Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

222 results about "Secure authentication" patented technology

Authentication in cybersecurity. Authentication is important because it enables organizations to keep their networks secure by permitting only authenticated users (or processes) to access its protected resources, which may include computer systems, networks, databases, websites and other network-based applications or services.

Server BMC dynamic security authentication and firmware protection method and system based on hardware root of trust

The invention discloses a server BMC dynamic security authentication and firmware protection method and system based on a hardware root of trust, relates to the technical field of server remote management security, and discloses the server BMC dynamic security authentication and firmware protection method and system based on the hardware root of trust, which realize dynamic authentication by generating a device fingerprint through a security chip. According to the method, a multi-layer protection mechanism is constructed in combination with fragment encryption, differential hash check and memory integrity verification, and meanwhile, the data credibility is enhanced by using a block chain storage key hash value, so that the problems of static authentication risk, insufficient firmware tampering detection and missing of a trust chain in a traditional scheme are effectively solved, and the security protection capability of a BMC system can be improved.
Owner:SHENZHEN HUAKUN INFORMATION TECH CO LTD +1

Factory real-time digital monitoring method and system based on Internet of Things, and storage medium

The invention relates to the technical field of industrial monitoring, and discloses a factory real-time digital monitoring method and system based on the Internet of Things, and a storage medium. The method comprises the following steps: carrying out encryption access on heterogeneous Internet of Things equipment through dual identity authentication to obtain a security authentication equipment identifier pool; performing multi-dimensional data acquisition on the equipment identification pool based on Hash verification to obtain an encrypted time sequence data chain; performing dynamic identification on the factory visual image by adopting a confidence adaptive threshold to obtain a multi-task fusion feature code; performing heterogeneous fusion on the time sequence data chain and the feature code by using a sliding window weight distribution algorithm to obtain a factory digital state fingerprint; and performing knowledge graph reasoning on the state fingerprint through three-level early warning threshold judgment to obtain a real-time risk level early warning code. The technical problems that heterogeneous Internet of Things equipment cannot be uniformly accessed and authenticated, multi-source data lacks safety fusion processing, and the factory state cannot be intelligently reasoned and pre-warned are solved.
Owner:BEIJING TIANYUAN 3D TECH CO LTD

Smart power grid cloud edge collaborative heterogeneous data security access method

The invention provides a smart power grid cloud edge collaborative heterogeneous data security access method, which comprises the following steps: collecting multi-source heterogeneous power equipment data in real time based on a deployed multi-mode sensor network; based on a lightweight federated learning edge inference engine deployed on an edge end network, performing adaptive semantic enhancement preprocessing on the multi-source heterogeneous power equipment data to generate an edge encryption feature tensor; performing three-dimensional credible security authentication and knowledge fusion on the edge encryption feature tensor based on an electric power space-time knowledge graph fusion engine deployed on the cloud side to generate secure and credible electric power data; and performing space-time causal reasoning and twin mirror image comparison on the secure and credible power data based on a federated block chain-driven digital twin decision engine deployed at a cloud end to generate a dynamic security policy map and store the dynamic security policy map. According to the scheme, the data security is enhanced, intelligent analysis and dynamic decision can be performed according to the real-time state of the power grid, and optimal scheduling and stable operation of the power grid are realized.
Owner:浙江浙能数字科技有限公司

Secure authentication of digital humans

A video stream that depicts at least the face of an individual, and information identifying a known individual is received. Predetermined validation data derived from the known individual is accessed. An analysis of a segment of the video stream based on the predetermined validation data is performed. Based on the analysis, an output signal indicative of a confidence level that the video stream is a video stream generated by the known individual is provided.
Owner:CHARTER COMM OPERATING LLC

