Patents by Inventor James O. Nickel

James O. Nickel has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Publication number: 20150143121
    Abstract: A portable computing device configured to provide secure data communications with a network via a network communications interface. In one embodiment, the portable computing device includes a network security apparatus configured to communicate data with other network security apparatus over the network via the establishment of an association, the establishment of the association between the network security apparatus and the other network security apparatus resultant in the execution of a key generation algorithm configured to cause the network security apparatus and the other network security apparatus to exchange information utilized in the generation of cryptogaphic keys.
    Type: Application
    Filed: October 24, 2014
    Publication date: May 21, 2015
    Inventors: James M. Holden, Stephen E. Levin, James O. Nickel, Edwin H. Wrench
  • Patent number: 8874768
    Abstract: Methods for providing for secure communications across data networks, including untrusted networks. In one embodiment, the method comprises establishing security associations between devices on the network using a digital certificate and key exchange protocol. In one variant, the digital certificate comprises a public encryption key; the recipient of the certificate authenticates the sender using at least the signature, and then generates a cryptographic element (e.g., key), and initialization vector. The key is encrypted and sent back to the originator, where it is decrypted and used to encrypt datagrams sent between the devices. The initialization vector may be used to initialize the encryption algorithm on the receiving device.
    Type: Grant
    Filed: December 10, 2010
    Date of Patent: October 28, 2014
    Assignee: Round Rocks Research, LLC
    Inventors: James M Holden, Stephen E Levin, James O Nickel, Edwin H Wrench
  • Patent number: 8346925
    Abstract: A network security apparatus adapted to provide for secure communications across data networks, including untrusted networks. In one embodiment, the security apparatus comprises one or more components disposed within the software stack of a computerized device, the components including an association process adapted to establish security associations between devices on the network, and an encryption key generation process adapted to generate one or more encryption keys. In one variant, the keys are specifically for use with temporary or ad hoc security associations. The one or more keys are exchanged according to a key exchange protocol after the device is authenticated or authenticates another device. In one implementation, the device comprises a portable device such as a laptop computer.
    Type: Grant
    Filed: December 10, 2010
    Date of Patent: January 1, 2013
    Assignee: Round Rock Research, LLC
    Inventors: James M Holden, Stephen E Levin, James O Nickel, Edwin H Wrench
  • Patent number: 8028067
    Abstract: Methods of operating a portable communications device so as to provide communications security and user identification and authentication. In one embodiment, the method comprises placing the device in communication with an untrusted network, and using its security apparatus for creating associations with one or more security devices on the network. Traffic between the associated devices may be encrypted and protected for e.g., data confidentiality and integrity protection. In one variant, the security apparatus comprises a software entity disposed at least partly within the software stack of a host, and a removable security card. The portable device may be untrusted (e.g., have an untrusted operating system) and also be physically unsecure.
    Type: Grant
    Filed: July 11, 2007
    Date of Patent: September 27, 2011
    Assignee: Round Rock Research, LLP
    Inventors: James M Holden, Stephen E Levin, James O Nickel, Edwin H Wrench
  • Publication number: 20110202758
    Abstract: A network security apparatus adapted to provide for secure communications across data networks, including untrusted networks. In one embodiment, the security apparatus comprises one or more components disposed within the software stack of a computerized device, the components including an association process adapted to establish security associations between devices on the network, and an encryption key generation process adapted to generate one or more encryption keys. In one variant, the keys are specifically for use with temporary or ad hoc security associations. The one or more keys are exchanged according to a key exchange protocol after the device is authenticated or authenticates another device. In one implementation, the device comprises a portable device such as a laptop computer.
    Type: Application
    Filed: December 10, 2010
    Publication date: August 18, 2011
    Inventors: James M Holden, Stephen E. Levin, James O. Nickel, Edwin H. Wrench
  • Publication number: 20110197068
    Abstract: Methods for providing for secure communications across data networks, including untrusted networks. In one embodiment, the method comprises establishing security associations between devices on the network using a digital certificate and key exchange protocol. In one variant, the digital certificate comprises a public encryption key; the recipient of the certificate authenticates the sender using at least the signature, and then generates a cryptographic element (e.g., key), and initialization vector. The key is encrypted and sent back to the originator, where it is decrypted and used to encrypt datagrams sent between the devices. The initialization vector may be used to initialize the encryption algorithm on the receiving device.
