BR112014003054A2 - processo de gestão e de controle de dados de diferentes domínios de identidade organizados em conjunto de estrutura - Google Patents

processo de gestão e de controle de dados de diferentes domínios de identidade organizados em conjunto de estrutura

Info

Publication number
BR112014003054A2
BR112014003054A2 BR112014003054A BR112014003054A BR112014003054A2 BR 112014003054 A2 BR112014003054 A2 BR 112014003054A2 BR 112014003054 A BR112014003054 A BR 112014003054A BR 112014003054 A BR112014003054 A BR 112014003054A BR 112014003054 A2 BR112014003054 A2 BR 112014003054A2
Authority
BR
Brazil
Prior art keywords
identity
managing
domain
derived
individual
Prior art date
Application number
BR112014003054A
Other languages
English (en)
Other versions
BR112014003054B1 (pt
Inventor
Patey Alain
Chabanne Hervé
Bringer Julien
Original Assignee
Morpho
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Morpho filed Critical Morpho
Publication of BR112014003054A2 publication Critical patent/BR112014003054A2/pt
Publication of BR112014003054B1 publication Critical patent/BR112014003054B1/pt

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/0884Network architectures or network communication protocols for network security for authentication of entities by delegation of authentication, e.g. a proxy authenticates an entity to be authenticated on behalf of this entity vis-à-vis an authentication entity
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/30Authentication, i.e. establishing the identity or authorisation of security principals
    • G06F21/31User authentication
    • G06F21/32User authentication using biometric data, e.g. fingerprints, iris scans or voiceprints
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/0853Network architectures or network communication protocols for network security for authentication of entities using an additional device, e.g. smartcard, SIM or a different communication terminal
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/0861Network architectures or network communication protocols for network security for authentication of entities using biometrical features, e.g. fingerprint, retina-scan
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/08Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
    • H04L9/0861Generation of secret information including derivation or calculation of cryptographic keys or passwords
    • H04L9/0866Generation of secret information including derivation or calculation of cryptographic keys or passwords involving user or device identifiers, e.g. serial number, physical or biometrical information, DNA, hand-signature or measurable physical characteristics
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/32Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
    • H04L9/3226Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials using a predetermined code, e.g. password, passphrase or PIN
    • H04L9/3231Biological data, e.g. fingerprint, voice or retina
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/32Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
    • H04L9/3247Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving digital signatures
    • H04L9/3255Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving digital signatures using group based signatures, e.g. ring or threshold signatures
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/32Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
    • H04L9/3263Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving certificates, e.g. public key certificate [PKC] or attribute certificate [AC]; Public key infrastructure [PKI] arrangements
    • H04L9/3268Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving certificates, e.g. public key certificate [PKC] or attribute certificate [AC]; Public key infrastructure [PKI] arrangements using certificate validation, registration, distribution or revocation, e.g. certificate revocation list [CRL]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L2209/00Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
    • H04L2209/42Anonymization, e.g. involving pseudonyms

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • General Engineering & Computer Science (AREA)
  • Computer Hardware Design (AREA)
  • Health & Medical Sciences (AREA)
  • Biomedical Technology (AREA)
  • General Health & Medical Sciences (AREA)
  • Computing Systems (AREA)
  • Life Sciences & Earth Sciences (AREA)
  • Biodiversity & Conservation Biology (AREA)
  • Theoretical Computer Science (AREA)
  • Software Systems (AREA)
  • Physics & Mathematics (AREA)
  • General Physics & Mathematics (AREA)
  • Storage Device Security (AREA)
  • Collating Specific Patterns (AREA)
  • Management, Administration, Business Operations System, And Electronic Commerce (AREA)
  • Financial Or Insurance-Related Operations Such As Payment And Settlement (AREA)

Abstract

1/1 resumo “processo de gestão e de controle de dados de diferentes domínios de identidade organizados em conjunto de estrutura.” a invenção se refere a um processo e a um sistema de gestão e de controle de diferentes dados de identidade de um indivíduo. um servidor de gestão de identidade derivada gera para o indivíduo, em função de informações derivadas de dados de identidade de domínios parentes pelo menos uma parte de identidade com as quais o indivíduo pode se autenticar junto a um fornecedor de serviço para o domínio de identidade derivada. o tratamento de geração dos dados de identidade assegura que nenhum link pode ser estabelecido a partir de duas autenticações em dois domínios distintos na ausência de informação do link. essas informações de link são, se for o caso, transmitidas por um domínio parente a um servidor de identidade derivada para que ele faça o link entre dados de identidade do domínio de identidade derivada e dos dados de identidade do domínio parente, por exemplo, para revogar em cascata um indivíduo de diferente domínio.
BR112014003054-5A 2011-08-09 2012-08-02 Processo de gestão e de controle de diferentes dados de identidade de um indivíduo, e, sistema de gestão e de controle de dados de identidade de um indivíduo BR112014003054B1 (pt)

Applications Claiming Priority (3)

