发明名称 DETECTING MATCHED CLOUD INFRASTRUCTURE CONNECTIONS FOR SECURE OFF-CHANNEL SECRET GENERATION
摘要 Technology is described for two parties, by leveraging previously established secure connections with third parties, to obtain a shared secret for generating a secure connection with each other in a way that reduces vulnerability to man-in-the-middle attacks. In some examples, the technology can include generating a session identifier; coordinating use of the session identifier by the two parties; finding an available secure communication channel to a third party; transmitting the session identifier to the third party via the available secure communication channel; receiving, via the available secure communication channel, a third party identifier and a session identifier-specific secret; sharing information about the received third party identifier; determining that the received third party identifier matches a third party identifier received by the second party; and using the session identifier-specific secret received with the matching third party identifier to generate a cryptographic key to secure communication between the two parties.
申请公布号 US2014164768(A1) 申请公布日期 2014.06.12
申请号 US201213876766 申请日期 2012.12.12
申请人 Empire Technology Development LLC. 发明人 Kruglick Ezekiel
分类号 H04L29/06 主分类号 H04L29/06
代理机构 代理人
主权项 1. A method for establishing cryptographically secure communication between a first party and a second party, comprising: generating a session identifier; coordinating use of the session identifier by the first party and the second party; finding an available secure communication channel to a third party; transmitting the session identifier to the third party via the available secure communication channel; receiving, via the available secure communication channel, a third party identifier and a session identifier-specific secret; sharing, by the first party, information about the received third party identifier with the second party; determining that the received third party identifier matches a third party identifier received by the second party; and generating a cryptographic key to secure communication between the first party and the second party using the session identifier-specific secret received with the matching third-party identifier.
地址 Wilmington DE US