Patents by Inventor Symon Szu-Yuan Chang

Symon Szu-Yuan Chang has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 9223583
    Abstract: The present invention relates to methods and systems for method of implementing proactive token renewal and management in secure conversations. The method includes transmitting an secure conversation token (SCT) bootstrap request, receiving a first SCT in response to the SCT bootstrap request, and determining a round trip time (RTT) of the SCT bootstrap request. The method further includes determining the expiration time of the first SCT, based on the combination of the RTT and the expiration of the first SCT, scheduling an SCT renew request, and initiating the SCT renew request. Further, the method includes receiving a second SCT in response to the SCT renew request, receiving an indication that the first SCT has expired, and in response to the indicating, utilizing the second SCT.
    Type: Grant
    Filed: July 25, 2011
    Date of Patent: December 29, 2015
    Assignee: ORACLE INTERNATIONAL CORPORATION
    Inventors: Symon Szu-yuan Chang, Adam Lee, Thorick Chow, Alan Mullendore
  • Patent number: 8646026
    Abstract: A computer-implemented method to select a web service security policy alternative can comprise selecting a web service security policy alternative at runtime based on previously collected data concerning web service and using the selected web service security policy alternative for a web service message. In addition, a computer-implemented method to prevent intrusion can use a honey policy that can be defined by the administrator in order to attract and closely monitor the hackers.
    Type: Grant
    Filed: May 17, 2007
    Date of Patent: February 4, 2014
    Assignee: Oracle International Corporation
    Inventor: Symon Szu-Yuan Chang
  • Patent number: 8631238
    Abstract: The present invention relates to methods and systems for preventing race conditions in secure token conversations. The method includes generating a message from a client application to a server application, determining that a first secure conversation token (SCT) exists, and using the first SCT to encrypt the message. The method further includes sending the encrypted message to the server, receiving an indication that the first SCT has expired, and initiating an SCT renew request. The method includes storing the first SCT, receiving a second SCT in response to the SCT renew request, and storing the second SCT in addition to the first SCT. The method further includes retrieving an encrypted message, determining that the encrypted message has been encrypted using the first SCT, in response to the determination, using the first SCT to decrypt the message, and generating a response from the server to the client.
    Type: Grant
    Filed: July 25, 2011
    Date of Patent: January 14, 2014
    Assignee: Oracle International Corporation
    Inventors: Symon Szu-yuan Chang, Adam Lee, Thorick Chow, Alan Mullendore
  • Publication number: 20120159140
    Abstract: The present invention relates to methods and systems for method of implementing proactive token renewal and management in secure conversations. The method includes transmitting an secure conversation token (SCT) bootstrap request, receiving a first SCT in response to the SCT bootstrap request, and determining a round trip time (RTT) of the SCT bootstrap request. The method further includes determining the expiration time of the first SCT, based on the combination of the RTT and the expiration of the first SCT, scheduling an SCT renew request, and initiating the SCT renew request. Further, the method includes receiving a second SCT in response to the SCT renew request, receiving an indication that the first SCT has expired, and in response to the indicating, utilizing the second SCT.
    Type: Application
    Filed: July 25, 2011
    Publication date: June 21, 2012
    Applicant: Oracle International Corporation
    Inventors: Symon Szu-yuan Chang, Adam Lee, Thorick Chow, Alan Mullendore
  • Publication number: 20120159162
    Abstract: The present invention relates to methods and systems for preventing race conditions in secure token conversations. The method includes generating a message from a client application to a server application, determining that a first secure conversation token (SCT) exists, and using the first SCT to encrypt the message. The method further includes sending the encrypted message to the server, receiving an indication that the first SCT has expired, and initiating an SCT renew request. The method includes storing the first SCT, receiving a second SCT in response to the SCT renew request, and storing the second SCT in addition to the first SCT. The method further includes retrieving an encrypted message, determining that the encrypted message has been encrypted using the first SCT, in response to the determination, using the first SCT to decrypt the message, and generating a response from the server to the client.
    Type: Application
    Filed: July 25, 2011
    Publication date: June 21, 2012
    Applicant: Oracle International Corporation
    Inventors: Symon Szu-yuan Chang, Adam Lee, Thorick Chow, Alan Mullendore
  • Patent number: 7444522
    Abstract: The present invention relates to computer-based devices and methods negotiate and implement security arrangements between two or more web services. More particularly, it relates to devices and methods that specify input and output interfaces, computation and generation of a security contract consistent with inputs, and implementation of security in accordance with negotiated security arrangements. Particular aspects of the present invention are described in the claims, specification and drawings.
    Type: Grant
    Filed: September 18, 2002
    Date of Patent: October 28, 2008
    Assignee: Open Invention Network, LLC
    Inventors: Symon Szu-Yuan Chang, Joseph S. Sanfilippo, Jayaram Rajan Kasi, Christopher Crall
  • Publication number: 20080256364
    Abstract: The present invention relates to computer-based devices and methods negotiate and implement security arrangements between two or more web services. More particularly, it relates to devices and methods that specify input and output interfaces, computation and generation of a security contract consistent with inputs, and implementation of security in accordance with negotiated security arrangements. Particular aspects of the present invention are described in the claims, specification and drawings.
    Type: Application
    Filed: September 18, 2002
    Publication date: October 16, 2008
    Applicant: Commerce One Operations, Inc.
    Inventors: Symon Szu-Yuan Chang, Joseph S. Sanfilippo, Jayaram Rajan Kasi, Christopher Crall
  • Publication number: 20080244693
    Abstract: A computer-implemented method to select a Web Service policy alternative can use previously collected data concerning Web Service to select a desirable Web Service policy alternative at runtime. The selected Web Service policy alternative can then be applied to a Web Service message such as a SOAP message.
    Type: Application
    Filed: May 17, 2007
    Publication date: October 2, 2008
    Applicant: BEA SYSTEMS, INC.
    Inventor: Symon Szu-Yuan Chang
  • Publication number: 20080244692
    Abstract: A computer-implemented method to select a web service security policy alternative can comprise selecting a web service security policy alternative at runtime based on previously collected data concerning web service and using the selected web service security policy alternative for a web service message. In addition, a computer-implemented method to prevent intrusion can use a honey policy that can be defined by the administrator in order to attract and closely monitor the hackers.
    Type: Application
    Filed: May 17, 2007
    Publication date: October 2, 2008
    Applicant: BEA SYSTEMS, INC.
    Inventor: Symon Szu-Yuan Chang