Application Number Priority Date Filing Date Title
FR1157261A FR2979044B1 (fr) 2011-08-09 2011-08-09 Procede de gestion et de controle de donnees de differents domaines d'identite organises en ensemble structure
FR1157261 2011-08-09
PCT/EP2012/065153 WO2013020890A1 (fr) 2011-08-09 2012-08-02 Procede de gestion et de controle de donnees de differents domaines d'identite organises en ensemble structure

Publications (2)

Publication Number Publication Date
BR112014003054A2 true BR112014003054A2 (pt) 2017-02-21
BR112014003054B1 BR112014003054B1 (pt) 2022-04-12

Family

ID=46639494

Family Applications (1)

Application Number Title Priority Date Filing Date
BR112014003054-5A BR112014003054B1 (pt) 2011-08-09 2012-08-02 Processo de gestão e de controle de diferentes dados de identidade de um indivíduo, e, sistema de gestão e de controle de dados de identidade de um indivíduo

Country Status (11)

Country Link
US (1) US9407637B2 (pt)
EP (1) EP2742645B1 (pt)
JP (2) JP2014529124A (pt)
CN (1) CN103858377B (pt)
AU (1) AU2012293712B2 (pt)
BR (1) BR112014003054B1 (pt)
CA (1) CA2844762C (pt)
FR (1) FR2979044B1 (pt)
IL (1) IL230870A (pt)
RU (1) RU2602785C2 (pt)
WO (1) WO2013020890A1 (pt)

Families Citing this family (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
FR3005185B1 (fr) * 2013-04-30 2015-04-17 Morpho Procede pour generer au moins une identite derivee
WO2016128906A1 (en) * 2015-02-11 2016-08-18 Visa International Service Association Systems and methods for securely managing biometric data
US10069824B2 (en) 2015-05-12 2018-09-04 Branch Banking And Trust Company Biometric signature authentication and centralized storage system
RU2739262C1 (ru) * 2020-04-05 2020-12-23 Эрвью.ТВ, Инк. Способ управления предъявлением информации
US11824896B2 (en) 2020-04-06 2023-11-21 Exonym GmbH Cross-service rulebook management in a dynamic and adversarial environment
US11962573B2 (en) 2021-10-26 2024-04-16 Genetec Inc System and method for providing access to secured content field

Family Cites Families (14)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
EP1164745A3 (en) * 2000-06-09 2005-03-30 Northrop Grumman Corporation System and method for usage of a role certificate in encryption, and as a seal, digital stamp, and a signature
US7028180B1 (en) * 2000-06-09 2006-04-11 Northrop Grumman Corporation System and method for usage of a role certificate in encryption and as a seal, digital stamp, and signature
US6993596B2 (en) * 2001-12-19 2006-01-31 International Business Machines Corporation System and method for user enrollment in an e-community
FR2834598B1 (fr) * 2002-01-04 2004-02-20 France Telecom Procede et dispositif de signature anonyme au moyen d'une cle privee partagee
US7793095B2 (en) * 2002-06-06 2010-09-07 Hardt Dick C Distributed hierarchical identity management
JP2008501177A (ja) * 2004-05-28 2008-01-17 コーニンクレッカ フィリップス エレクトロニクス エヌ ヴィ プライバシーを保護する情報配布システムにおけるライセンス管理
US7315941B2 (en) * 2004-12-17 2008-01-01 Ntt Docomo Inc. Multi-certificate revocation using encrypted proof data for proving certificate's validity or invalidity
JP4727353B2 (ja) * 2005-09-06 2011-07-20 株式会社Kddi研究所 識別情報生成管理装置およびシステムならびにプログラム
CN101039182B (zh) * 2007-03-07 2010-08-11 广东南方信息安全产业基地有限公司 基于标识的公钥密码认证系统及标识证书发放方法
KR100962399B1 (ko) * 2007-08-24 2010-06-11 한국전자통신연구원 익명 공개 키 기반구조 제공 방법 및 이를 이용한 서비스제공 방법
FR2925732B1 (fr) * 2007-12-21 2010-02-12 Sagem Securite Generation et utilisation d'une cle biometrique
CN101272395B (zh) * 2008-05-20 2012-07-11 北京交通大学 一种通信网络的层次接入控制方法
US20100122080A1 (en) 2008-11-11 2010-05-13 Electronics And Telecommunications Research Institute Pseudonym certificate process system by splitting authority
EP2359576B1 (en) * 2008-11-20 2017-12-27 Mark Kevin Shull Domain based authentication scheme