    Type: Application
    Filed: December 10, 2010
    Publication date: August 11, 2011
    Inventors: James M. Holden, Stephen E. Levin, James O. Nickel, Edwin H. Wrench
  • Patent number: 7979556
    Abstract: Methods for providing communication security between computerized devices in, for example, an ad hoc or temporary networked environment. In one embodiment, the network comprises an untrusted network, and the method includes providing network security apparatus adapted to create security associations between devices on the network, including mutual authentication. The method further may comprise encrypting traffic between the associated devices for e.g., data confidentiality and integrity protection by running one or more computer programs on the respective devices. In one variant, the network security apparatus comprises a software entity disposed at least partly within the software stack of the devices. The associated devices may be for example fixed or portable, and may be untrusted (e.g., have an untrusted operating systems).
    Type: Grant
    Filed: July 11, 2007
    Date of Patent: July 12, 2011
    Assignee: Round Rock Research, LLC
    Inventors: James M Holden, Stephen E Levin, James O Nickel, Edwin H Wrench
  • Patent number: 7970900
    Abstract: A multi-level network security system is disclosed for a computer host device coupled to at least one computer network. The system including a secure network interface Unit (SNIU) contained within a communications stack of the computer device that operates at a user layer communications protocol. The SNIU communicates with other like SNIU devices on the network by establishing an association, thereby creating a global security perimeter for end-to-end communications and wherein the network may be individually secure or non-secure without compromising security of communications within the global security perimeter. The SNIU includes a host/network interface for receiving messages sent between the computer device and network. The interface operative to convert the received messages to and from a format utilized by the network. A message parser for determining whether the association already exists with another SNIU device.
    Type: Grant
    Filed: July 11, 2007
    Date of Patent: June 28, 2011
    Assignee: Round Rock Research, LLC
    Inventors: James M Holden, Stephen E Levin, James O Nickel, Edwin H Wrench
  • Patent number: 7917630
    Abstract: A portable communications device adapted to provide communication security in, for example, an ad hoc or temporary networked environment. In one embodiment, the network comprises an untrusted medium, and the device includes network security apparatus adapted to create security associations between devices on the network, including mutual authentication. Traffic between the associated devices may be encrypted for e.g., data confidentiality and integrity protection. In one variant, the network security apparatus comprises a software entity disposed at least partly within the software stack of the device. The device may be untrusted (e.g., have an untrusted operating system). User identification or validation may also be provided, for example via inputs received via a user interface.
    Type: Grant
    Filed: July 11, 2007
    Date of Patent: March 29, 2011
    Assignee: Round Rock Research, LLC
    Inventors: James M Holden, Stephen E Levin, James O Nickel, Edwin H Wrench
  • Patent number: 7917631
    Abstract: A system useful within a network and adapted to provide communication security. In one embodiment, the network comprises an untrusted network, and the system includes network security apparatus adapted to create security associations between devices on the network, including mutual authentication. Traffic between the associated devices may be encrypted for e.g., data confidentiality and integrity protection. In one variant, the network security apparatus comprises a software entity disposed at least partly within the software stack of the devices. The associated devices may be for example fixed or portable, and may also act as a gateway to other networks (including the Internet). The portable devices may be untrusted (e.g., have an untrusted operating system).
    Type: Grant
    Filed: July 11, 2007
    Date of Patent: March 29, 2011
    Assignee: Round Rock Research, LLC
    Inventors: James M Holden, Stephen E Levin, James O Nickel, Edwin H Wrench
  • Patent number: 7904565
    Abstract: A system for providing communications security and authentication to a plurality of computerized devices is disclosed. In one embodiment, the system is useful with an untrusted network, and comprises security apparatus adapted to create associations with a plurality of security devices on the network. Traffic between the associated devices may be encrypted and residue-protected for e.g., data confidentiality and integrity protection. In one variant, the security apparatus of the system comprises a software entity disposed at least partly within the software stack of a host. A security card may also be used as part of the security apparatus system. The computerized devices of the system may be untrusted (e.g., have an untrusted operating system) and also be physically unsecure.
