided. The system selects requesters of a software application resource. A privileged requester is used to request login security data pertaining to the selected requesters. The login security data that is received is compared to one or more parameters ...

09/06/07 - 20070209064 - Secret file access authorization system with fingerprint limitation
A Secret file access authorization system with fingerprint limitation includes an authorization module, encryption module and certification module in a server linked by programs. A user module of least one client machine contains a kernel encryption/decryption unit embedded in the client operation system kernel, so access authorization to secure files ...

08/30/07 - 20070204332 - Authentication of baseboard management controller users in a blade server system
User authorization and access information may be stored in a remote assistant card or chassis management module (CMM). The CMM may be in communication with each baseboard management controller (BMC) in a blade server system. Each BMC may authenticate its authorized users from the CMM using a simple user authorization ...

08/23/07 - 20070199054 - Client side attack resistant phishing detection
A phishing detection client component and method is provided. The component can be employed as part of a system to detect and, optionally, prevent phishing attacks. The phishing detection client component can provide password reuse event report(s), for example, to a phishing detection server component. The client component can further ...

08/16/07 - 20070192840 - Mobile communication terminal
A mobile communication apparatus comprising a secure element and such a secure element is disclosed. Further a user interface arranged to display a first set of resources and, upon authentication of an approved user identification, to display a second set of resources, wherein said second set of resources comprises at ...

08/09/07 - 20070186278 - Print processing system and print processing apparatus
In a thin client system, a PC authentication device which authenticates a client is set in an office of the client. Data existing in a server is printed by using a printer provided in the vicinity of a client PC according to the following steps. (1) The PC authentication device ...

08/02/07 - 20070180506 - Method of evaluating credentials of individuals and associated apparatus
A computerized method of authenticating credentials of an individual includes receiving credentials relating to the individual, obtaining from a third party authentication of said credentials, accepting or rejecting an individual based upon the authentication results and permitting remote access to credentials of approved or accepted individuals to confirm certification of ...

08/02/07 - 20070180505 - Dynamic collation of domain for user authentication on existing devices
Improved network authentication process (NAP) allows omission of difficult-to-remember credentials, such as domain names/contexts, when users log on to a device via a local user interface (UI). Embodiments receive some authentication credentials, such as username and password, and obtain and parse reply data containing additional authentication credentials, such as domain ...

08/02/07 - 20070180504 - System and method for validating a user of an account using a wireless device
The invention provides a system and method of authenticating a user to a network. For the method, it comprises: when the user at the device initiates a request for the restricted resource, the network receives the request and automatically initiates an authentication step relating to the user prior to providing ...

08/02/07 - 20070180503 - Imx session control and authentication
A secured network connection requires three authentication routines. A system access authentication routine requires a client network device to submit user authentication information to a network server. Upon successful user authentication, the network server creates a Client Service Access Pass, embeds this pass into a dynamic web page transmitted to ...

08/02/07 - 20070180502 - Rights-context elevator
System(s), techniques, and/or method(s) (“tools”) are described that enable a user to elevate his or her rights. The tools may do so by switching a user to an account having higher rights or a different, higher-rights context of a same account. The tools may elevate a user's rights after a ...

08/02/07 - 20070180501 - Elevating rights
System(s), techniques, and/or method(s) (“tools”) are described that enable a user to elevate his or her rights. The tools may do so by switching a user to an account having higher rights or a different, higher-rights context of a same account. The tools may elevate a user's rights after a ...

07/26/07 - 20070174902 - System and method for controlling an authorization procedure of a task
A system for controlling an authorization procedure of a task according to a preferred embodiment is provided. The system includes: a database server for storing data about a task to be authorized; and an application server for obtaining basic information of the task to be authorized, configuring an authorization procedure ...

07/26/07 - 20070174901 - System and method for automatic wireless network password update
A system and method that allows an administrator to set a new password at a wireless access point, such as a traditional WAP or a wireless router. The wireless access point creates a message that includes the new password. The message is encrypted using the old password that was previously ...

07/19/07 - 20070169181 - Simple, secure login with multiple authentication providers
A secure distributed single-login authentication system comprises a client and a server. The client collects a user name and password from a user and tests that user name and password at a variety of potential authentication servers to check where the login is valid. It combines the password with a ...

07/12/07 - 20070162965 - Query data packet processing and network scanning method and apparatus
A method for detecting within a networked computer a target vulnerability such as a Trojan Horse residing therein is disclosed, wherein the vulnerability is characterized by a signature response to an encrypted query. The method includes encrypting a plurality of query data packets in accordance with a plurality of encryption ...

07/12/07 - 20070162964 - Embedded system insuring security and integrity, and method of increasing security thereof
A system containing both software and hardware to perform secure operations especially suited for Digital Right Management. The system has hardware to accelerate Elliptic Curve calculations, hash algorithms, and various encryption algorithms. The system runs on encrypted software, and the software is checked for integrity before it boots. ...

07/12/07 - 20070162961 - Identification authentication methods and systems
Identification authentication methods and systems are provided. In accordance with some embodiments, a user can verify or authenticate an item to ensure if the item is authentic by utilizing a security token. For example, a user can authenticate a website to determine if the website is authentic by providing information ...

06/28/07 - 20070150943 - Computer program product, apparatus and method for secure http digest response verification and integrity protection in a mobile terminal
A mobile terminal for securely communicating with a network includes a user identity module (UIM) and a user equipment module. The user equipment module includes a client application. The UIM is in operable communication with the user equipment and includes a password provisioning module (PPM), a password generating module, a ...

