Patents by Inventor Duane Buss

Duane Buss has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 8793773
    Abstract: System and method for providing reciprocity in a reputation system are described.
    Type: Grant
    Filed: January 30, 2008
    Date of Patent: July 29, 2014
    Assignee: Apple Inc.
    Inventor: Duane Buss
  • Patent number: 8707400
    Abstract: A system and method for consumer-side authorization and authentication is disclosed. In one embodiment, the method comprises receiving a request for a credential from a business-side party, matching the credential request to a set of available credentials, the available credentials comprising consumer-side information. The credential is retrieved from a credential store, and the authorization of the business-side party to receive the credential is evaluated before returning a response. In another embodiment, the system comprises a receiver module adapted to receive credential requests from business-side parties. The credential request is passed to a selection and matching module for matching against consumer-side credentials. The credential is retrieved from a storage and retrieval module, but is not passed until an authorization module allows a sender module to return a credential response to the business-side party.
    Type: Grant
    Filed: January 22, 2007
    Date of Patent: April 22, 2014
    Assignee: Apple Inc.
    Inventor: Duane Buss
  • Patent number: 8701172
    Abstract: System and method for facilitating user authentication of web page content are described. In one embodiment, the method comprises receiving a request from a web browser for web page content; and responsive to receipt of the request, providing to the web browser the requested web page content and associated digitally signed content; wherein prior to display of the web page content by the web browser, the digitally signed content is evaluated by a plug-in portion of the web browser to determine whether the digitally signed content is verified, indicating that a provider of the web page content is trustworthy.
    Type: Grant
    Filed: August 13, 2008
    Date of Patent: April 15, 2014
    Assignee: Apple Inc.
    Inventors: Daniel Sanders, Duane Buss
  • Patent number: 8571990
    Abstract: A method for expressing and evaluating signed reputation assertions is disclosed. In one embodiment, a first entity receives a request to generate a signed assertion relating to a piece of content. The first entity generates a reputation statement about a second entity from reputation-forming information (RFI) about the second entity available to the first entity. The first entity then generates a signed assertion from the reputation statement and the piece of content at least in part by binding the piece of content to the reputation statement and signing a portion encompassing at least one of the bound piece of content and the bound reputation statement. The signed assertion is then transmitted to a receiving entity.
    Type: Grant
    Filed: August 1, 2008
    Date of Patent: October 29, 2013
    Assignee: EMC Corporation
    Inventor: Duane Buss
  • Patent number: 8561172
    Abstract: A client includes a card selector, and receives a security policy from a relying party. If the client does not have an information card that can satisfy the security policy, the client can define a virtual information card, either from the security policy or by augmenting an existing information card. The client can also use a local security policy that controls how and when a virtual information card is defined. The virtual information card can then be used to generate a security token to satisfy the security policy.
    Type: Grant
    Filed: August 29, 2008
    Date of Patent: October 15, 2013
    Assignee: Novell Intellectual Property Holdings, Inc.
    Inventors: Duane Buss, Andrew Hodgkinson, Tom Doman
  • Patent number: 8301901
    Abstract: A method for expressing and evaluating signed reputation assertions is disclosed. In one embodiment, a first entity receives a request to generate a signed assertion relating to a piece of content. The first entity generates a reputation statement about a second entity from reputation-forming information (RFI) about the second entity available to the first entity. The first entity then generates a signed assertion from the reputation statement and the piece of content at least in part by binding the piece of content to the reputation statement and signing a portion encompassing at least one of the bound piece of content and the bound reputation statement. The signed assertion is then transmitted to a receiving entity.
    Type: Grant
    Filed: March 6, 2007
    Date of Patent: October 30, 2012
    Assignee: EMC Corporation
    Inventor: Duane Buss
  • Patent number: 7725416
    Abstract: System and method for rule location, ordering, and combining in a polyhierarchical environment are described. In one embodiment, a polyhierarchical environment contains at least one rule, at least one logical structure representable by a graph and at least two connections between one or more of the logical structures and a rule set evaluator (RSE). The RSE retrieves an assembly definition associated with a particular ordering or combination of rules. Each assembly definition is associated with one or more location chains, and each location chain is associated with one of the connections to a logical structure. For each location chain, a rule location policy is invoked, returning a rule. An assembly policy is invoked upon the returned rules, forming the returned rule into a dataset that conforms to the ordering or combination associated with the assembly definition.