    Type: Grant
    Filed: July 11, 2007
    Date of Patent: March 8, 2011
    Assignee: Round Rock Research, LLC
    Inventors: James M Holden, Stephen E Levin, James O Nickel, Edwin H Wrench
  • Patent number: 7844706
    Abstract: A portable computerized device useful within a network and adapted to provide communication security. In one embodiment, the network comprises an untrusted network, and the portable device comprises network security apparatus adapted to create associations with other network security devices on the network. Traffic between the associated devices may be encrypted for e.g., data confidentiality and integrity protection. In one variant, the network security apparatus comprises a software entity disposed at least partly within the software stack of a host computer. A card-like hardware structure may also be used as part of the security apparatus. The host computer may be untrusted (e.g., have an untrusted operating system).
    Type: Grant
    Filed: July 11, 2007
    Date of Patent: November 30, 2010
    Assignee: Round Rock Research, LLC
    Inventors: James M Holden, Stephen E Levin, James O Nickel, Edwin H Wrench
  • Patent number: 7831722
    Abstract: A portable communications device adapted to provide communications security and user identification, and authentication. In one embodiment, the device is useful with an untrusted network, and comprises security apparatus adapted to create associations with one or more security devices on the network. Traffic between the associated devices may be encrypted and residue-protected for e.g., data confidentiality and integrity protection. In one variant, the security apparatus comprises a software entity disposed at least partly within the software stack of a host. A security card may also be used as part of the security apparatus. The portable device may be untrusted (e.g., have an untrusted operating system) and also be physically unsecure. In one variant, the security apparatus is also agnostic to the portable device with which it is used.
    Type: Grant
    Filed: July 11, 2007
    Date of Patent: November 9, 2010
    Assignee: Round Rock Research, LLC
    Inventors: James M Holden, Stephen E Levin, James O Nickel, Edwin H Wrench
  • Patent number: 7827291
    Abstract: A system adapted to provide communication security between computerized devices in, for example, an ad hoc or temporary networked environment. In one embodiment, the network comprises an untrusted network, and the system includes network security apparatus adapted to create security associations between devices on the network, including mutual authentication. Traffic between the associated devices may be encrypted for e.g., data confidentiality and integrity protection. In one variant, the network security apparatus comprises a software entity disposed at least partly within the software stack of the devices. The associated devices may be for example fixed or portable, and may be untrusted (e.g., have an untrusted operating system).
    Type: Grant
    Filed: July 11, 2007
    Date of Patent: November 2, 2010
    Assignee: Round Rock Research, LLC
    Inventors: James M Holden, Stephen E Levin, James O Nickel, Edwin H Wrench
  • Patent number: 7797423
    Abstract: A computerized access device useful within a network and adapted to provide communication security. In one embodiment, the network comprises an untrusted network, and the access device comprises stand-alone network security apparatus adapted to create associations with other network security devices on the network. Traffic between the associated devices may be encrypted for e.g., data confidentiality and integrity protection. In one variant, the network security apparatus comprises a software entity disposed at least partly within the software stack of a stand-alone hardware device. In another variant, the device functions as a gateway or portal to another network (e.g., the Internet or another untrusted network), or to another device within the same network.
