Method and system for controlling access privilege for trusted network node
    1.
    发明专利
    Method and system for controlling access privilege for trusted network node 审中-公开
    控制网络节点访问权限的方法和系统

    公开(公告)号:JP2006085697A

    公开(公告)日:2006-03-30

    申请号:JP2005259125

    申请日:2005-09-07

    Abstract: PROBLEM TO BE SOLVED: To realize loose security within a network while retaining strong security against external access to a local network. SOLUTION: A user has access trusted nodes in a secured group within an unmanaged network, without being required to choose, enter and remember a login password. To establish such a secure blank password or one-click logon account for the user on a computer, a strong random password is generated and stored, and the account is designated as a blank password account. If the device is part of a secured network group, the strong random password is replicated to the other trusted nodes. When a user with a blank password account wishes to log in to a computer, the stored strong random password is retrieved and the user is authenticated. COPYRIGHT: (C)2006,JPO&NCIPI

    Abstract translation: 要解决的问题:在网络中实现宽松的安全性,同时保持对本地网络的外部访问的强大的安全性。

    解决方案:用户具有访问非托管网络中的安全组中的受信任节点,无需选择,输入和记住登录密码。 要在计算机上为用户建立一个安全的空白密码或一键登录帐户,将生成并存储一个强大的随机密码,并将该帐户指定为空白密码帐户。 如果设备是安全网络组的一部分,则强大的随机密码将复制到其他可信节点。 当具有空白密码帐户的用户希望登录到计算机时,检索所存储的强随机密码,并对用户进行认证。 版权所有(C)2006,JPO&NCIPI

    Interoperable credential gathering and access modularity
    2.
    发明专利
    Interoperable credential gathering and access modularity 有权
    互相认可的获取和访问模块

    公开(公告)号:JP2005129032A

    公开(公告)日:2005-05-19

    申请号:JP2004278406

    申请日:2004-09-24

    CPC classification number: G06F21/31 Y10S707/99938 Y10S707/99939

    Abstract: PROBLEM TO BE SOLVED: To allow a user to log on to coexistent authentication infrastructures different from each other. SOLUTION: A credential is translated with one of different credential provider modules each translating a corresponding different type of credential into a common protocol. The translated credential is communicated through an API to a logon UI module to an OS of a local machine. An OS logon module is called by the logon UI module to authenticate the translated credential against a credential database. A user identified by the translated credential is logged on to access the local machine when the authentication is successful. The API establishes a network session with an access service specified by the selected PLAP module when the credential is authenticated with the credential database. COPYRIGHT: (C)2005,JPO&NCIPI

    Abstract translation: 要解决的问题:允许用户登录到彼此不同的共存认证基础设施。 解决方案:使用不同凭证提供者模块之一翻译凭证,每个凭证提供者模块将相应的不同类型的凭证翻译成公共协议。 翻译的凭证通过API传达到登录UI模块到本地机器的操作系统。 登录UI模块调用操作系统登录模块,以根据凭据数据库验证转换的凭据。 当认证成功时,由登录的凭证登录的用户访问本地计算机。 当凭证凭证凭证数据库进行身份验证时,API与所选择的PLAP模块指定的访问服务建立网络会话。 版权所有(C)2005,JPO&NCIPI

    Credential interface
    4.
    发明专利

    公开(公告)号:NZ562675A

    公开(公告)日:2010-05-28

    申请号:NZ56267505

    申请日:2005-07-28

    Applicant: MICROSOFT CORP

    Abstract: A method of authenticating a user is disclosed. Multiple sets of credential information for multiple credentials and from multiple credential providers are received. Each set of credential information to enable tailoring of a portion of a graphical user interface to present one of the multiple credentials and to specify an acceptable credential type for the one of the multiple credentials. A request to authenticate the user is received. The multiple credentials are presented on the graphical user interface. The graphical user interface includes a corresponding portion for each of the multiple credentials that is tailored based on its set of credential information. An authenticator for one of the multiple credentials that is of the acceptable credential type is received. The authenticator is capable of authenticating the user. Alternatively a method of authenticating a user comprises gathering sets of information associated with two or more credentials. Each of the credentials capable of authenticating users and the sets of information are associated with the each of the credentials including instructions for submitting an authenticator for the each of the credentials to an authenticating entity. A graphical user interface to display the sets of information associated with the two or more credentials is tailored and the graphical user interface is presented. The graphical user interface enables selection of at least one of the two credentials.

    INTEROPERABLE CREDENTIAL GATHERING AND ACCESS MODULARITY

    公开(公告)号:CA2482081A1

    公开(公告)日:2005-04-24

    申请号:CA2482081

    申请日:2004-09-16

    Applicant: MICROSOFT CORP

    Abstract: A credential is translated with one of different credential provider modules each translating a corresponding different type of credential into a common protocol. The translated credential is communicated through an API to a logon UI module to an operating system (OS) of a local machine. An OS logon module is called by the logon UI module to authenticate the translated credential against a credential database. A user identified by the translated credential is logged on to access the local machine when the authentication is successful. The credential can also be used with a selection received from t he logon UI module via a corresponding one of different pre-log access provider (PLAP) modules that each communicate with the API. The API establishes a network session with an access service specified by the selected PLAP module when the credential is authenticated with the credential database.

    INTEROPERABLE CREDENTIAL GATHERING AND ACCESS MODULARITY

    公开(公告)号:CA2482081C

    公开(公告)日:2013-11-19

    申请号:CA2482081

    申请日:2004-09-16

    Applicant: MICROSOFT CORP

    Abstract: A credential is translated with one of different credential provider modules each translating a corresponding different type of credential into a common protocol. The translated credential is communicated through an API to a logon UI module to an operating system (OS) of a local machine. An OS logon module is called by the logon UI module to authenticate the translated credential against a credential database. A user identified by the translated credential is logged on to access the local machine when the authentication is successful. The credential can also be used with a selection received from the logon UI module via a corresponding one of different pre-log access provider (PLAP) modules that each communicate with the API. The API establishes a network session with an access service specified by the selected PLAP module when the credential is authenticated with the credential database.

Patent Agency Ranking