Patents by Inventor Harri Hakala

Harri Hakala has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Publication number: 20240015175
    Abstract: There is provided mechanisms for generating a security configuration profile for a network entity. A method is performed by a security configuration entity. The method comprises generating the security configuration profile for the network entity based on network entity information, deployment information, and feedback information for a previously generated security configuration profile. The method comprises determining, based on calculating a risk score for the generated security configuration profile, whether the security configuration profile is to be provided towards the network entity or not. The method comprises generating feedback information for the security configuration profile based on the risk score, the network entity information, and the deployment information.
    Type: Application
    Filed: August 14, 2020
    Publication date: January 11, 2024
    Applicant: Telefonaktiebolaget LM Ericsson (publ)
    Inventors: Harri HAKALA, Anu PUHAKAINEN, Joel Patrik REIJONEN, Tomi POUTANEN
  • Publication number: 20230239687
    Abstract: According to some embodiments, a security management entity is provided. The security management entity includes processing circuitry configured to: generate a key having a plurality of key parts, anonymize at least a first data instance at least in part by using the key with threshold cryptography, transmit a respective key part to each one of the plurality of trusted entities, store at least one key part where the stored at least one key part is different from the transmitted respective key parts, receive a message from a first trusted entity of the plurality of trusted entities for investigating the anonymized first data instance where the message includes one of the transmitted respective key parts, and deanonymize the first data instance using the stored at least one key part and the one of the transmitted respective key parts associated with the first trusted entity.
    Type: Application
    Filed: June 25, 2020
    Publication date: July 27, 2023
    Inventors: Bernard SMEETS, Harri HAKALA, Tommy ARNGREN, Yosr JARRAYA, Makan POURZANDI
  • Publication number: 20230071264
    Abstract: A Security automation system (100; 400; 500) configured for security management of an Information Technology (IT) system (200), the security automation system using machine learning (ML). The system comprises a Threat engine (110), a Risk engine (120), a Policy engine (130) and a Security Adaptation engine (140). The Threat engine (110) comprises a threat catalog and detection rules for identifying threat events, wherein the detection rules are automatically adjusted and modified based on information collected from the managed IT system.
    Type: Application
    Filed: February 4, 2021
    Publication date: March 9, 2023
    Inventors: Harri HAKALA, Anu PUHAKAINEN
  • Publication number: 20230022539
    Abstract: A security management system including a first TEE and a common TEE is provided. The first TEE is a secured environment for data associated with a first entity. The common TEE is a seemed environment for data associated with any one of a plurality of entities. First anonymization parameters are shared between the first TEE and the common TEE The first anonymization parameters arc based at least in part on at least one privacy requirement of the first entity and at least one utility requirement of the security management system. The security management system includes processing circuitry configured to: anonymize first data associated with the first entity based at least in part on the first anonymization parameters, analyze at least the anonymized first data for performing data investigation, and generate analysis results based at least in part on the analysis of at least the anonymized first data.
    Type: Application
    Filed: January 14, 2020
    Publication date: January 26, 2023
    Inventors: Yosr JARRAYA, Makan POURZANDI, Harri HAKALA, Bernard SMEETS, Tommy ARNGREN
  • Patent number: 11139957
    Abstract: An apparatus and method for creating a finite blockchain is provided. The blockchain comprises a genesis block that is the first block of the blockchain. The genesis block comprising a genesis expiry time. The method comprises the steps of creating a reincarnation block when a predefined condition is satisfied and appending it to the blockchain; determining whether the genesis expiry time has elapsed based on an expiry period; if the genesis expiry time has elapsed then identifying a first reincarnation block; if the first reincarnation block is identified then deleting all the blocks preceding the first reincarnation block including the genesis block in the block chain.
