WO02056155A2

Security system for preventing a personal computer from being used by unauthorized people

Abstract

Security system for preventing a main computer device owned by an authorized user from beng used by unauthrorized people comprising an extractable security piece (10) which can be removed from the computer device by the authorized user, such an extractable security pice containing at least an extractable main private key (20) and a main PC public key (22), a PC security area (12) which is a non-extractable part of the computer device, such a PC security area containing at least a PC private key (34) and an extractable main public key (32) consitituting with the keys of the extractable security piece a Public Key Infrastructure (PKI), and processing means (14, 16) in each of the extractable security piece and the PC security area for carrying out a mutual authentication of the extractable security piece and the PC security area after the eytractable security piece, which had been previously removed, has been put back at its right location thereby enabling the authorized user to access data stored in the computer device.

Term

No projected expiry on record.

  1. Priority
  2. Filed
  3. Published
  4. Today

11 claims: 4 independent, 7 dependent

  1. 1
    CLAIMS 1. Security system for preventing a main computer device owned by an authorized user from bein used by unauthorized people comprising :an extractable security piece (10) which is a piece of said main computer device and which can be removed therefrom by the authorized user, said extractable security piece containing at least an extractable main private key (20) and a main PC public key (22), a PC security area (12) which is a non-extractable part of said computer device, said PC security area containing at least a PC private key (34) and an extractable main public key (32) , the couple of said PC private key and extractable main public key constituting a Public Key Infrastructure (PKI) with respectively the couple of said extractable main private key and main PC public key, and processing means (14, 26) in each of said extractable security piece and PC security area for carrying out a mutual authentication of said extractable security piece and said PC security area after said extractable security piece, which had been previously removed, has been put back at its right location thereby enabling the authorized user to access data stored in said computer device.
  2. 4
    Security method for authorizing a main computer device owned by an authorized user to be used by a guest user wherein said main computer device includes a main extractable security piece (10) containing at least an extractable main private key (40), a main PC public key (42) and a first processor (14) , and a PC security area (12) containing at least an extractable main public key (56) and a PC private key (58) both constituting a Public Key Infrastructure (PKI) with said keys of a said extractable security piece and a second processor (26) for exchanging data of authentication with said first processor; said method comprising the steps of :- inserting said main extractable security piece into said main computer device, - removing said main extractable security piece from said main computer device after said first and second processors have exchanged said data of authentication, and - inserting into the same location a guest extractable security piece (76) of a guest computer owned by said guest user, said guest extractable security piece including the same functions and areas as said main extractable security piece.
  3. 7
    Security method for authorizing a main computer device owned by an authorized user to be remotely used from a remote computer device by said authorized user wherein said main computer device includes a main extractable security piece (10) containing at least an extractable main private key (40) and a main PC Public key (42) and a first processor (14), and a PC security area (12) containing at least an extractable main public key (56) and a PC Private key (58) both constituting a Public Key Infrastructure (PKI) with said keys of said extractable security piece and a second processor (26) for exchanging data of authentication with said first processor ;said method comprising the step of inserting said main extractable security piece into said remote computer device so that an extractable main public key (56') is transferred from said main extractable security piece into a temporary key area (90) within a remote PC security area (84) of said remote computer device in order for said remote computer device to verify that said extractable main public key corresponds really to said authorized user.
  4. 11
    Security method according to any one of the preceding claims, wherein said PC security area (12) is included in the computer device motherboard or another mandatory board or a card in the computer device.