Claims
- 1. A postage metering system comprising:a meter configurable to perform a set of metering operations; and a security module operatively coupled to the meter and configured to execute a set of transactions with the meter, the security module including a processor configurable to execute a security routine upon occurrence of one or more defined events, and a memory configured to store secure postage data, wherein the security routine, when executed, inhibits selected ones of transactions between the meter and security module, and wherein the secure postage data stored within the memory is retained upon execution of the security routine.
- 2. The system of claim 1, wherein the security routine is stored within the security module.
- 3. The system of claim 1, wherein execution of the security routine is initiated upon detection of tampering with the security module.
- 4. The system of claim 1, wherein execution of the security routine is initiated upon receiving a command from the meter.
- 5. The system of claim 1, wherein the secure postage data includes values for ascending and descending registers.
- 6. The system of claim 1, wherein the security module further includesa secure housing that encloses the processor and the memory.
- 7. The system of claim 1, wherein the security module further includesa timer operatively coupled to the processor and configured to maintain a count indicative of a time period since a last reset of the timer.
- 8. The system of claim 1, wherein the security module further includesa battery operatively coupled to the processor and configured to provide power to the processor when no external power is received.
- 9. The system of claim 8, wherein the security module further includesa switch coupled between the battery and the processor.
- 10. The system of claim 1, wherein execution of the security routine is initiated upon a failure to receive an authorization signal within a time-out period.
- 11. The system of claim 10, wherein the time-out period is less than a second.
- 12. The system of claim 11, wherein the time-out period is in the order of milli-seconds (msecs).
- 13. The system of claim 1, wherein the memory is further configured to store security data.
- 14. The system of claim 13, wherein the security data includes a set of encryption keys.
- 15. The system of claim 14, wherein the encryption keys are destroyed upon execution of the security routine.
- 16. A postage metering system comprising:a postage meter including a first processor and configured to perform a set of operations; and a security module coupled to the meter and configured to execute a set of transactions with the meter, the security module including a second processor configurable to execute a security routine upon a failure to receive an authorization signal within a time-out period, the security routine inhibiting selected ones of transactions between the postage meter and the security module, and a memory configured to store secure postage data that is retained upon execution of the security routine.
- 17. The system of claim 16, wherein memory if further configured to store security data that is erased upon execution of the security routine.
- 18. A method for executing a security routine within a postage metering system that includes a security module coupled to a meter, the method comprising:detecting occurrence of one or more defined events within the postage metering system; initiating execution of the security routine upon detection of occurrence of the one or more events; and upon execution of the security routine, inhibiting selected ones of transactions between the meter and the security module, and retaining secure postage data stored within a memory in the security module.
- 19. The method of claim 18, wherein the security routine is stored within the security module.
- 20. The method of claim 18, wherein execution of the security routine is initiated upon detection of tampering of the security module.
- 21. The method of claim 18, further comprising:maintaining a count indicative of a time period since a last receipt of an authorization signal; and initiating execution of the security routine if the authorization signal is not received within a time-out period.
- 22. The method of claim 21, further comprising:receiving the authorization signal; and resetting the count if the authorization signal is received within the time-out period.
- 23. The method of claim 18, wherein the security module includes a secure housing that encloses the memory within the security module, the method further comprising:detecting tampering with the security module; and executing the security routine upon detected tampering with the security module.
- 24. The method of claim 18, further comprising:providing power to the security module to allow execution of the security routine when external power is not received.
- 25. The method of claim 24, further comprising:receiving an alert signal indicative of a detected tampering with the security module; and switching on the battery power in response to the alert signal.
- 26. A computer program product for executing a security routine within a postage metering system including a meter and a security module, the product comprising a computer-readable storage medium on which are stored:code for detecting occurrence of one or more defined events within the postage metering system; code for initiating execution of the security routine upon detection of occurrence of the one or more events; code for inhibiting selected ones of transactions between the meter and the security module upon execution of the security routine; and code for retaining secure postage data stored within a memory in the security module upon execution of the security routine.
- 27. The product of claim 26, wherein the computer-readable storage medium is located in the security module.
- 28. The product of claim 26, further comprising:code for maintaining a count indicative of a time period since a last receipt of an authorization signal; and code for initiating execution of the security routine if the authorization signal is not received within a time-out period.
- 29. The product of claim 26, further comprising:code for detecting tampering with the security module; and code for executing the security routine upon detected tampering with the security module.
- 30. The product of claim 26, further comprising:code for acknowledging receipt of the authorization signal; and code for resetting the count if the authorization signal is received within the time-out period.
