发明名称 Multiple factor authentication in an identity certificate service
摘要 Multiple factor authentication in an identity certificate service is disclosed. A certificate including a cryptographically-obscured identifier associated with the end entity is sent from an end entity to a service node. The service node uses both the certificate and the identifier to authenticate the end entity at least in part by comparing the identifier to a reference identifier. A service associated with the service node is accessed based at least in part on the authentication.
申请公布号 US9641344(B1) 申请公布日期 2017.05.02
申请号 US201414493237 申请日期 2014.09.22
申请人 MOBILE IRON, INC. 发明人 Kim Mansu
分类号 H04L29/06;H04L9/32 主分类号 H04L29/06
代理机构 Van Pelt, Yi & James LLP 代理人 Van Pelt, Yi & James LLP
主权项 1. A method, comprising: sending, from an end entity to a service node, a certificate including a cryptographically-obscured identifier associated with the end entity, wherein the certificate is received by the end entity from a device management server that is separate from the end entity and the service node, wherein the service node uses both the certificate and the cryptographically-obscured identifier to authenticate the end entity at least in part by comparing the cryptographically-obscured identifier to a reference identifier and in response to the cryptographically-obscured identifier matching the reference identifier, the service node is configured to validate the certificate at least in part by communicating with a certificate authority, wherein the certificate authority reviews the validity of the certificate itself, wherein the service node is configured to deny the end entity with access to a service associated with the service node in the event the cryptographically-obscured identifier is validated and the certificate is not validated; and accessing, based at least in part on the authentication and the validation, the service associated with the service node.
地址 Mountain View CA US