发明名称 Integrity protected smart card transaction
摘要 Systems, methods, and technologies for configuring a conventional smart card and a client machine, and for performing a smart card authorization using the configured smart card and client. Further, the combination of methods provides for mutual authentication-authentication of the client to the user, and authentication of the user to the client. The authentication methods include presenting a specified token to the user sufficient to authenticate the client to the user and thus protect the user-provided PIN. Security is strengthened by using an integrity key based on approved client system configurations. Security is further strengthened by calculating a PIN' value based on a user-specified PIN and a modifier and using the PIN' value for unlocking the smart card.
申请公布号 US8504838(B2) 申请公布日期 2013.08.06
申请号 US201113072677 申请日期 2011.03.26
申请人 THOM STEFAN;HOLT ERIK LEE;MYSORE SHIVARAM H.;BAYS VALERIE KATHLEEN;ELLISON CARL M.;MICROSOFT CORPORATION 发明人 THOM STEFAN;HOLT ERIK LEE;MYSORE SHIVARAM H.;BAYS VALERIE KATHLEEN;ELLISON CARL M.
分类号 H04L29/06 主分类号 H04L29/06
代理机构 代理人
主权项
地址