发明名称 System and method for the management of secure electronic correspondence sessions
摘要 A system and method for the management of secure electronic correspondences. The system includes at least one directory, at least one domicile server, at least one processing operator and at least one certification operator. The correspondence sessions are opened by a strong authentication procedure comprising the routing of a secret code over a channel different from the session channel and an identifier specific to the current session. In addition, in order to allow the delivery of correspondence to be sent, it is necessary for the validity of the trust attributes of the sender, the recipients and those involved in the document processing chain be certified by the certification operator for the level required for delivery. The compliance of the processing operations with the operator's specifications is checked by sending, acknowledging and returning certification tokens specific to each of the processing steps.
申请公布号 US8813208(B2) 申请公布日期 2014.08.19
申请号 US201013499095 申请日期 2010.09.21
申请人 Trustseed S.A.S. 发明人 Blot-Lefevre Eric
分类号 G06F7/04;H04L29/06;G06F15/16;H04L29/08;G06Q20/02;G06Q20/32;H04L9/32;G06Q50/18 主分类号 G06F7/04
代理机构 Baker & Hostetler LLP 代理人 Baker & Hostetler LLP
主权项 1. A system for managing sessions of secure electronic correspondence between at least one sending user and at least one receiving user, the system comprising: at least one directory server; at least one electronic correspondence domiciliation server comprising a private management office for each user, for at least choosing at least one correspondence counterpart, and validating a content of a correspondence to be sent and storing the correspondence once sent; at least one server for processing the correspondence; at least one electronic correspondence certification server; wherein the at least one domiciliation server further comprises: at least one electronic correspondence sessions management module comprising at least one authorization submodule for the opening of a session between a user and his private management office on condition of verifying by request, before said opening, to at least one certification server that the user, the user's counterpart and the electronic correspondence processing servers all have identity attributes stored in a database that match or exceed preset confidence, andwherein the at least one authorization submodule is configured to authorize the opening of the session to execute an authentication function of a user of the system by verifying a matching of a code entered by the user into the domiciliation server with a single secret transmitted in two different forms by the certification server, on one hand to the domiciliation server and on the other hand to the user, this second transmission being over a communication channel which is different from that by which the user connects to the system, the output of the authentication function being a condition of a continuation of the opening of the session.
地址 Gelluis FR