    Type: Grant
    Filed: December 13, 2006
    Date of Patent: May 25, 2010
    Assignee: Novell, Inc.
    Inventor: Duane Buss
  • Publication number: 20100058435
    Abstract: A client includes a card selector, and receives a security policy from a relying party. If the client does not have an information card that can satisfy the security policy, the client can define a virtual information card, either from the security policy or by augmenting an existing information card. The client can also use a local security policy that controls how and when a virtual information card is defined. The virtual information card can then be used to generate a security token to satisfy the security policy.
    Type: Application
    Filed: August 29, 2008
    Publication date: March 4, 2010
    Applicant: NOVELL, INC.
    Inventors: Duane Buss, Andrew Hodgkinson, Tom Doman
  • Publication number: 20100043058
    Abstract: System and method for facilitating user authentication of web page content are described. In one embodiment, the method comprises receiving a request from a web browser for web page content; and responsive to receipt of the request, providing to the web browser the requested web page content and associated digitally signed content; wherein prior to display of the web page content by the web browser, the digitally signed content is evaluated by a plug-in portion of the web browser to determine whether the digitally signed content is verified, indicating that a provider of the web page content is trustworthy.
    Type: Application
    Filed: August 13, 2008
    Publication date: February 18, 2010
    Applicant: Novell, Inc.
    Inventors: Daniel Sanders, Duane Buss
  • Publication number: 20090193520
    Abstract: System and method for providing reciprocity in a reputation system are described.
    Type: Application
    Filed: January 30, 2008
    Publication date: July 30, 2009
    Applicant: NOVELL, INC.
    Inventor: Duane Buss
  • Publication number: 20090094041
    Abstract: System and method for representing agreements as reputation are disclosed. In one embodiment, the method comprises, in response to a request to generate an assertion relating to a piece of content, regenerating a reputation statement concerning an agreement from reputation-forming information (RFI) associated with an agreement; and generating an assertion from the reputation statement and the piece of content, the generating comprising binding the piece of content to the reputation statement.
    Type: Application
    Filed: October 9, 2007
    Publication date: April 9, 2009
    Applicant: Novell, Inc.
    Inventor: Duane Buss
  • Publication number: 20090037994
    Abstract: A system and method for assisting in ordered credential selection is disclosed. In one embodiment, the system enables ordered credential selection for credentials associated with one or more digital identities. The system comprises a plurality of security tokens, with each security token comprising a claim associated with a digital identity and where at least two of the security tokens are different from each other. The system also comprises an ordering module and manager module. The ordering module imposes a preferential ordering on the security tokens in accordance with an ordering policy to select a preferred security token. The manager module transmits at least one security token in response to a request, where at least one of the security tokens transmitted by the manager module is the preferred security token.
    Type: Application
    Filed: July 30, 2007
    Publication date: February 5, 2009
    Applicant: NOVELL, INC.
    Inventor: Duane Buss
  • Publication number: 20080288278
    Abstract: A method for expressing and evaluating signed reputation assertions is disclosed. In one embodiment, a first entity receives a request to generate a signed assertion relating to a piece of content. The first entity generates a reputation statement about a second entity from reputation-forming information (RFI) about the second entity available to the first entity. The first entity then generates a signed assertion from the reputation statement and the piece of content at least in part by binding the piece of content to the reputation statement and signing a portion encompassing at least one of the bound piece of content and the bound reputation statement. The signed assertion is then transmitted to a receiving entity.
    Type: Application
    Filed: August 1, 2008
    Publication date: November 20, 2008
    Applicant: Novell. Inc.
    Inventor: Duane Buss
  • Publication number: 20080222425
    Abstract: A method for expressing and evaluating signed reputation assertions is disclosed. In one embodiment, a first entity receives a request to generate a signed assertion relating to a piece of content. The first entity generates a reputation statement about a second entity from reputation-forming information (RFI) about the second entity available to the first entity. The first entity then generates a signed assertion from the reputation statement and the piece of content at least in part by binding the piece of content to the reputation statement and signing a portion encompassing at least one of the bound piece of content and the bound reputation statement. The signed assertion is then transmitted to a receiving entity.