Data transmission methods, devices, computer equipment and communication systems

This application discloses a data transmission method, apparatus, computer device, and communication system, relating to the field of communications. The method includes: generating an authentication key based on security credentials distributed by an authentication center; authenticating devices with an authentication code generated from the authentication key; and transmitting encrypted data processed by an encryption key. Thus, authentication is based on the generated authentication key, eliminating the need for devices to transmit the authentication key itself, preventing its acquisition, improving authentication key security, and reducing network attacks. The authentication center does not need to manage authentication keys and security credentials, decentralizing the authentication mechanism and reducing the complexity of key management. Furthermore, the authentication key has a small data size, meeting the storage requirements of resource-constrained IoT devices, thereby achieving secure authentication for resource-constrained IoT devices, reducing network attacks on the IoT, and improving IoT network security.
Owner:HUAWEI TECH CO LTD

Identity privacy protection system and method for safe sharing of power data

PendingCN121561950AData processing applicationsDigital data protectionChosen-plaintext attackAttack
The invention discloses an identity privacy protection system and method oriented to power data security sharing, which combine single-factor combination authentication and identity traceability and utilize the transparency and tamper resistance of a block chain. Comprising an electric power key generation center, an electric power cloud service provider, an electric power data owner, an electric power data user and a block chain, user identity privacy is ensured, safe identity verification is supported, identity traceability is achieved under necessary conditions, and meanwhile safe distribution of keys is achieved. In addition, services and resources are isolated by using groups, so that the flexibility and the expandability of the services and the resources are enhanced. Security analysis and experimental evaluation prove that the method can effectively resist selected plaintext attacks, and meanwhile, high efficiency and practicability are kept.
Owner:STATE GRID HENAN INFORMATION & TELECOMM CO

Passkey-based authentication for the 3-d secure protocol

Disclosed are various embodiments for integrating the use of passkeys in the 3-D SECURE authentication protocol for transactions. A user of a client device can be prompted to enter a secondary factor of authentication for a second transaction, wherein the prompt includes transaction information and merchant information. In response to a selection to enter the secondary factor of authentication, biometric authentication of the user of the client device can be performed. In response to successful biometric authentication of the second transaction, a challenge comprising the transaction information and the merchant information can be cryptographically signed with a private passkey. The cryptographic signature of the challenge can then be sent to the transaction authorization service.
Owner:AMERICAN EXPRESS TRAVEL RELATED SERVICES CO INC

System and Method for Dual Remote Authentication of Digital Assisted Shopping Agents and Customers Using Proximity-Based Mobile Device Interactions, Enterprise Security, and Biometrics

Systems and methods are disclosed for dual, simultaneous, single-session, proximity-based, secure authentication of a Digital Assisted Shopping (DAS) representative and a customer in an unsecured remote location. The method includes installing a mobile banking application on the customer's device and an enterprise application on the DAS representative's device, both with biometric verification. Proximity detection using Bluetooth Low Energy (BLE) initiates a secure session via push notifications. A secure communication channel is established through a secure local handshake, involving encryption key exchange and mutual authentication. The system exchanges data related to customer profiles and financial accounts, continuously monitors geolocation using GPS, Wi-Fi, and cellular data, and performs periodic background biometric re-verifications. AI / ML algorithms analyze customer data to propose financial products and services, which are securely shared with the customer for review and selection. The system facilitates real-time enrollment and transaction processing, terminating the session upon detecting security breaches.
Owner:BANK OF AMERICA CORP

Permission-based tiered authorization for smart contracts via blockchain cybersecurity authentication services

In one embodiment, a method includes receiving transaction data associated with a protected first function of a first blockchain transaction protocol by a cybersecurity authentication service of a blockchain cybersecurity platform, assigning a first authority classification to the protected first function based on a transaction protocol runbook comprising preconfigured conditions associated with the protected first function, accessing the transaction data via a cybersecurity authentication interface by a first cybersecurity authority having an authority classification corresponding to the first authority classification, determining that the protected first function should be authenticated by the first cybersecurity authority based on each preconfigured condition being satisfied, inputting an authentication of the protected first function via the cybersecurity authentication interface by the first cybersecurity authority, and transmitting a transaction bundle configured to update a second blockchain transaction protocol to indicate that the protected first function is authenticated.
Owner:HALBORN INC