    Type: Grant
    Filed: December 8, 2016
    Date of Patent: October 5, 2021
    Assignee: Telefonaktiebolaget LM Ericsson (publ)
    Inventors: Hans Ahlbäck, Harri Hakala, Mikael Jaatinen, Leena Marjatta Mattila
  • Patent number: 10990428
    Abstract: A method of verifying the integrity of a virtual machine in a cloud computing deployment comprises: creating a virtual machine image derived from a trusted virtual machine, wherein the trusted virtual machine has a Keyless Signature Infrastructure signature stored in a signature store; and verifying that a computation resource can be trusted. If it is verified that a computation resource can be trusted, the method further comprises: submitting the virtual machine image to the trusted computation resource; checking a signature of the virtual machine image against the stored signature of the trusted virtual machine; launching the virtual machine image on the trusted computation resource, and creating a Keyless Signature Infrastructure signature of the virtual machine image; and storing the signature of the virtual machine image in a signature store.
    Type: Grant
    Filed: July 3, 2015
    Date of Patent: April 27, 2021
    Assignee: TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)
    Inventors: Harri Hakala, Ari Pietikäinen, Ben Smeets
  • Publication number: 20200076576
    Abstract: An apparatus and method for creating a finite blockchain is provided. The blockchain comprises a genesis block that is the first block of the blockchain. The genesis block comprising a genesis expiry time. The method comprises the steps of creating a reincarnation block when a predefined condition is satisfied and appending it to the blockchain; determining whether the genesis expiry time has elapsed based on an expiry period; if the genesis expiry time has elapsed then identifying a first reincarnation block; if the first reincarnation block is identified then deleting all the blocks preceding the first reincarnation block including the genesis block in the block chain.
    Type: Application
    Filed: December 8, 2016
    Publication date: March 5, 2020
    Inventors: Hans AHLBÄCK, Harri HAKALA, Mikael JAATINEN, Leena Marjatta MATTILA
  • Patent number: 10482078
    Abstract: The disclosure relates to a method (30) of handling a hash-tree based data signature. The method (30) is performed in a first device (13, 13a) and comprises: receiving (31), from a second device (12, 12a, 12b), a data signature generation request, the request comprising an indication on type of storage of a generated data signature; generating (32), in response to the data signature generation request, the data signature B using a hash-tree based data signing method; and providing (33), to the second device (12, 12a, 12b), a reference C to the generated data signature, wherein the generated data signature is obtainable by means of the reference C. The disclosure also relates to a method in a second device, corresponding devices, computer programs and computer program products.
    Type: Grant
    Filed: June 30, 2015
    Date of Patent: November 19, 2019
    Assignee: TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)
    Inventors: Harri Hakala, Mikael Jaatinen, Hannu Lehtinen, Leena Marjatta Mattila
  • Publication number: 20190089540
    Abstract: There is provided mechanisms for handling transfer of a data object between network domains. A method is performed by a first data controller of a first network domain. The method comprises obtaining a request for transmission of the data object to a second data controller of a second network domain. The method comprises obtaining an identifier identifying allowable transfer of the data object between the first network domain and the second network domain. The method comprises providing a cryptographic integrity signature to the data object. The method comprises enabling transfer of the data object to the second network domain according to the identifier.
    Type: Application
    Filed: March 24, 2016
    Publication date: March 21, 2019
    Inventors: Mikael Jaatinen, Jukka Ylitalo, Harri Hakala, Ari Pietikäinen, Kennet Mattsson
  • Publication number: 20180365045
    Abstract: A method of verifying the integrity of a virtual machine in a cloud computing deployment comprises: creating a virtual machine image derived from a trusted virtual machine, wherein the trusted virtual machine has a Keyless Signature Infrastructure signature stored in a signature store; and verifying that a computation resource can be trusted. If it is verified that a computation resource can be trusted, the method further comprises: submitting the virtual machine image to the trusted computation resource; checking a signature of the virtual machine image against the stored signature of the trusted virtual machine; launching the virtual machine image on the trusted computation resource, and creating a Keyless Signature Infrastructure signature of the virtual machine image; and storing the signature of the virtual machine image in a signature store.
    Type: Application
    Filed: July 3, 2015
    Publication date: December 20, 2018
    Applicant: Telefonaktiebolaget LM Ericsson (publ)
    Inventors: Harri HAKALA, Ari PIETIKÄINEN, Ben SMEETS
  • Patent number: 10099892
    Abstract: The invention improves control of wear and tear of the elevators in an elevator group having a plurality of elevators and at least one group control unit. The actual usage of each elevator is recorded, and the group control unit executes at least one allocation algorithm for selecting which elevator of the elevator group is used to serve a call. The allocation algorithm compares the actual usage of at least two elevators against respective target usages and selects the elevator having its actual usage most deviating from the target usage to serve an outstanding call. With the invention, the wear and tear of elevators may be balanced, or certain elevators may be set to reach the end of the maintenance period sooner.