06/28/07 - 20070150942 - Centralized identity verification and/or password validation
Described is a system and method for validating a user's login information. A provider (e.g. a provider of goods and/or services) receives a login request from a customer that includes a token value. The provider passes the token value to a centralized identity verifier with which the customer is registered. ...

06/28/07 - 20070150941 - Presence system and method for providing access to web services
A presence system provides access to web services offered by presentities. The presence system includes a presence server for collecting and storing presence information on a presentity and providing the presence information to watchers of the presentity. The presence server further receives from the presentity web service invocation information providing ...

06/21/07 - 20070143834 - User authentication in a communication system supporting multiple authentication schemes
Authentication of a user of a communication system comprising a session control server and an authentication server, wherein the communication system supports at least two separate authentication schemes, comprising the steps of determining, at the session control server, that a registration request from the user to be authenticated leaves undefined ...

06/21/07 - 20070143833 - Voice controlled portable memory storage device
A portable memory storage device (“device”) is provided. The device includes a microphone for receiving a user voice input; a controller that receives the voice input and creates a template; and a plurality of non-volatile memory cells for storing the template, wherein the template is used to authenticate the user ...

06/21/07 - 20070143832 - Adaptive authentication methods, systems, devices, and computer program products
A method of providing data communications between first and second computing devices over a data network may include receiving a request for data communication at the first computing device from the second computing device over the data network. After receiving the request for data communication, a request for a credential ...

06/21/07 - 20070143831 - System and method of authentication
The above-disclosed subject matter is to be considered illustrative, and not restrictive, and the A system and method of resetting authentication tokens is disclosed. In a particular embodiment, the method includes prompting a user of a computing device to transmit a first authentication token associated with an Internet account. The ...

06/21/07 - 20070143830 - Method, apparatus and system for preventing unauthorized access to password-protected system
A method, apparatus and system are provided for preventing unauthorized access to a password-protected system by authenticating a user over a communication medium. Authentication of a user is accomplished by sending to the user, via a communication medium, an instruction that includes at least one element in which the user ...

06/21/07 - 20070143829 - Authentication of a principal in a federation
Methods, systems, and computer program products are disclosed that give entities flexibility to implement custom authentication methods of other entities for authentication of a principal in a federation by authenticating the principal by an identity provider according to a service provider's authentication policy and recording in session data of the ...

06/14/07 - 20070136796 - Wireless authentication
A wireless authentication system for authenticating a user before allowing access to a protected resource is described herein. An authentication device receives an indication of an intent to access a protected resource. The authentication device sends a request for a key. The wireless user device and the authentication device may ...

06/14/07 - 20070136795 - Method and apparatus for re-establishing communication between a client and a server
One embodiment of the present invention provides a system that re-establishes communication between a client and a server after an unexpected termination of communication. During operation, the system receives a request from the client at the server to re-establish communication between the client and the server, wherein the request includes ...

06/14/07 - 20070136794 - Request authentication token
An authentication mechanism for use in network-based services generates an authentication token. The authentication token is provided to a client device as part of the code comprising a content page. The content page code is received and loaded by a browser application at the client device. When the content page ...

06/14/07 - 20070136793 - Secure access to a common session in a composite services delivery environment
Embodiments of the present invention provide a method, system and computer program product for deploying and delivering composite services in an NGN network. In the present invention, a secure composite service enabling data processing system can include channel servlets enabled to establish multiple different channels of access to a common ...

06/14/07 - 20070136792 - Accelerating biometric login procedures
User authentication requests to computer systems are accelerated by selectively comparing user-provided biometric authentication credentials to a subset of credentials. If the user-supplied credential is not recognized, an alternate form of authentication is requested. Valid login events are used to update the subset such that subsequent authentication requests are handled ...

06/07/07 - 20070130617 - System and method for establishing temporary and permanent credentials for secure online commerce
One embodiment of the present invention provides a system for establishing temporary and permanent credentials for secure remote data access. The system includes a temporary smart card configured to provide a temporary credential for a first device, thereby providing the first device with temporary secure access to a remote data ...

05/31/07 - 20070124806 - Techniques for tracking actual users in web application security systems
A method for tracking and identifying an identity of a user accessing a web application. An application normal behavior profile (NBP), wherein said NBP includes a plurality of authentication identifiers of the web application is generated. It is determined using the NBP whether an authentication request submitted by the user ...

05/31/07 - 20070124805 - Cookie with multiple staged logic for identifying an unauthorized type of user
One or more staged cookies are used to control access to a special service, such as a service to send clips of search results to a mobile device. In one embodiment, a client obtains a staged cookie when the client completes a permitted task that a server determines is performed ...

05/31/07 - 20070124804 - System and method to provide for passive anti-theft dockable devices
The system includes a removable entertainment device that interfaces with a docking station. The removable entertainment device includes a controller that implements a software lock to disable the removable entertainment device, if it is improperly removed from the docking station. The docking station uses a challenge and response message to ...

05/24/07 - 20070118889 - Method, software program, and system for managing access to information and the transfer thereof
The present invention relates to a method, software program, and system for managing access to information and the transfer thereof. More particularly, the present invention relates to a method, software program, and system for managing, via the Internet, access to information and the transfer thereof. ...