Internet of vehicles security authentication and data encryption transmission system integrated with IPv6 technology

The invention discloses an Internet of Vehicles security certification and data encryption transmission system integrated with an IPv6 (Internet Protocol Version 6) technology. According to the invention, the key strategy can be automatically optimized according to the dynamic environment in the actual operation of the Internet of Vehicles, and the dynamic balance between the security protection and the communication efficiency is realized. The system can intelligently judge the cracking risk faced by a current key by combining real-time data such as a vehicle driving state and network environment characteristics, so as to flexibly adjust the key length and the updating frequency: when the network environment is safe and the vehicle is in a low-risk area, the key service cycle is properly prolonged, and the basic key length is maintained to reduce the communication overhead; when a potential threat is detected or a vehicle enters a complex road section, the secret key security level is automatically improved, and the rotation period is shortened to enhance the protection capability. The system burden cannot be increased due to excessive encryption, potential safety hazards cannot be left due to insufficient protection, and key management better meets the actual requirements of high-speed movement of vehicles and rapid change of scenes in the Internet of Vehicles.
Owner:XIANGTAN TECHNICIAN COLLEGE

Lightweight multi-factor authentication method and system oriented to multiple modes

The invention relates to the technical field of identity authentication, in particular to a multi-mode-oriented lightweight multi-factor authentication method and a multi-mode-oriented lightweight multi-factor authentication system. The method comprises the following steps: taking a real voice sample as input to realize lightweight voice deception detection, synchronously acquiring voiceprint modal data and auxiliary modal data of a user through terminal equipment, extracting modal feature vectors and performing dimension reduction processing; distributing a weight for the modal feature vector, and calculating a fusion feature vector; inputting a password by a user, performing AES encryption on the password by the system, and performing local comparison with the ciphertext in the database; homomorphic encryption is carried out on the fusion feature vector by using an ASPE homomorphic encryption algorithm based on chaotic scrambling and semi-tensor product optimization, and the fusion feature vector is compared with a stored voiceprint ciphertext vector; and when both the password comparison authentication and the voiceprint recognition authentication are passed, determining that the user authentication is successful. According to the method, key technologies such as voice deception detection, multi-modal fusion and knowledge distillation are fused, and low overhead and high safety in the safety certification process are ensured.
Owner:BEIJING UNIV OF POSTS & TELECOMM

Security authentication method and system based on secure computer

ActiveCN120950326AHardware monitoringKnowledge representationCross correlation matrixSimulation
The embodiment of the invention relates to the technical field of computer security authentication, in particular to a security authentication method and system based on a secure computer. The method comprises the following steps: carrying out sensing array deployment and data acquisition on a secure computer to obtain calibrated time-space synchronization data; performing temperature and current fusion processing on the calibrated time-space synchronization data to obtain a thermoelectric coupling characteristic spectrum; carrying out point location time sequence correlation analysis on the thermoelectric coupling characteristic spectrum to obtain a point location cross-correlation matrix; performing nonlinear feature extraction on the point location cross-correlation matrix to obtain a nonlinear dynamic feature set; performing dynamic behavior analysis on the nonlinear dynamic feature set to obtain a security calculation behavior dynamic phase spectrum; and performing phase difference calculation on the dynamic phase spectrum of the security calculation behavior to obtain a phase difference vector. According to the method, the early detection capability of threats which are difficult to reproduce and are in a novel hardware level is improved through real-time monitoring and anomaly recognition of computer microcosmic physical characteristics.
Owner:HUNAN AGRI UNIV

Unmanned aerial vehicle cross-domain service function link accessing method based on alliance chain