    Type: Application
    Filed: March 6, 2007
    Publication date: September 11, 2008
    Applicant: NOVELL, INC.
    Inventor: Duane Buss
  • Publication number: 20080178270
    Abstract: A system and method for consumer-side authorization and authentication is disclosed. In one embodiment, the method comprises receiving a request for a credential from a business-side party, matching the credential request to a set of available credentials, the available credentials comprising consumer-side information The credential is retrieved from a credential store, and the authorization of the business-side party to receive the credential is evaluated before returning a response. In another embodiment, the system comprises a receiver module adapted to receive credential requests from business-side parties. The credential request is passed to a selection and matching module for matching against consumer-side credentials. The credential is retrieved from a storage and retrieval module, but is not passed until an authorization module allows a sender module to return a credential response to the business-side party.
    Type: Application
    Filed: January 22, 2007
    Publication date: July 24, 2008
    Applicant: NOVELL, INC.
    Inventor: Duane Buss
  • Publication number: 20080147584
    Abstract: System and method for rule location, ordering, and combining in a polyhierarchical environment are described. In one embodiment, a polyhierarchical environment contains at least one rule, at least one logical structure representable by a graph and at least two connections between one or more of the logical structures and a rule set evaluator (RSE). The RSE retrieves an assembly definition associated with a particular ordering or combination of rules. Each assembly definition is associated with one or more location chains, and each location chain is associated with one of the connections to a logical structure. For each location chain, a rule location policy is invoked, returning a rule. An assembly policy is invoked upon the returned rules, forming the returned rule into a dataset that conforms to the ordering or combination associated with the assembly definition.
    Type: Application
    Filed: December 13, 2006
    Publication date: June 19, 2008
    Applicant: NOVELL, INC.
    Inventor: Duane Buss
  • Publication number: 20080021716
    Abstract: A system and method for conforming a decision to a compliance expression is described. In one embodiment, the method comprises receiving an intermediate conclusion generated by a decision system as a result of a policy evaluation performed based on at least one of a premise and a policy expression; performing a compliance evaluation to determine conformance of the received intermediate conclusion with a compliance expression; responsive to the performing a compliance evaluation, selectively executing a compliance statement in connection with the intermediate conclusion; and subsequent to the selectively executing, issuing a decision response, wherein the decision response conforms to the compliance expression.
    Type: Application
    Filed: July 19, 2006
    Publication date: January 24, 2008
    Applicant: Novell, Inc.
    Inventors: Duane Buss, Roger Harrison
  • Publication number: 20070266006
    Abstract: System and method for enforcing role membership removal requirements are described. In one embodiment, the method includes, responsive to receipt of a removal request, performing a role evaluation of the removal request to generate a policy request; performing a policy evaluation of the policy request; generating a policy response in accordance with the policy evaluation; and enforcing the policy response.
    Type: Application
    Filed: May 15, 2006
    Publication date: November 15, 2007
    Applicant: Novell, Inc.
    Inventor: Duane Buss
  • Publication number: 20070179802
    Abstract: Policy enforcement via attestations is provided. A principal operates within an environment and assumes roles having certain access rights to resources and the principal takes actions while assuming those roles. The roles and actions are monitored and attestations are raised under the proper set of circumstances. The attestations trigger policy restrictions that are enforced against the principal. The policy restrictions circumscribe the access rights to the resources.
    Type: Application
    Filed: December 13, 2006
    Publication date: August 2, 2007
    Inventors: Duane Buss, Stephen Carter
  • Publication number: 20070027910
    Abstract: Methods and systems are provided for enforcing security on attributes of objects. A requestor attempts to assign a value to a target attribute of a target object. The value is a reference to a third object. The target attribute includes security for assigning values and is also linked to a related third attribute associated with the third object. The security associated with the target attribute and security associated with the third attribute are both independently enforced before the assignment of the value to the target attribute is permitted to proceed.
    Type: Application
    Filed: September 12, 2006
    Publication date: February 1, 2007
    Inventors: Duane Buss, Dale Olds