05/24/07 - 20070118888 - Managing client configuration settings in a network environment
A GUI (Graphical User Interface) Manager is used by a network administrator to fill-in predefined templates. The administrator does not need to compile, debug or write a single line of scripting code. The GUI manager has a “select the box” and “point and click” and “fill-in the blank” approach for ...

05/24/07 - 20070118887 - System and method for establishing historical usage-based hardware trust
Establishing trust according to historical usage of selected hardware involves providing a usage history for a selected client device; and extending trust to a selected user based on the user's usage history of the client device. The usage history is embodied as signed statements issued by a third party or ...

05/24/07 - 20070118886 - Updating security data
For updating first security data, for use with a first server and a second server, wherein the first server and the second server have access to the first security data; and wherein a user is enabled to communicate with the first server and the second server. A generator generates a ...

05/24/07 - 20070118885 - Unique snip for use in secure data networking and identity management
A Process, Method of extracting the unique SNiP portion of DNA then using that unique SNiP to formulate a unique SNiP key and/or unique SNiP data, and using that key and/or data as input into Cryptography Systems, Data Encryption/Decryption, Data Transmission Model, then converting that binary data to a Network ...

05/24/07 - 20070118884 - Name resolution system using name registration intermediary and name resolution intermediary
The name resolution system has a name registration intermediary device for intermediating between a name resolution server and a communication device which transmits a registration request for registering a set of a name and an address of the communication device as an address information of the communication device to the ...

05/10/07 - 20070107050 - Simple two-factor authentication
Internet Security is increasingly of concern as more and more cases of identity theft of online data is reported. Simple login and password authentication for access to sensitive websites like financial, health or other personal data is no longer sufficient. Several mechanisms for additional security, called two-factor authentication have been ...

05/03/07 - 20070101417 - Apparatus and method for automatic update
An apparatus and method for automatic update are provided. The method includes storing authentication information for data, including first and second data, receiving the first data from the device, performing an authentication of the first data using the authentication information, and determining whether to receive the data, including the first ...

05/03/07 - 20070101416 - Security method and system and computer-readable medium storing computer program for executing the security method
A security method and system for maintaining security between a client and a server and a computer-readable medium storing a computer program for executing the security method are provided. The security system includes a memory which stores current authentication information; an authentication information transmission module which transmits the current authentication ...

05/03/07 - 20070101415 - Image processing apparatus, user authentication method and storage medium storing program for user authentication
There is provided an image processing apparatus including a memory that stores an authentication ID type which indicates a type of a user ID which is accepted by an authentication server and an input ID type which indicates a type of a user ID which is inputted by a user, ...

05/03/07 - 20070101414 - Method for stateful firewall inspection of ice messages
An endpoint uses Interactive Connectivity Establishment (ICE) to enable multimedia communications to traverse Network Address Translators (NATs). A security policy enables security devices and asymmetric security devices to forward ICE messages. A management device stores information about an initial message. Later, a security device receives an ICE message and sends ...

05/03/07 - 20070101413 - System and method of using personal data
The present disclosure is directed to a system and method to manage data flow in a network. The method can include storing a plurality of profiles of a user, wherein each profile includes user data. The method can also include receiving a request for a portion of user data. The ...

05/03/07 - 20070101412 - Low code-footprint security solution
Apparatus and method for conducting secured communications with a client device in a network are disclosed. The method includes receiving at the server a request message from the client device, wherein the request message comprises a nonce, a nonce count and an encrypted request, determining whether the client device has ...

04/26/07 - 20070094717 - User authentication system leveraging human ability to recognize transformed images
An authentication system combining human image recognition capability to recognize transformed images, image transform element (41), and image storage element (38), and image display element (40), is implemented to enable user (32) to access a secure resource (31). Said authentication system provides a mass market solution that does not require ...

04/26/07 - 20070094716 - Unified network and physical premises access control server
The present invention provides an access control server that holds information pertaining to both network access and facility access. The access control server enforces policies based on location, type of resource, time of day, duration, or other events, and logs all successful and unsuccessful attempts to access a given resource ...

04/26/07 - 20070094715 - Two-factor authentication using a remote control device
Techniques for performing two-factor authentication using a remote control device are provided. A remote control device is equipped with components to allow a user of the remote control device to provide two-factor authentication credentials using the remote control device. The remote control device is capable of obtaining both a physical ...

04/19/07 - 20070089167 - Impersonation in an access system
The present invention pertains to a system for managing network access to resources that allows a first entity to impersonate a second entity. In one embodiment, the first entity can impersonate the second entity without knowing the second entity's password and/or without altering anything in the entity's set of personal ...

04/19/07 - 20070089166 - Personal passwords management system
The present invention provides a Personal Passwords Management System: PPMS. PPMS combines a method for the selection of an infinite number of unique and highly secure passwords and a simple and secure method of password retrieval. PPMS represents a collection of symbols in a form of tables or any other ...

04/12/07 - 20070083919 - Secure image protocol
A secure image protocol that can be used as a substitute or additional security layer during the login process or during high-risk transactions. In a first embodiment, the secure image protocol of the present invention is used to provide a secure login. In a second embodiment, the secure image protocol ...

04/12/07 - 20070083918 - Validation of call-out services transmitted over a public switched telephone network
A server for authenticating call-out services over a public switched telephone network (PSTN) includes a memory, a port to receive information provided by a caller over the PSTN, the information including ciphertext, and a processor operable to use the information to look-up a value in the memory and to perform ...

