发明名称 Apparatus and method for managing passwords
摘要 A method for managing passwords for a user. A processor of an apparatus storing at least one received, incorrect password proposal receives via a user interface a further password proposal from a user; generates a hash value for the further password proposal; sends the hash value to the authentication server; receives from the authentication server a message indicative of whether the hash value corresponds to a correct password or to an incorrect password. In case the message indicates that the hash value corresponds to a correct password, the processor uses a distance function on each incorrect password proposal to obtain a distance value representative of a distance between the incorrect password proposal and the correct password; and sending to the authentication server hash values for password proposals for which the distance value is lower than or equal to a threshold value. Also provided are the apparatus and a computer program support. The disclosure can provide resistance to typing errors in the password proposals.
申请公布号 US9280657(B2) 申请公布日期 2016.03.08
申请号 US201414248435 申请日期 2014.04.09
申请人 THOMSON LICENSING 发明人 Eluard Marc;Maetz Yves
分类号 G06F15/16;H04L29/06;G06F21/46;G06F21/31;H04L9/32;H04N7/167 主分类号 G06F15/16
代理机构 Tutunjian & Bitetto, P.C. 代理人 Tutunjian & Bitetto, P.C.
主权项 1. An apparatus for managing passwords comprising: a user interface configured to receive a password proposal from a user; and a processor configured to: generate a hash value for the password proposal;send the hash value to an authentication server;receive from the authentication server a message indicative of whether the hash value corresponds to a correct password or to an incorrect password; store password proposals corresponding to incorrect passwords; and in case the message indicates that the hash value corresponds to a correct password: use a distance function on each password proposal corresponding to incorrect passwords to obtain a distance value representative of a distance between the password proposal and the correct password; and send to the authentication server hash values only for password proposals for which the distance value satisfies a distance criterion; wherein the user has a group of at least one password that is accepted as correct passwords by the authentication server, the group comprising one primary password and zero or more secondary passwords; and wherein the message is further indicative of whether the hash value corresponds to the primary password or one of the secondary passwords and wherein the processor is further configured to use the distance function and send hash values for password proposals for which the distance value is lower than or equal to a threshold value only in case the message indicates that the hash value corresponds to the primary password.
地址 Issy les Moulineaux FR