The invention discloses an alliance chain-based unmanned aerial vehicle cross-domain service function link accessing method, which comprises the following steps of: 1, initializing a system and configuring an alliance chain, generating a global password parameter and a root key by a trusted mechanism, and finishing domain registration and certificate chain storage by each management domain edge server; 2, blockchain-driven identity management is carried out, and the unmanned aerial vehicle completes chain registration and anti-counterfeiting registration certificate acquisition through a domain edge server to which the unmanned aerial vehicle belongs; 3, deploying a flexible threshold signature algorithm to realize multi-domain joint signature and Byzantine fault tolerance; 4, executing a cross-domain SFC security authentication protocol, including SFC pre-verification and security authorization certificate issuing, first node verification starting, hop-by-hop key negotiation and handover certificate transmission, and on-chain auditing; and 5, based on the topology centrality and the path coverage, dynamically electing an orchestrator to realize load balancing. According to the invention, safe access and identity authentication of the cross-domain service function chain of the unmanned aerial vehicle are realized, safety, efficiency and expandability are balanced, and reliable guarantee is provided for cross-domain cooperation of the unmanned aerial vehicle.
Owner:NANJING UNIV OF AERONAUTICS & ASTRONAUTICS

Network security authentication method, device and system

The invention relates to the technical field of network security authentication, in particular to a network security authentication method, device and system. When a server side authenticates the identity of a request side, the method comprises the following steps: acquiring signature data, abstract data and a digital certificate from the request side; decrypting the signature data through a public key in the digital certificate to obtain biological characteristic data and decryption action instruction data; calculating the biological characteristic data and the decryption action instruction data obtained from the self-signature data by adopting a Hash algorithm, and comparing a calculation result with the abstract data; matching the biological characteristic data and the decryption action instruction data with a secret order database arranged at a server side; and completing identity authentication of the server side to the request side. According to the invention, identity authentication of the request end from the server end can be well realized.
Owner:SHANXI ELECTRIC POWER CO POWER COMM CENT +1

System and method for secure authentication of contact-free card

A security authentication system is provided that includes a server including a processor and a memory. The server is configured to: generate an authentication challenge; storing the authentication challenge in a memory; transmitting the authentication challenge to the user device; generating a session key based on the master key; storing the session key in a memory; receiving, from the user equipment, an encrypted message authentication code (MAC) password incorporating an authentication challenge; decrypting the encrypted MAC password using one or more cryptographic algorithms and the session key; and validating the authentication challenge received from the user device.
Owner:CAPITAL ONE SERVICES LLC

Key distribution between open fronthaul (OFH) media access control security (macsec) endpoints

A method (400) is disclosed. The method includes establishing (402), at an Open Radio Access Network (O-RAN)-Radio Unit Controller (O-RU Controller), a session with an O-RU. In response to establishment of the session, the method includes configuring (404), at the O-RU controller one or more Media Access Control security (MACsec) configuration parameters for the O-RU. The one or more MACsec configuration parameters comprises at least a pre-shared key. The method also includes generating (406), at the O-RU controller, using a random number generator, at least one of a Secure Authentication Key (SAK) and a Key Encryption Key (KEK) based on the pre-shared key. Moreover, the method includes transmitting (408), from the O-RU controller to the O-RU, at least one of the one or more MACsec configuration parameters and the at least one of the SAK and the KEK.
Owner:RAKUTEN SYMPHONY INC +1

Anti-quantum cryptography application method and device based on FIDO2.0 standard and related product

