发明名称 PROACTIVATION METHODS AND APPARATUS FOR PASSWORD-HARDENING SYSTEMS
摘要 A password-hardening system comprises at least first and second servers. The first server is configured to store a plurality of sets of passwords for respective users with each such set comprising at least one valid password for the corresponding user and a plurality of chaff passwords for that user. The second server is configured to store at least a portion of valid password indication information indicating for each of the sets which of the passwords in that set is a valid password. The first and second servers are further configured to proactively update the sets of passwords and the valid password indication information in each of a plurality of epochs. The valid password indication information may comprise, for example, valid password index values for respective ones of the users, with the index values being stored as a shared secret across the first and second servers.
申请公布号 US2015089609(A1) 申请公布日期 2015.03.26
申请号 US201314036225 申请日期 2013.09.25
申请人 EMC Corporation 发明人 Juels Ari
分类号 H04L29/06 主分类号 H04L29/06
代理机构 代理人
主权项 1. A method comprising: storing in a first server a plurality of sets of passwords for respective users with each such set comprising at least one valid password for the corresponding user and a plurality of chaff passwords for that user; storing in a second server at least a portion of valid password indication information indicating for each of the sets which of the passwords in that set is a valid password; and proactively updating the sets of passwords and the valid password indication information in each of a plurality of epochs; wherein the storing in the first server, storing in the second server and the proactively updating are performed by at least one processing device.
地址 Hopkinton MA US