发明名称 METHOD AND APPARATUS FOR SECURING A MOBILE APPLICATION
摘要 Methods, apparatus, and systems for personalizing a software token using a dynamic credential (such as a one-time password or electronic signature) generated by a hardware token are disclosed.
申请公布号 US2016191494(A1) 申请公布日期 2016.06.30
申请号 US201514982166 申请日期 2015.12.29
申请人 VASCO DATA SECURITY, INC. 发明人 CLAES MATHIAS;COULIER FRANK
分类号 H04L29/06;H04L9/32 主分类号 H04L29/06
代理机构 代理人
主权项 1. A software token personalization method comprising the steps of: generating, at an authentication server, a first personalization seed; generating, at the authentication server, a first personalization initiating message comprising said first personalization seed; receiving, at a first authentication token associated with a specific user, said first personalization initiating message; retrieving, at the first authentication token, said first personalization seed from the received first personalization initiating message; generating, at the first authentication token, a second personalization seed from said retrieved first personalization seed; generating, at the first authentication token, a second personalization message comprising said generated second personalization seed; receiving, at a second software authentication token that is different from the first authentication token, said second personalization message; retrieving, at the second software authentication token, said second initialization seed from the received second personalization message; deriving, at the second software authentication token, a value for a credential generation key from the retrieved second personalization seed; generating, at the second software authentication token, a confirmation credential using a cryptographic algorithm parameterized with the derived value of the credential generation key; receiving, at the authentication server, the confirmation credential; determining, at the authentication server, a server copy of the credential generation key; and validating at the authentication server the received confirmation credential using the server copy of the credential generation key.
地址 OAKBROOK TERRACE IL US