CROSS-REFERENCES TO RELATED APPLICATIONS
This application claims priority from the following U.S. provisional and non-provisional applications, the disclosures of which, including software appendices and all attached documents, are incorporated by reference in their entirety for all purposes:
Application Serial No. 60/093,849, entitled “Method and Apparatus for Postage Label Authentication,” filed Jul. 22, 1998, of JP Leon and David A. Coolidge;
Application Serial No. 60/094,065, entitled “Method and Apparatus for Resetting Postage Meter,” filed Jul. 24, 1998, of JP Leon;
Application Serial No. 60/094,073, entitled “Method, Apparatus, and Code for Maintaining Secure Postage Information,” filed Jul. 24, 1998, of JP Leon, Albert L. Pion, and Elizabeth A. Simon;
Application Serial No. 60/094,116, entitled “Method and Apparatus for Dockable Secure Metering Device,” filed Jul. 24, 1998, of JP Leon;
Application Serial No. 60/094,120, entitled “Method and Apparatus for Remotely Printing Postage Indicia,” filed Jul. 24, 1998, of Chandrakant J. Shah, JP Leon, and David A. Coolidge;
Application Serial No. 60/094,122, entitled “Postage Metering System Employing Positional Information,” filed Jul. 24, 1998, of JP Leon;
Application Serial No. 60/094,127, entitled “Method and Apparatus for Operating a Removable Secure Metering Device,” filed Jul. 24, 1998, of JP Leon; and
application Ser. No. 09/250,990, filed Feb. 16, 1999, now U.S. Pat. No. 6,424,954, entitled “Postage Meter System”, of JP Leon.
The following related patent applications filed on the same day herewith are hereby incorporated by reference in their entirety for all purposes:
U.S. patent application Ser. No. 09/359,158, filed Jul. 21, 1999, now U.S. Pat. No. 6,341,274, entitled “Method and Apparatus for Operating a Secure Metering Device,” of JP Leon;
U.S. patent application Ser. No. 09/358,801, filed Jul. 21, 1999, entitled “Method and Apparatus for Postage Label Authentication,” of JP Leon;
U.S. patent application Ser. No. 09/359,163, filed Jul. 21, 1999, entitled “Postage Metering System Employing Positional Information,” of JP Leon;
U.S. patent application Ser. No. 09/359,162, filed Jul. 21, 1999, entitled “Method and Apparatus for Resetting Postage Meter,” of JP Leon; and
U.S. patent application Ser. No. 09/358,511, filed Jul. 21, 1999, entitled “Method and Apparatus for Remotely Printing Postage Indicia,” of Chandrakant J. Shah, JP Leon, and David A. Coolidge.
US Referenced Citations (40)
Foreign Referenced Citations (6)
Number |
Date |
Country |
825 565 |
Feb 1998 |
EP |
845 762 |
Jun 1998 |
EP |
1 536 403 |
Dec 1978 |
GB |
9846790 |
Apr 1998 |
WO |
9820461 |
May 1998 |
WO |
0049580 |
Aug 2000 |
WO |
Non-Patent Literature Citations (8)
Entry |
“Information-Bases Indicia Program (IBIP), Performance Criteria for Information-Based Indicia and Security Architecture for Closed IBI Postage Metering Systems (PCIBI-C)” Jan. 12, 1999 (1999-01-12), United States Postal Sercive, dated Jan. 12, 1999. |
“Information Based Indicia Program (IBIP) Indicium Specification,” United States Postal Service, dated Jun. 13, 1996. |
Information Based Indicia Program Postal Security Device Specification, United States Postal Service, dated Jun. 13, 1996. |
“Information Based Indicia Program Host System Specification [Draft],” United States Postal Service, dated Oct. 9, 1996. |
“Information-Based Indicia Program (IBIP), Performance Criteria for Information-Based Indicia and Security Architecture for IBI Postage Meeting Systems (PCIBISAIBIPMS),” United States Postal Service, dated Aug. 19, 1998. |
United States Postal Service, “Performance Criteria For Information-Based Indicia And Security Architecture For Open IBI Postage Evidencing Systems,” Information Based Indicia Program (IBIP), Jun. 25, 1999 XP-002161216. |
BARKER-BENFIELD, “First Union Offers Online Transactions,”Florida Times-Union, Jan. 28, 1994. |
FIBS PUB 140-1, Federal Information Processing Standards Publication, (Jan. 11, 1994) Security Requirements for Crytographic Modules, U.S. Department of Commerce, Ronald H. Brown, Secretary, National Insitute of Standards and Technology; pp:1-51. |
Provisional Applications (7)
|
Number |
Date |
Country |
|
60/093849 |
Jul 1998 |
US |
|
60/094065 |
Jul 1998 |
US |
|
60/094073 |
Jul 1998 |
US |
|
60/094116 |
Jul 1998 |
US |
|
60/094120 |
Jul 1998 |
US |
|
60/094122 |
Jul 1998 |
US |
|
60/094127 |
Jul 1998 |
US |