    Type: Grant
    Filed: December 1, 2015
    Date of Patent: October 16, 2018
    Assignee: KONE CORPORATION
    Inventors: Kari Suihkonen, Marja-Liisa Siikonen, Harri Hakala
  • Publication number: 20170004168
    Abstract: The disclosure relates to a method (30) of handling a hash-tree based data signature. The method (30) is performed in a first device (13, 13a) and comprises: receiving (31), from a second device (12, 12a, 12b), a data signature generation request, the request comprising an indication on type of storage of a generated data signature; generating (32), in response to the data signature generation request, the data signature B using a hash-tree based data signing method; and providing (33), to the second device (12, 12a, 12b), a reference C to the generated data signature, wherein the generated data signature is obtainable by means of the reference C. The disclosure also relates to a method in a second device, corresponding devices, computer programs and computer program products.
    Type: Application
    Filed: June 30, 2015
    Publication date: January 5, 2017
    Applicant: Telefonaktiebolaget L M Ericsson (publ)
    Inventors: Harri HAKALA, Mikael JAATINEN, Hannu LEHTINEN, Leena MATTILA
  • Publication number: 20160090269
    Abstract: The invention is aimed to improve control of wear and tear of the elevators in an elevator group comprising a plurality of elevators and at least one group control unit. The actual usage of each elevator is recorded, and the group control unit executes at least one allocation algorithm for selecting which elevator of the elevator group is used to serve a call. The allocation algorithm is configured to compare the actual usage of at least two elevators against respective target usages and to select the elevator having its actual usage most deviating from the target usage to serve an outstanding call. With the invention, the wear and tear of elevators may be balanced, or certain elevators may be set to reach the end of the maintenance period sooner.
    Type: Application
    Filed: December 1, 2015
    Publication date: March 31, 2016
    Applicant: KONE Corporation
    Inventors: Kari SUIHKONEN, Marja-Liisa SIIKONEN, Harri HAKALA
  • Patent number: 8879525
    Abstract: A method and a wireless transmit/receive unit (WTRU) (600), including a universal subscriber identity module USIM (625), for identifying a closed subscriber group (CSG) cell are disclosed. The WTRU (600) receives a broadcast from a cell including a cell identifier (ID). If the cell ID is associated with a CSG cell, the WTRU (600) determines whether the CSG ID is programmed in the USIM (625). The cell broadcast may include a single bit information element (IE) indicating that the cell is a CSG cell. If the cell ID is a CSG ID, the cell ID may further include a plurality of fields which indicate at least one of a country, a region, an operator, and a home evolved Node-B (HeNB) number. The cell broadcast may further include a bit indicating whether the CSG cell is public or private. The cell broadcast may further include a bit indicating that emergency calls are allowed from all users.
    Type: Grant
    Filed: January 13, 2009
    Date of Patent: November 4, 2014
    Assignee: Telefonaktiebolaget L M Ericsson (publ)
    Inventors: Hans Ahlbäck, Harri Hakala
  • Patent number: 8143057
    Abstract: This invention relates to a group of novel chelating agents, novel chelates, biomolecules labeled with said chelates or chelating agents as well as solid supports conjugated with said chelates, chelating agents or labeled biomolecules. Especially the invention relates to novel chelating agents useful in solid phase synthesis of oligonucleotides or oligopeptides and the oligonucleotides and oligopeptides so obtained.
    Type: Grant
    Filed: October 16, 2009
    Date of Patent: March 27, 2012
    Assignee: Wallac Oy
    Inventors: Jari Hovinen, Veli-Matti Mukkala, Harri Hakala, Jari Peuralahti
  • Patent number: 8132652
    Abstract: An elevator system includes at least one shuttle elevator and at least two local elevators, the elevator cars of which are arranged to travel in the same elevator hoistway such that they can serve at least one shared transfer floor of a transfer level. The control system of the elevator system receives destination calls given from a destination call appliance, forms a plurality of route alternatives and allocates a destination call to one or more elevators by selecting the best route alternative. When allocating a destination call, the control system takes into account that the elevator cars of the local elevators that travel in the same elevator hoistway cannot simultaneously be at a shared transfer floor in cases in which the route alternative includes a part-trip with a local elevator and a change of elevator at a shared transfer floor.
