发明名称 A SYSTEM AND METHOD OF DYNAMIC ISSUANCE OF PRIVACY PRESERVING CREDENTIALS
摘要 Method and System for enhanced privacy in privacy-preserving identity solutions. The technology provides for a redirect of a request to generate a proof of an attribute from a service provider to a separator. The separator removes source identification from the attribute-proof request and redirects the attribute-proof request, free of original source identification, to a credential issuer which issues the credential. A security device of the user generates a presentation token from the privacy-preserving credential and presents the presentation token to the service provider as proof of the attribute. Other systems and methods are disclosed.
申请公布号 US2015341340(A1) 申请公布日期 2015.11.26
申请号 US201314654547 申请日期 2013.12.20
申请人 GEMALTO SA 发明人 LU HongQian Karen;CASTILLO Laurent;SMADJA Philippe
分类号 H04L29/06;G06F21/62;H04L9/32;G06F21/34 主分类号 H04L29/06
代理机构 代理人
主权项 1. A method for authenticating a user, operating a web application, for example, a web browser, on a host computer, to a web-based service provider service, comprising: redirecting a request to generate a credential from a service provider to an identity provider via a separator, by: transmitting a first request for a credential to the separator;operating the separator to transmit a second request for the credential to the identity provider without identifying the service provider as originator; operating the identity provider and a security device associated with the user: to engage in a privacy-preserving credential creation exchange in cooperation with the identity provider; operating the security device to generate a presentation token from the privacy-preserving credential; and to present the presentation token to the service provider as proof of the attribute.
地址 Meudon FR