Patents by Inventor Kok Chan

Kok Chan has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Publication number: 20070245414
    Abstract: Embodiments of proxy authentication and indirect certificate chaining are described herein. In an implementation, authentication for a client occurs via a proxy service. Proxy service communicates between client and server, and caches security tokens on behalf of the client. In an implementation, trustworthiness of certificate presented to a client to establish trust is determined utilizing a signed data package which incorporates a plurality of known certificates. The presented certificate is verified without utilizing root certificates installed on the client device.
    Type: Application
    Filed: April 14, 2006
    Publication date: October 18, 2007
    Applicant: Microsoft Corporation
    Inventors: Kok Chan, Colin Chow, Trevin Chow, Lin Huang, Naresh Jain, Wei Jiang, Yordan Rouskov, Pui-Yin Wong, Ismail Paya, Ryan Hurst
  • Publication number: 20070118875
    Abstract: An integrated authentication service is described which may receive a bundled request from one or more clients. One or more of the described techniques may be utilized to provide, in response to a single bundled request, a token for proof of identity and a certificate for establishing secure communications.
    Type: Application
    Filed: November 18, 2005
    Publication date: May 24, 2007
    Applicant: Microsoft Corporation
    Inventors: Trevin Chow, Winfred Wong, Yordan Rouskov, Kok Chan, Wei Jiang, Colin Chow, Sanjeev Nagvekar, Matt Sullivan, Kalyan Sayyaparaju, Dilip Pai, Avinash Belur
  • Publication number: 20060007274
    Abstract: An embodiment of the invention provides a mechanism for controlling at least one ink transmission module, which controls a supply of ink using received control rotation. The mechanism includes an input, to receive control rotation. The mechanism also includes an output, to selectively transfer the control rotation to the ink transmission module. A control system is also provided to control the selective transfer of the output. The mechanism is moveable into a disengaged configuration by the control system, in which the output does not transfer rotation of the input to the ink transmission module, by a first predetermined sequence of rotations of the input, and into an engaged configuration, in which the output transfers rotation of the input to the ink transmission module, by a second predetermined sequence of rotations of the input.
    Type: Application
    Filed: July 9, 2004
    Publication date: January 12, 2006
    Inventors: Pui Huang, Seng Koh, Kok Chan, Wee Tan
  • Publication number: 20050234931
    Abstract: Method for providing an interface to a function that manages a plurality of entities. Computer-executable instructions receive a request to implement a change in configuration data. The configuration data is stored in a memory area and relates to an operation of one or more entities. In response to the received request, computer-executable instructions identify a plurality of the entities affected by the change and implement the change for the identified plurality of entities in accordance with the function.
    Type: Application
    Filed: April 6, 2004
    Publication date: October 20, 2005
    Inventors: Ying-Kin Yip, Kok Chan, Rui Chen, Rahul Newaskar, Anthony Toivonen
  • Publication number: 20050228998
    Abstract: A system and method for retrieving certificate of trust information for a certificate validation process. Fetching servers periodically retrieve certificate revocation lists (CRLs) from servers maintained by various certificate issuers. The revoked certificate data included in the retrieved CRLs are stored in a central database. An authentication server receives a request from a client for access to a secure service and initiates a validation process. The authentication server retrieves revoked certificate data from the central database and compares the retrieved revoked certificate data to certificate of trust information received from the client along with the request. The authentication server denies access to the secure information if the certificate of trust information matches revoked certificate data from the central database, allows access if the certificate of trust information does not match revoked certificate data from the central database.
    Type: Application
    Filed: April 2, 2004
    Publication date: October 13, 2005
    Inventors: Kok Chan, Wei Jiang, Wei-Quiang Guo
  • Publication number: 20050223216
    Abstract: A system and method for securely roaming private data from a first client computer to a second client computer linked via a communication network. A user of the first client computer executes a home client application and designates private data for roaming. The home client application generates a first key in response to a password, and encrypts the designated private data as a function of the first key. The server receives and stores the encrypted private data. A user of the second computer executes a roaming client application and requests transfer of the encrypted private data from the server. The roaming client application generates the first key in response to the password, and decrypts encrypted private data transferred from the server to obtain the private data. The invention further provides users the ability to retrieve encrypted private from the server even when the user cannot remember the password associated with the first key. Also, the server has no knowledge of the private data nor the keys.
    Type: Application
    Filed: April 2, 2004
    Publication date: October 6, 2005
    Inventors: Kok Chan, Dafina Toncheva, Baskaran Dharmarajan, Rahul Newaskar, Adam Back
  • Publication number: 20050222891
    Abstract: A system and method for expanding recurring calendar events such that the retrieval of recurring calendar appointments is expedited. A recurring appointment is saved as a data structure including a recurrence pattern. When a recurring appointment is saved by a client that has sufficient processing and memory resources to perform the computations necessary to expand recurring appointments (i.e., a thick client), a background thread is notified. The background thread increases its priority to normal when idle processing capacity is available and calls a routine requesting calendar information for a defined time period. The routine causes the expansion of the data structure into the individual instances of the recurring appointment for a defined time period, and the individual instances are saved for later retrieval. A later query from a client without sufficient processing and memory resources to perform the calculations necessary to expand recurring appointments (i.e.
    Type: Application
    Filed: May 24, 2005
    Publication date: October 6, 2005
    Applicant: Microsoft Corporation
    Inventors: Kok Chan, Dennis Kiilerich