04/12/07 - 20070083917 - Apparatus system and method for real-time migration of data related to authentication
The present invention facilitates deploying a new authentication protocol in an established application environment. In one embodiment, an authentication credential is intercepted by a migration module that determines whether data associated with the specified account needs to be migrated from an established server to a target authentication server. A binding ...

04/05/07 - 20070079363 - Multi function peripheral
There is provided a multi function peripheral having a plurality of functions which includes an input unit to input individual identification information, an individual information memory unit that stores individual registration information indicating whether it is allowed to use each function of the plurality of functions responsive to the identification ...

04/05/07 - 20070079362 - Method for secure device discovery and introduction
Methods for transferring a credential between two devices according to a secure protocol are described. Portions of messages in the protocol are encrypted to prevent theft and tampering. Systems using the methods are described and claimed. ...

04/05/07 - 20070079361 - Method and apparatus to authenticate source of a scripted code
A method, apparatus, and computer usable code to grant access to a scripted code hosted at a host site wherein the host site has a window read-only property. A computer client receives a key-code. The computer client determines if key-code matches a known correct window-returning code. Based on that, the ...

03/29/07 - 20070074278 - Imaged watermark in a credential product
A credential product is provided. The credential product includes a credential substrate, a translucent layer and an imageable layer. The imageable layer is positioned between the credential substrate and the translucent layer. At least a portion of the imageable layer is configured to form an image upon exposure to electromagnetic ...

03/22/07 - 20070067832 - System and method for protecting identity information
A method is provided for using an identity service for protecting identity information during an electronic transaction. The method includes registering an identity client, wherein the identity client possesses an associated multi-component identity. The method further includes regulating access to the multi-component identity such that the identity service authorizes dissemination ...

03/22/07 - 20070067831 - Communication system, and client, server and program used in such system
A communication system, capable of offering improved convenience to third parties having no intention of illegal use without affecting benefits of regular (authorized, registered) users, is provided. When a management server receiving an authentication request (containing authentication information inputted by the user of a client) from the client judges that ...

03/22/07 - 20070067830 - System and method for network device administration
A system and method for network device administration. The system includes a file generator, which generates an encrypted file containing data representing multiple usernames and a corresponding number of passwords. The encrypted file is then transmitted to each networked data device on the network. Connection data is then received representing ...

03/08/07 - 20070056027 - Securely processing and tracking consumable supplies and consumable material
A credential production system and methods for securely processing a credential substrate and tracking quantities of consumable material using a credentials production system and secured consumable supplies. The system includes a consumable supply and a memory that contains a state identifier that defines a state of the supply. A supply ...

03/08/07 - 20070056026 - Role-based access control management for multiple heterogeneous application components
Embodiments of the present invention address deficiencies of the art in respect to access control and provide a method, system and computer program product for access control management for a collection of heterogeneous application components. In a first embodiment, a data processing system for role-based access control management for multiple ...

03/08/07 - 20070056025 - Method for secure delegation of trust from a security device to a host computer application for enabling secure access to a resource on the web
Secure authentication of a user on a host computer to a web server including a security device acquiring trust or a security context from the web server. The security device is operable of providing an X.509 certificate to a browser plug-in on the host computer. The browser plug-in on the ...

03/08/07 - 20070056024 - Method for remote server login
A method for remote server login is disclosed, in which the method using a second pathway for remote server login is adopted. When a user requires to login to the remote server, he receives a virtual account by entering a user account. The virtual account and a password are then ...

03/01/07 - 20070050840 - Methods and systems for secure user authentication
A computer-implemented method and system for secure user authentication in electronic commerce involves maintaining electronic information having a first aspect that is accessible over a first electronic communication channel in response to entry of a first credential known to the user and a second aspect that is accessible by the ...

02/15/07 - 20070039041 - Unified reference id mechanism in a multi-application machine readable credential
A system, method, and device are provided that allow a single credential to be easily used in multiple applications requiring a certain level of security. The single credential is loaded with a unified reference ID that is accessible and verifiable by any other entity that wishes to load an application ...

02/08/07 - 20070033640 - Generic context service in a distributed object environment
A context framework allows context propagation over synchronous invocation and asynchronous invocation. A context carrier is created for each thread. A set of application programming interfaces allow software components to store and retrieve context entries. By referring to the context carrier and creating a new context carrier when a new ...

02/01/07 - 20070028299 - Client-based method, system and program to manage multiple authentication
A method, system and program for managing authentication with security on multiple applications are here disclosed. According to the method the user provides a master password which is never stored and which can be unique for all the applications. The Application passwords are computed the first time from the master ...

01/25/07 - 20070022471 - Multiple user credentials
A login shell and file/directory access checking supporting multiple user credentials are provided. The login shell receives user input from a particular user including login information for a plurality of user accounts for that particular user. The login shell authenticates the plurality of user accounts using the login information and ...

01/18/07 - 20070016940 - Identification and password management device
A password management device which provides for the secure storage and retrieval of passwords. Such a password management device includes the ability to generate and store passwords generated by an included random number generator and requires user identification through the input and validation of biometric information prior to accessing password ...

01/11/07 - 20070011726 - Multi-function peripheral with function of adding user identification information and method thereof
A multi-function peripheral (MFP) with a function of adding user identification information and a method thereof are provided for increasing security of documents. The MFP comprises a scanning unit for generating image data by scanning a document upon request of scanning, a metadata generator for receiving user identification information regarding ...

