发明名称 TRANSPARENT CLIENT AUTHENTICATION
摘要 A system and method for authenticating an application (client) to a server or service. During a registration phase, an application that requests access to a service can receive a service identifier, which it can authenticate. The application can generate and send to the server or service an application-service key that is based upon the authenticated service identifier and a secret application key; a service-application identifier that can be based upon the authenticated service identifier and an application identifier; and a registration nonce, all of which can be stored at the server. During the authentication phase, the client can send to the server the application-service identifier, which the server can use to lookup the stored registration data. The server can send the registration nonce to the client, which can compute a proof of possession of the service-application key and send to the server. The server can compute its own version of this key and compare it to the received key. If they correspond, then the client is authenticated.
申请公布号 US2016191486(A1) 申请公布日期 2016.06.30
申请号 US201514980242 申请日期 2015.12.28
申请人 VERISIGN, INC. 发明人 Hallam-Baker Philip Martin
分类号 H04L29/06 主分类号 H04L29/06
代理机构 代理人
主权项
地址 Reston VA US