The invention provides an anti-quantum cryptography application method and device based on an FIDO 2.0 standard and a related product, and relates to the technical field of information security. According to the method, on the basis of an FIDO2.0 standard specification, two groups of keys, namely a traditional key and an anti-quantum key, are generated by using cryptographic algorithm key derivation through the same random number seed; the two groups of keys are tightly coupled to serve as a composite key for FIDO authentication to be used for a subsequent authentication signature process, so that the anti-quantum security is enhanced; when the composite signature is used, the anti-quantum signature covers the traditional password signature, so that a strong dependency chain of two password algorithms is formed, and the security authentication strength is enhanced; when the signature is verified, the composite public key is used for verifying the traditional signature and the anti-quantum signature, authentication can be passed only when the traditional signature and the anti-quantum signature pass, double security protection of the traditional password technology and the anti-quantum password technology is achieved, and the attack risk of the traditional password in quantum computing is effectively resisted.
Owner:CHINA FINANCIAL CERTIFICATION AUTHORITY

Network unified monitoring and operation and maintenance management system in multi-cloud environment

The invention relates to a network unified monitoring and operation and maintenance management system in a multi-cloud environment, and belongs to the technical field of cloud computing and network operation and maintenance crossing. The system is characterized in that an intelligent perception and adaptation access module performs bidirectional communication with a heterogeneous cloud platform through a dynamic protocol adaptation engine, and an edge preprocessing unit completes data primary processing and security authentication; the data processing and analysis module constructs a stream batch integrated architecture, establishes a cross-cloud unified topology model by using a knowledge graph technology, and realizes multi-dimensional data analysis through a distributed time sequence database; the strategy generation and scheduling module performs strategy pre-verification, issues an operation and maintenance instruction through a transaction consistency mechanism, and establishes a closed-loop feedback loop to continuously optimize a decision; the unified operation and maintenance portal module integrates three-dimensional topology, visualizes security situations and operation and maintenance decisions, and provides fault traceability and strategy interaction capability. According to the invention, unified monitoring, intelligent analysis and automatic operation and maintenance of a multi-cloud network environment are realized.
Owner:SHANGHAI WANGYUE INFORMATION TECHNOLOGY CO LTD

Smart home security authentication management method and system based on wireless local area network

The invention provides a smart home security authentication management method and system based on a wireless local area network. The method comprises the following steps: constructing a home network security authentication domain; when a new smart home device is accessed, marking the new smart home device as a second smart home device, and obtaining a device authentication state matrix of a home network security authentication domain; generating an authentication challenge vector based on the device authentication state matrix, and sending the authentication challenge vector to the second smart home device and the first smart home device for cooperative verification; and if the authentication challenge vector passes the cooperative verification, updating keys of all smart home devices in the home network security authentication domain according to a preset dynamic key synchronization protocol. Through construction of a home network security authentication domain, intra-domain sharing of security parameters such as a device authentication state and key management is realized, when any key is updated, other devices update synchronously, and associated dependence exists among keys, so that a risk conduction path of a whole network falling situation caused by key leakage of a single device is blocked.
Owner:CVC CERTIFICATION & TESTING CO LTD +1

Cross-system data interaction security collaboration method, system and device of electric power management and control platform, and medium

The invention discloses a cross-system data interaction security collaboration method, system, equipment and medium for a power management and control platform, and belongs to the technical field of power management and control, and the method comprises the steps: uniformly managing cross-system security policies through a security policy collaboration center, generating a global policy template, and eliminating policy conflicts through a conflict arbitration mechanism; dynamically adjusting the token validity period and the multi-factor authentication strength based on the risk level by combining a security authentication gateway; the data interaction bus integrates a multi-protocol adapter and an LZ77 compression algorithm to improve transmission efficiency, guarantees cross-system transaction atomicity through a three-stage protocol and a fusing mechanism of a transaction coordinator, and supports ten thousand-level concurrent interaction; and the risk perception module fuses the interaction frequency, the data sensitivity and the historical event quantitative risk level, links the dynamic strategy execution engine to trigger the authority falling, desensitization or current limiting measures, realizes the binding control of authority and transaction duration by adopting white list life cycle management, and effectively intercepts more than 8500,000 times of sensitive data leakage risk.
Owner:GUIZHOU POWER GRID CO LTD