Also Published As

Publication number Publication date
US20140181932A1 (en) 2014-06-26
CN103858377A (zh) 2014-06-11
WO2013020890A1 (fr) 2013-02-14
IL230870A0 (en) 2014-03-31
CA2844762A1 (fr) 2013-02-14
AU2012293712A1 (en) 2014-03-27
CA2844762C (fr) 2020-07-28
IL230870A (en) 2017-09-28
AU2012293712B2 (en) 2016-07-21
FR2979044A1 (fr) 2013-02-15
RU2602785C2 (ru) 2016-11-20
RU2014106962A (ru) 2015-09-20
EP2742645B1 (fr) 2018-10-03
US9407637B2 (en) 2016-08-02
JP6688823B2 (ja) 2020-04-28
FR2979044B1 (fr) 2013-08-30
JP2014529124A (ja) 2014-10-30
EP2742645A1 (fr) 2014-06-18
BR112014003054B1 (pt) 2022-04-12
JP2018137788A (ja) 2018-08-30
CN103858377B (zh) 2017-02-22

Similar Documents

Publication Publication Date Title
BR112017021925A2 (pt) gerenciamento de compromissos e de solicitações extraídos a partir de comunicações e conteúdo
BR112014003054A2 (pt) processo de gestão e de controle de dados de diferentes domínios de identidade organizados em conjunto de estrutura
BR112015021754A2 (pt) sistemas e métodos de transação segura
BR112017022028A2 (pt) extração automática de compromissos e solicitações a partir de comunicações e conteúdo
BR112014003389A2 (pt) sistema de computação, método para assegurar comunicações com um bios de tempo de execução confiável virtual em um sistema de computação e meio lido por computador
BR112014018229A8 (pt) Método e sistema para licenciar uma aplicação utilizando provedores de sincronização, e dispositivo de armazenamento legível por computador
BR112015008411A8 (pt) método implementado por computador para restrear conteúdo publicado de vídeo compartilhado online, sistema para rastrear o compartilhamento de conteúdo de vídeo publicado online, e aparelho
ATE543321T1 (de) System und verfahren für transparenten cloud- zugriff
BR112015028071A2 (pt) sistemas e métodos para comunicação segura
BR112014003390A2 (pt) sistema de computação, método para lidar com pedidos de gerenciamento de sistema em um sistema de computação e meio lido por computador
BR112014012075A2 (pt) método para dotar um aplicativo de cliente de acesso a um arquivo e sistema para dotar um aplicativo de cliente de acesso offline a um arquivo
BR112012033016A2 (pt) método, sistema e meio de armazenamento por computador incluindo instruções codificadas utilizadas em parte para proporcionar serviços on-line
BR112015013728A2 (pt) método e sistema para roaming de ruptura de hub
BR112015015062A2 (pt) plataforma de distribuição e gerenciamento de mídia
BR112017020508A2 (pt) técnicas para compartilhar e remixar mídia através de um sistema de mensagens
BR112015020097A8 (pt) Dispositivo de computação de cliente, método executado por um dispositivo de computação de cliente e meio de armazenamento legível por computador para autenticar um cliente de uma aplicação de comunicações unificada com bilhete da web baseado em uma chave simétrica
BR112014014153A2 (pt) método, sistema e meio de armazenamento legível por computador
BR112013031078A2 (pt) emissor-receptor móvel, emissor-receptor de estação base, servidor de dados e aparelhos relacionados, métodos e programas de computadores
BR112015010349A2 (pt) sistema de processamento de amostras automatizado
BR112015001982A2 (pt) método para a geração de um código, método de autorização para autorizar uma operação implementada em um sistema de autorização para autorizar uma operação compreendendo as seguintes entidades um cliente, um primeiro servidor e um segundo servidor em comunicação com o primeiro servidor e em comunicação com o cliente, aplicativo e meio que pode ser lido por um processador
BR112013029954A8 (pt) Sistema e método implementado por computador para propagar conteúdo recebido por meio de ferramenta e produto de programa de computador
BR112014003123A2 (pt) método implementado em computador e meios de armazenamento legíveis por computador
BR112013016874A2 (pt) direcionamento com base em atulizações sociais
BR112013020266A2 (pt) dispositivo e método de processamento de informação
BR112015006111A2 (pt) método e sistema para a transmissão de instruções de execução obrigatória em um sistema de controle positivo de trem, programa de computador, método para a mitigação de riscos em uma checagem cíclica de redundância e método para verificar e confirmar dados de instruções de execução obrigatória a bordo de um trem

Legal Events

Date Code Title Description
B06F Objections, documents and/or translations needed after an examination request according [chapter 6.6 patent gazette]
B06U Preliminary requirement: requests with searches performed by other patent offices: procedure suspended [chapter 6.21 patent gazette]
B09A Decision: intention to grant [chapter 9.1 patent gazette]
B16A Patent or certificate of addition of invention granted [chapter 16.1 patent gazette]

Free format text: PRAZO DE VALIDADE: 20 (VINTE) ANOS CONTADOS A PARTIR DE 02/08/2012, OBSERVADAS AS CONDICOES LEGAIS.

B25G Requested change of headquarter approved

Owner name: MORPHO (FR)

B25D Requested change of name of applicant approved

Owner name: SAFRAN IDENTITY AND SECURITY (FR)

B25D Requested change of name of applicant approved

Owner name: IDEMIA IDENTITY AND SECURITY FRANCE (FR)