01/04/07 - 20070006288 - Controlling network access
One embodiment of the invention is directed to managing access of a host computer to a network. A first communication session with the host computer may be conducted to authenticate the host computer's identity. A second communication session with the host computer may be conducted to determine the health status ...

12/21/06 - 20060288404 - Controlling computer program extensions in a network device
A network infrastructure element such as a packet data router or switch hosts an application program and one or more user program extensions to the application program. Logic in the network element is configured to perform creating and storing one or more default program security permissions; receiving a user-defined security ...

12/14/06 - 20060282886 - Service oriented security device management network
A service oriented security device management system is disclosed. The management system may include a control center coupled to a network, a service oriented security device network interface coupled to a network and a security device interface module coupled to a security device. The control center may include a business ...

12/14/06 - 20060282885 - Method to wirelessly configure a wireless device for wireless communication over a secure wireless network
A method to wirelessly configure a wireless device for wireless communication over a secure wireless network includes placing the wireless device to be configured for communication over the secure wireless network within a wireless communication range of an administrator; establishing a secure wireless communication channel between the administrator and the ...

12/14/06 - 20060282884 - Method and apparatus for using a proxy to manage confidential information
A method, apparatus, and computer usable code for managing confidential data. A request is received to access an application from a user, wherein the application includes logic to process the confidential data. One of a first interface or a second interface is selected based on an identification whether the user ...

12/07/06 - 20060277599 - Management of physical security credentials at a multi-function device
Disclosed is a method and apparatus for registering physical security credentials of a user at a device (150) forming part of a networked computer system (100). The method detects (122, 301) user identifying information from physical security credentials presented by the user at the device. The device then determines (302) ...

12/07/06 - 20060277598 - Method of synchronizing data between contents providers and a portable device via network and a system thereof
The present invention relates to a method and system of synchronizing data between a contents providing system and a portable device via network. More particularly, the present invention relates to a method and system of transmitting predetermined data of contents, which requires digital rights protection, to a portable device, wherein ...

11/30/06 - 20060272011 - Method and apparatus for network assessment and authentication
Providing a user with assurance that a networked computer is secure, typically before completion of the log-in operation. This can be accomplished by extending the local log-in process to perform a host assessment of the workstation prior to requesting the user's credentials. If the assessment finds a vulnerability, the log-in ...

11/02/06 - 20060248578 - Method, system, and program product for connecting a client to a network
Under the present invention, both user credentials and software credentials are authenticated before the connection is permitted. To this extent, one or more user credentials are received on the client (e.g., from a user). Thereafter, a software agent, typically running on the client, will determine whether one or more software ...

11/02/06 - 20060248577 - Using sso processes to manage security credentials in a provisioning management system
A method, apparatus, and computer program product are provided for using single sign-on (SSO) processes to manage security credentials in a provisioning management system. Service access operations are provided that embed credential operations and matching algorithms. Credential operations are treated at different levels of abstraction and define separate services to ...

10/26/06 - 20060242688 - Supporting statements for credential based access control
Supporting statements are provided to help safely and efficiently construct and verify proofs necessary for deciding whether to grant a request from one entity for accessing a resource owned or administered by another entity. ...

10/19/06 - 20060236379 - Method and system for in-field recovery of security when a certificate authority has been compromised
A certificate credential is generated based on a user device's private key securely stored, or accessible, by a certificate authority. When the certificate authority has been compromised, the credential, which typically includes information encrypted with the device's private key and the corresponding unencrypted information, is sent to the device. The ...

10/05/06 - 20060225130 - Secure login credentials for substantially anonymous users
Methods and apparatus for secure communications. The techniques feature receiving over the first connection a login credential for the server, generated by the server without the use of any information identifying a computer user. The techniques further feature establishing a second secure connection with the server using a secure protocol ...

09/28/06 - 20060218627 - Authentication system and the authentication method which use a portable communication terminal
Disclosed is an authentication method used in the system including a communication network, a mobile communication terminal (MT) and an authentication sub-system. When the subsystem receives an authentication request, it generates a first password information and converts the first password information to a first password motion picture signal. The first ...

09/28/06 - 20060218626 - Patient identification and information protection system and method
A personnel identity protection mechanism and method is provided which utilizes a pseudo-name that is used in conjunction with RFID or RFID-like tags. By correlating the location of the tag wearer to equipment or professionals attending to the tag wear, identity and/or private information relating to the tag wearer can ...

09/14/06 - 20060206927 - Systems and methods for dual reader emulation
Systems and methods for emulating credentials are disclosed. In some cases, the systems include an access credential reader and an access credential writer. The access credential reader is communicably coupled to the access credential writer. The access credential reader is operable to receive information from an access credential, and to ...

09/14/06 - 20060206926 - Single login systems and methods
The present invention relates to systems and methods of accessing secure applications from a portal using a single login procedure. More specifically, systems and methods are provided for allowing a client to access a secure application hosted on a server using a hyperlink provided on a secure portal. The hyperlink ...

09/14/06 - 20060206925 - Delegating right to access resource or the like in access management system
A resource of a first organization provides access thereto to a requestor of a second organization. A first administrator of the first organization issues a first credential to a second administrator of the second organization, including policy that the second administrator may issue a second credential to the requestor on ...