    Type: Grant
    Filed: July 11, 2007
    Date of Patent: September 14, 2010
    Assignee: Round Rock Research, LLC
    Inventors: James M Holden, Stephen E Levin, James O Nickel, Edwin H Wrench
  • Patent number: 7475137
    Abstract: A multi-level network security system is disclosed for a computer host device coupled to at least one computer network. The system including a secure network interface Unit (SNIU) contained within a communications stack of the computer device that operates at a user layer communications protocol. The SNIU communicates with other like SNIU devices on the network by establishing an association, thereby creating a global security perimeter for end-to-end communications and wherein the network may be individually secure or non-secure without compromising security of communications within the global security perimeter. The SNIU includes a host/network interface for receiving messages sent between the computer device and network. The interface operative to convert the received messages to and from a format utilized by the network. A message parser for determining whether the association already exists with another SNIU device.
    Type: Grant
    Filed: June 25, 2004
    Date of Patent: January 6, 2009
    Assignee: Micron Technology, Inc.
    Inventors: James M. Holden, Stephen E. Levin, James O. Nickel, Edwin H. Wrench
  • Patent number: 6760768
    Abstract: A multi-level network security system is disclosed for a computer host device coupled to at least one computer network. The system including a secure network interface Unit (SNIU) contained within a communications stack of the computer device that operates at a user layer communications protocol. The SNIU communicates with other like SNIU devices on the network by establishing an association, thereby creating a global security perimeter for end-to-end communications and wherein the network may be individually secure or non-secure without compromising security of communications within the global security perimeter. The SNIU includes a host/network interface for receiving messages sent between the computer device and network. The interface operative to convert the received messages to and from a format utilized by the network. A message parser for determining whether the association already exists with another SNIU device.
    Type: Grant
    Filed: August 7, 2001
    Date of Patent: July 6, 2004
    Assignee: Micron Technology, Inc.
    Inventors: James M. Holden, Stephen E. Levin, James O. Nickel, Edwin H. Wrench
  • Publication number: 20020035635
    Abstract: A multi-level network security system is disclosed for a computer host device coupled to at least one computer network. The system including a secure network interface Unit (SNIU) contained within a communications stack of the computer device that operates at a user layer communications protocol. The SNIU communicates with other like SNIU devices on the network by establishing an association, thereby creating a global security perimeter for end-to-end communications and wherein the network may be individually secure or non-secure without compromising security of communications within the global security perimeter. The SNIU includes a host/network interface for receiving messages sent between the computer device and network. The interface operative to convert the received messages to and from a format utilized by the network. A message parser for determining whether the association already exists with another SNIU device.
    Type: Application
    Filed: August 7, 2001
    Publication date: March 21, 2002
    Inventors: James M. Holden, Stephen E. Levin, James O. Nickel, Edwin H. Wrench
  • Patent number: 6272538
    Abstract: A multi-level network security system is disclosed for a computer host device coupled to at least one computer network. The system including a secure network interface Unit (SNIU) contained within a communications stack of the computer device that operates at a user layer communications protocol. The SNIU communicates with other like SNIU devices on the network by establishing an association, thereby creating a global security perimeter for end-to-end communications and wherein the network may be individually secure or non-secure without compromising security of communications within the global security perimeter. The SNIU includes a host/network interface for receiving messages sent between the computer device and network. The interface operative to convert the received messages to and from a format utilized by the network. A message parser for determining whether the association already exists with another SNIU device.
    Type: Grant
    Filed: July 31, 1998
    Date of Patent: August 7, 2001
    Assignee: Micron Technology, Inc.
    Inventors: James M. Holden, Stephen E. Levin, James O. Nickel, Edwin H. Wrench
  • Patent number: 6212636
    Abstract: A method is disclosed for establishing trusted communications with associations for communications between users on an Internet Protocol based computer network. The method entails the first user's SNIU determining the Internet Protocol (IP) address of a second user's SNIU on the computer network through the use of custom and ICMP Echo Request and Reply messages. The user's SNIUs exchange security related information needed to complete the establishment of a trusted association. The trusted association is maintained during all communications between the first user and the second user.
    Type: Grant
    Filed: May 1, 1997
    Date of Patent: April 3, 2001
    Assignee: ITT Manufacturing Enterprises
    Inventors: John Boyle, James M. Holden, Stephen E. Levin, Eric S. Maiwald, James O. Nickel, David Wayne Snow, Edwin H. Wrench, Jr.