    Type: Grant
    Filed: May 6, 2011
    Date of Patent: March 13, 2012
    Assignee: Kone Corporation
    Inventors: Harri Hakala, Marja-Liisa Siikonen, Janne Sorsa, Henri Hakonen
  • Patent number: 8090652
    Abstract: The present invention relates to a system and a method for charging in a communication network and to a communication network charging server. The system comprises a client (1) associated with the network for providing services to subscribers associated with the network. The charging server (2) is adapted to handle subscriber account information, and the said client (1) is adapted to send a first charging request message for a service, to the charging server (2) before the service is provided, using an on-line charging protocol (3). The charging server (2) is also adapted to perform pre-reservation of an amount of resources from the subscriber's account, wherein the amount depends on a requested amount included in the message about the service, and to return an answer message including information indicating whether an amount of resources is pre-reserved from said subscriber account for enabling usage of the service to the client (1) using the on-line charging protocol (3).
    Type: Grant
    Filed: October 8, 2002
    Date of Patent: January 3, 2012
    Assignee: Telefonaktiebolaget L M Ericsson (Publ)
    Inventors: Harri Hakala, Matti Halkosaari, Robert Törnkvist
  • Patent number: 8071626
    Abstract: This invention relates to a group of novel chelating agents, novel chelates, biomolecules labeled with said chelates or chelating agents as well as solid supports conjugated with said chelates, chelating agents or labeled biomolecules. Especially the invention relates to novel chelating agents useful in solid phase synthesis of oligonucleotides or oligopeptides and the oligonucleotides and oligopeptides so obtained.
    Type: Grant
    Filed: December 17, 2007
    Date of Patent: December 6, 2011
    Assignee: Wallac Oy
    Inventors: Jari Hovinen, Veli-Matti Mukkala, Harri Hakala, Jari Peuralahti
  • Publication number: 20110243114
    Abstract: A method and a wireless transmit/receive unit (WTRU) (600), including a universal subscriber identity module for identifying a closed subscriber group (CSG) cell are disclosed. The WTRU (600) receives a broadcast from a cell including a cell identifier (ID). If the cell ID is associated with a CSG cell, the WTRU (600) determines whether the CSG ID is programmed in the USIM (625). The cell broadcast may include a single bit information element (IE) indicating that the cell is a CSG cell. If the cell ID is a CSG ID, the cell ID may further include a plurality of fields which indicate at least one of a country, a region, an operator, and a home evolved Node-B (HeNB) number. The cell broadcast may further include a bit indicating whether the CSG cell is public or private. The cell broadcast may further include a bit indicating that emergency calls are allowed from all users.
    Type: Application
    Filed: January 13, 2009
    Publication date: October 6, 2011
    Inventors: Hans Ahlbäck, Harri Hakala
  • Publication number: 20110209950
    Abstract: The invention relates to elevator systems, in which a number of elevators operate in the same hoistway. The elevator system comprises at least one shuttle elevator and at least two local elevators, the elevator-cars of which are arranged to travel in the same elevator hoistway such that they can serve at least one shared transfer floor of a transfer level. The control system of the elevator system receives destination calls given from a destination call appliance, forms a plurality of route alternatives and allocates a destination call to one or more elevators by selecting the best route alternative. When allocating a destination call, the control system takes into account that the elevator cars of the local elevators that travel in the same elevator hoistway cannot simultaneously be at a shared transfer floor in cases in which the route alternative comprises a part-trip with a local elevator and a change of elevator at a shared transfer floor.
    Type: Application
    Filed: May 6, 2011
    Publication date: September 1, 2011
    Applicant: Kone Corporation
    Inventors: Harri Hakala, Marja-Liisa Siikonen, Janne Sorsa, Henri Hakonen