09/14/06 - 20060206924 - Systems and methods for authorization credential emulation
Systems and methods for emulating credentials are disclosed. In some cases, the systems include an access control module with an access credential reader that is operable to receive an access information from one access credential, and an access credential writer that is operable to provide at least a portion of ...

09/07/06 - 20060200856 - Methods and apparatus to validate configuration of computerized devices
A system verifies configuration of a device within a network via an exchange of verification credentials, which are requested, received and authenticated. The verification credentials indicate that a configuration of the device was acceptable at the time of creation of the verification credentials for that device. The verification credentials of ...

08/31/06 - 20060195892 - Appointed meeting system, management device and appointed meeting method
To provide a technology of acquiring, if unable to conduct an appointed meeting of a plurality of persons as scheduled, situations of the individual persons and easily notifying each member of a change of the appointed meeting corresponding to the situations. Member information of members making arrangements for an appointed ...

08/24/06 - 20060190994 - Method and system for authenticating pay-per-use service using eap
A method and system for authenticating a pay-per-use service using an extensible authentication protocol (EAP). The method includes requesting a client to provide an EAP ID to be used in the service when a service request signal is received from a client; transmitting an EAP payment method (EAP_CC) request signal ...

08/10/06 - 20060179478 - Method of controlling content access and method of obtaining content key using the same
Provided is a method of controlling content access in a home network. The method includes: (a) defining a predetermined sub group and allocating a sub group key for the sub group; and (b) checking whether a user belongs to the sub group and transmitting the sub group key to a ...

08/10/06 - 20060179477 - Method and apparatus for distinguishing the origin of operator inputs in electronic control systems and printing machine having the apparatus
A method and an apparatus distinguish the origin of operator inputs in electronic control systems having at least one first operating element and at least one second operating element. A first signal is processed in the electronic control system when the at least one first operating element is operated. The ...

08/03/06 - 20060174332 - Automatic authentication selection server
An authentication server automatically selects one of plural authentications identified by authentication identifiers to authorize access by a user to a service dispensed by a service server of a provider identified by a provider identifier via a communication network. The server includes a module for selecting an authentication identifier in ...

08/03/06 - 20060174331 - Method for signing a user onto a computer system
A method for signing a user on to a computer system, whereby the user identifies himself/herself on the computer system by means of a certificate, and is authenticated in the computer system by means of sign-on data. In order to avoid the need for an authentication server, which furthermore allows ...

07/27/06 - 20060168650 - Digital-signed digital document exchange supporting method and information processor
In response to a sign request including a digital document from a document-creating device 10, a digital-signed-document exchange supporting server 30 canonicalizes the digital document, calculates a digest value thereof and returns the digest value to the document creating device. When the document-creating device transmits a digital sign created by ...

07/27/06 - 20060168649 - Method and system for addressing attacks on a computer connected to a network
A method for addressing attacks on a computer connected to a network includes receiving at a router a TCP SYN request to be screened. The method also includes comparing the received TCP SYN request to be screened to at least one stored tuple representative of one or more SYN requests ...

07/20/06 - 20060161972 - System and method for license management in blade server system
Various methods are disclosed for ensuring compliance with operating system license requirements in a server blade center environment in which a server blade may have plural images of an O.S., one for each of plural thin clients serviced by the blade. ...

07/13/06 - 20060156392 - System and method for localizing data and devices
Methods and devices controlling access to content are described. For example, a request to enroll a device is received at a localization hub. The localization hub is associated with a subscriber that is authorized to access the content. A credential is issued to the device. The credential demonstrates that the ...

07/13/06 - 20060156391 - Method and apparatus providing policy-based revocation of network security credentials
A method for policy-based revocation of network security credentials comprises receiving and storing one or more credential revocation rules, wherein each of the credential revocation rules specifies one or more first attributes and first values of the first attributes, associated with one or more credentials to be revoked; receiving and ...

07/13/06 - 20060156390 - Using a network-service credential for access control
Methods and devices for controlling access to a service over a network are described. A credential is provided to a device. The credential indicates the device is enrolled in the network. The credential is stored in non-volatile memory on the device. The credential binds the device to the network and ...

07/13/06 - 20060156389 - Identifying fraudulent activities and the perpetrators thereof
A system for identifying perpetrators of fraudulent activity includes location logic for locating, extracting, or capturing identifying information from a client communication received from a client device. For example, the location logic may locate, or extract, a variety of message headers from an HTTP client request. The system may also ...

07/06/06 - 20060150242 - New system for controlling access to professional procedural information
A system for controlling access to procedural information comprising an internet website having a data entry means to enable entry of data relating to a client or an entity and authentication means to verify an ID access code for each client, a memory means to store data relating to each ...

06/22/06 - 20060136998 - Security management system, medical device and method for managing security
A security management system, comprising: an authentication unit for authenticating an operator of an operating terminal in order to determine whether the operator is permitted to log in or release a lock; a current operator information inquiry unit for inquiring for login status information and current operator information; an authority ...

06/22/06 - 20060136997 - Authentication system and method
Authentication systems and methods are provided. In accordance with one method, a user identification is determined based upon a signal modulated by a wireless transponder circuit in an identification token. The signal strength of signals modulated by the wireless transponder is monitored over a period of time and a pattern ...

06/15/06 - 20060130126 - Secure authentication advertisement protocol
A network device for distributing authentication information between authorized nodes for purposes of concurrently “pre-authenticating” a mobile user at a plurality of points throughout a LAN is disclosed. When a client attempts to access the network through the network device, the network device attempts to authenticate the client based on ...