NFT based secure authentication and notification apparatuses, processes and systems

The NFT Based Secure Authentication and Notification Apparatuses, Processes and Systems (“NBSA”) transforms authenticating NFT generation input, NFT authentication input, document publishing input, NFT document access input datastructure / inputs via NBSA components into authenticating NFT generation output, NFT authentication output, document publishing output, NFT document access output outputs. An NFT authentication request datastructure is obtained. An owner blockchain address is determined. Authorization data is evaluated to verify that the authorization data establishes control over the owner blockchain address. An NFT metadata datastructure is obtained. A master hash associated with the authenticating NFT identifier is determined. A set of source asset data-structures associated with the authenticating NFT identifier is determined. For each respective source asset datastructure, a hash of source asset data is determined. A master hash is generated from the determined hashes. Match between the retrieved master hash and the generated master hash is verified. An authentication success indication is provided.
Owner:FMR CORP

Silent communication, interaction, and / or translation

A user interface system enables communication through inaudible speech by detecting physiological signals associated with inner voice communication. The system includes a wearable device positioned in, on, or around a user's ear, housing one or more sensor modalities such as electromyography (EMG) sensors for detecting muscle movements, functional near-infrared spectroscopy (fNIR) sensors for brain activity, and / or detection-and-ranging systems using sonar or radar for micro-deformations. Pre-processing modules condition the sensor data, which is then analyzed by one or more machine learning models to reconstruct the content of the user's inaudible communication and produce output representations. The system enables high-bandwidth natural language interaction without audible vocalization, maintaining privacy while supporting applications including AI assistant interaction, real-time translation, secure authentication, and inter-party communication.
Owner:INNERVOICE PBC

Customized generation and secure authenticated processing of transfer instrument

A payment service system receives an indication of an interaction between a payee device associated with a payee and an interactive element of a transfer instrument. The payment service system determines, based on an identifier received in association with the indication, a user account of the payee associated with the payment service. The payment service system determines, based on context data associated with the indication, an allocation of one or more asset types. The payment service system facilitates a transfer of one or more transfer amounts of the one or more asset types to the user account of the payee based on the allocation. The one or more transfer amounts are based on an amount of at least one asset type indicated by the transfer instrument. In some examples, the payment service system generates the interactive element and the transfer instrument in response to a request from the payor.
Owner:BLOCK INC

Intelligent medical information sharing method based on federal learning framework

The invention discloses an intelligent medical information sharing method based on a federated learning framework, and relates to the technical field of medical information sharing. According to the invention, the original sensitive data of the medical institution is always kept locally, so that the leakage risk in the centralized storage and transmission process of the data is effectively avoided; a multi-level and end-to-end security protection system is constructed by combining a data encryption unit, a security authentication unit and an anonymization technology in a data preprocessing stage, and the privacy of a patient is ensured to be protected to the greatest extent in the whole model training and information sharing process. Data islands dispersed in different medical institutions can cooperate on the premise that original data does not need to be directly shared by utilizing a federated learning technology. A built federal learning system and a shared platform interface module support safe deployment of a global model which is trained completely and has excellent performance to each participating medical institution or external system.
Owner:CHINESE PEOPLES LIBERATION ARMY GENERAL HOSPITAL HAINAN HOSPITAL

Network fast security verification method and system

The invention discloses a network fast security verification method and system. The method comprises the steps that an initial device generates a verification request and records a corresponding request timestamp; collecting a first device feature to perform migration feature calculation to obtain a migration feature classification result, generating a first feature hash code based on the migration feature classification result, and generating an initial feature hash code set in combination with the request timestamp; determining a migration frequency and a migration state according to the initial feature hash code set, selecting a corresponding verification process based on the migration frequency and the migration state, and when the migration frequency and the migration state are not changed, performing first verification based on the Hamming distance between the first feature hash code and the initial feature hash code set; and when the migration times and the migration state change, generating a second feature hash code by using the migration token, the second device feature and the verification times, and performing Hamming distance comparison on the second feature hash code and a third feature hash code generated according to the initial feature hash code set and the verification times to realize efficient device identity verification.
Owner:NINGBO XINYUAN ELECTRONIC TECH CO LTD