06/08/06 - 20060123471 - Credential production using a secured consumable supply
A method and system for securely processing a credential substrate using a credentials production system and secured consumable supply. The consumable supply is selectively in one of a plurality of states including a production disabled state and a production enabled state. The state of the consumable supply is changed from ...

06/08/06 - 20060123470 - User authorization for services in a wireless communications network
A method of user authorization for services in a wireless communications network including the steps of: establishing a connection between user equipment and an authorization server of the network; the user equipment providing user identification to the authorization server; the authorization server retrieving authorization data based on the user identification ...

05/25/06 - 20060112421 - Smart card systems and methods for building automation
Implementations described and claimed herein enable smart card systems and methods for building automation. An exemplary smart card system includes an interface device communicatively coupled to a plurality of automation devices. Control circuitry is provided for the interface device to receive user credentials from a smart card when the smart ...

05/25/06 - 20060112420 - Secure single sign-on to operating system via power-on password
Methods and arrangements are disclosed for secure single sign on to an operating system using only a power-on password. In many embodiments modified BIOS code prompts for, receives and verifies the power-on password. The power-on password is hashed and stored in a Platform Configuration Register of the Trusted Platform Module. ...

05/25/06 - 20060112419 - System and method for retrieving certificates associated with senders of digitally signed messages
A system and method for retrieving certificates and/or verifying the revocation status of certificates. In one embodiment, when a user opens a digitally signed message, a certificate that is required to verify the digital signature on the message may be automatically retrieved if it is not stored on the user's ...

05/18/06 - 20060107312 - System for handing requests for access to a passcode protected entity
Protecting the security of an entity by using passcodes is disclosed. A passcode device generates a passcode. In an embodiment, the passcode is generated in response to receipt of user information. The passcode is received by another system, which authenticates the passcode by at least generating a passcode from a ...

05/18/06 - 20060107311 - Apparatus, system, and method for establishing an agency relationship to perform delegated computing tasks
An apparatus, system, and method are disclosed for establishing an agency relationship to perform delegated computing tasks. The apparatus system and method provide for initiation of the agency relationship, establishment of credentials to perform a delegated computing task, and performance of the delegated computing task. Benefits of establishing an agency ...

05/11/06 - 20060101507 - Method and apparatus for obtaining and verifying credentials for accessing a computer application program
Methods for obtaining credentials and for verifying credentials are disclosed. In some embodiments, a request may be generated to register a computing device of a user to a registration issuer, and in response a device related credential for the computing device may be obtained, the device related credential being for ...

05/04/06 - 20060095957 - System and method for providing a multi-credential authentication protocol
A system and method for providing secure communications between remote computing devices and servers. A network, device sends characteristics of a client computing device over the network. A network device receives characteristics of a client computing device over the network. A plurality of credentials are generated where at least one ...

04/27/06 - 20060090197 - Authentication method and devices
A method for authenticating an entity at a first data resource, the method comprising the steps of: sending a first request token from the entity (100) to a token distribution unit (20) to request a first one-way authentication token, the first request token being a function of authentication information provided ...

04/13/06 - 20060080729 - Predictive method for multi-party strengthening of authentication credentials with non-real time synchronization
A method and system for strengthening authentication credentials for accessing any number of applications across multiple access interfaces and across multiple remote access sites is disclosed. The applications can be accessed by a set of authorized users by using multiple instances of a predictive scheme for generating and synchronizing the ...

04/06/06 - 20060075474 - Service providing system, information processing apparatus, service providing server and service providing method
A service providing system is disclosed. The service providing system includes an information processing apparatus and a service providing server, each having an authentication mechanism, that are connected via a network, wherein the information processing apparatus and the service providing server provides a service in response to a request by ...

04/06/06 - 20060075473 - Federated authentication service
A federated authentication service technology (10) for authenticating a subject (20) residing in a subject domain (12) on a network to a server application (38) residing in a server domain (18), wherein an authentication mechanism (32) residing in an authentication domain (16) affects the service provided by the server application ...

03/16/06 - 20060059546 - Single sign-on identity and access management and user authentication method and apparatus
A single sign-on authentication and access management apparatus and method is provided for computer networked digital content providers interconnected in a communication network. A single application service provider coupled to the application servers and a user computer includes an entitlements database interfaced with an authorization server for storing data utilized ...

03/09/06 - 20060053483 - Methods and systems for automated authentication, processing and issuance of digital certificates
A computer system and process for issuing digital certificates use domain-control vetting to issue certificates. A requestor requests a certificate from a certificate authority, which identifies at least one approver to approve issuance of the digital certificate. If approved, the certificate authority accepts the request, creates and signs the certificate, ...

03/02/06 - 20060048214 - Automated login session extender for use in security analysis systems
A web application security scanner (WASS) includes a login manager configured to perform an automated login to a web site. The automated login may be performed when the login manager detects that a login session has ended. The login manager is configured to determine credentials for the web site to ...

03/02/06 - 20060048213 - Authenticating a client using linked authentication credentials
Techniques are provided for improving security in a single-sign-on context by providing, to a user's client system, two linked authentication credentials in separate logical communication sessions and requiring that both credentials be presented to a host system. Only after presentation of both credentials is the user authenticated and permitted to ...