Passwordless secure authentication

Disclosed embodiments relate to passwordless authentication. Techniques include identifying a request by a user to access an access-restricted target resource, the user operating on a client computing device and the request being associated with a network address for the access-restricted target resource; intercepting the request; generating a unique session identifier for the user; making available the unique session identifier to the user of the client computing device; performing dual-mode, passwordless authentication of the user; confirming, based on the dual-mode, passwordless authentication of the user, the identity of the user and the user's current use of the client computing device; and permitting, based on the confirmation, the user to access the access-restricted target resource.
Owner:CYBER ARK SOFTWARE LTD

A method and system for secure authentication of customer's real information

This invention relates to the field of digital information transmission technology, specifically to a method and system for secure authentication of customer's real information. The method includes: acquiring the real identity information of a target customer and grouping the real identity information into multiple groups of identity sub-information; analyzing the channel transmission and information changes of the first group of identity sub-information during mutual transmission to determine the security authentication capability corresponding to the first group of identity sub-information; based on the security authentication capability corresponding to the first group of identity sub-information, causing the second group of identity sub-information to overwrite the first group of identity sub-information; for other groups of identity sub-information, sequentially analyzing the channel transmission and information changes of the previous group of identity sub-information during mutual transmission to overwrite the previous group of identity sub-information, and then transmitting the subsequent group of identity sub-information to each other, until all groups of identity sub-information are transmitted to the server, thereby improving the security and authentication capability of customer's real information.
Owner:FANGYUAN LOGO CERTIFICATION GRP SHANDONG CO LTD

Secure authentication artifact signing service for authentication system

A system for authenticating a principal comprises first and second authentication systems and an authentication artifact signing service. The first authentication system issues a request comprising an authentication artifact associated with the principal and a specification of one or more modifications to be made thereto, the authentication artifact being generated by a second authentication system, signed thereby using a key, and stored by the first authentication system. The signing service receives the request and, responsive thereto: applies the modification(s) to the authentication artifact to generate a modified authentication artifact, signs the modified authentication artifact using a key of the second authentication system, and returns the signed modified authentication artifact to the first authentication system for use in authenticating the principal. The first authentication system executes in a different security domain than the signing service and is unable to access the key used thereby.
Owner:MICROSOFT TECHNOLOGY LICENSING LLC

A network access method, system, and readable medium for a secure access gateway.

This invention discloses a network access method, system, and readable medium for a secure access gateway, relating to the field of network communication technology. It involves acquiring the source and access mode of transmitted data, the scheduling process and its sub-processes during data transmission in the secure access gateway; optimizing each sub-process; associating the access mode of transmitted data with the optimized sub-processes to start the scheduling process, thereby achieving network access to the secure access gateway; optimizing the scheduling process during data transmission by considering the source and access mode (single access or high-concurrency access) of transmitted data in actual operation; and optimizing the data security authentication sub-process through parallel scheduling optimization, thus meeting the security requirements of substation inspection services and providing efficient network communication technology.
Owner:SHENZHEN POWER SUPPLY BUREAU

Booking management system

Secure authentication and delayed transaction processing for booking management systems is provided. Third-party services partner with booking management systems to aggregate and list offerings of the third-party services in a digestible display on a one-stop platform. A booking management system can manage the authentication of payment card information on behalf of any number of such third-party services. The booking management system can maintain and process authentication information associated with traveler payment cards, and provide virtual payment information to the third-party services for payment following chargeable events. The third-party services may later initiate a transactions using the virtual payment information, without being required to perform authentication processing on the traveler payment card information maintained by the booking management system.
Owner:EXPEDIA INC