02/16/06 - 20060037066 - Data processing system for application to access by accreditation
This system for executing a program to which access by a user is controlled by credentials includes a terminal (T), first memory means (F) associated with said program for storing at least first credentials specific to said user, access control means for authorizing access to said program in response to ...

02/16/06 - 20060037065 - Prevention of unauthorized credential production in a credential production system
In a method for preventing unauthorized credential substrate processing in a credential production system that includes first and second credential production components, a first security code is generated using a random code and a first security key with the first credential production component. The first security code is communicated from ...

01/26/06 - 20060021012 - Image forming apparatus, license managing method for applications executed by image forming apparatus, program for implementing the method, and storage medium storing the program
An image forming apparatus which enables a user to continue an operation using an application without restarting the application, by the image automatically accessing a license server to update a license for the application when the license becomes expired while the user is performing the operation. A notification notifying the ...

01/26/06 - 20060021011 - Identity access management system
Disclosed are a method and system for managing access to and verifying personal identity. A person is provided with a private key that uniquely identifies that person, and that person uses the private key to access an identity manager. The person then uses the identity manager to specify a desire ...

01/26/06 - 20060021010 - Federated identity brokering
A method, system and apparatus for federated identity brokering. In accordance with the present invention, a credential processing gateway can be disposed between one or more logical services and one or more service requesting clients in a computer communications network. Acting as a proxy and a trusted authority to the ...

01/12/06 - 20060010487 - System and method of verifying personal identities
A method and system is provided which verifies the identification of individuals. Multi-faceted personal information is collected from the individual. Next, the personal information is verified. Finally, an identification verification instrument is issued if the personal information has met a predetermined level of verification. ...

12/29/05 - 20050289644 - Shared credential store
A personal credential store that aggregates a number of physical credential stores beneath an application programming interface (API) and offers tag-based credential look-up. The API of the disclosed system runs on the user's client system, and effectively hides the underlying credential store types from applications using it. The tags used ...

12/15/05 - 20050278778 - Method and apparatus for credential management on a portable device
A system and/or method that enables a user to manage credential information for approving communications with various network and/or server components. A portable device is provided that facilitates management of a user credential that can be used to connect to a network (e.g., wireless, wired). The portable device includes an ...

12/08/05 - 20050273843 - Encrypted communication method and system
An encrypted communication system according to the present invention comprises an authentication server in which a user password and an encryption key of a server were registered, a client involved in utilization by a user, and a server providing a service. According to the encrypted communication system, shared credentials for ...

11/17/05 - 20050257254 - Information processing apparatus
An information terminal selects an input output device for user authentication in accordance with a user profile of a smart card and customizes a screen for the user authentication. In the smart card, information for selecting the input output device or customizing the screen is stored in a layer of ...

11/17/05 - 20050257253 - Managed credential issuance
In a method of issuing a credential, a request for issuance of the credential is received. Next, a unique identification for the requested credential is assigned and data elements corresponding to the credential are provided. A credential production data collection is built in accordance with a credential production template. The ...

11/17/05 - 20050257252 - Method for protecting privileged device functions
A system and method are incorporated within electronic devices for preventing unauthorized use of privileged functions by legitimate or illegitimate users. The system includes a trusted agent, a secure communication channel between the trusted agent and the device, and an interface for the user to communicate with the trusted agent. ...

11/03/05 - 20050246765 - Storing apparatus and password control method
A drive preserves a default input password. When there is no password input from the user, the default input password is regarded as a user input password and is compared and collated with a password for access protection, thereby controlling the access protection. In this instance, if the default input ...

11/03/05 - 20050246764 - Authorization method
An authorization method includes establishing a password for a user, wherein the password includes password characters in a defined order. The method further includes assigning a code character to each of the password characters at an authorization site, transmitting the code characters assigned to the password characters to a remote ...

10/20/05 - 20050235341 - Dynamically mitigating a noncompliant password
Techniques are disclosed for dynamically mitigating a noncompliant password. The techniques include obtaining a password from a user when the user attempts to access a service; determining whether the password meets quality criteria; and if the password does not meet the quality criteria, performing one or more responsive actions that ...

08/04/05 - 20050172333 - Method and apparatus for handling authentication on ipv6 network
A method and apparatus handles authentication on an IPv6 network, in which IPv6 security network nodes are allowed to communicate with each other through mutual authentication using secure information transmitted from a certificate authority, thus minimizing the amount of messages exchanged between the certificate authority and each node. Further, it ...

07/28/05 - 20050166262 - Methods and systems for automated authentication, processing and issuance of digital certificates
A computer system and process for automated identification, processing and issuance of digital certificates uses web server domain-control vetting to issue web server certificates. A requestor requests a web server certificate from a certificate authority and uses approver email address or addresses to request that the approver approve issuance of ...

07/28/05 - 20050166261 - System and method for network authentication of a data service offering
A system and method are disclosed for providing authentication services. A method incorporating teachings of the present disclosure may include receiving a common user credential from a user seeking access to an information network. In some embodiments, the common user credential may have been broadly assigned and may not effectively ...

07/21/05 - 20050160476 - Digital certificate transferring method, digital certificate transferring apparatus, digital certificate transferring system, program and recording medium
A digital certificate transferring method for transferring a second digital certificate from a certificate transferring apparatus to a communication apparatus storing a first digital certificate which is different from the second digital certificate is provided. In the method, the certificate transferring apparatus transfers, to the communication apparatus via a safe ...



###

FreshPatents.com Support