发明名称 Simple, secure login with multiple authentication providers
摘要 A secure distributed single-login authentication system comprises a client and a server. The client collects authentication credentials from a user and tests credentials at a variety of potential authentication servers to check where the login is valid. It combines a password with a time-varying salt and a service-specific seed in a message digesting hash, generating a first hash value. The client sends the hash value with a user name and the time-varying salt to a selected server. The server extracts the user name and looks up the user name in the server's database. If an entry is found, it retrieves the password, performing the same hash function on the combination of user name, service-specific seed, and password to generate a second hash value, comparing the values. If the values match, the user is authenticated. Thus, the system never reveals the password to authentication agents that might abuse the information.
申请公布号 US8196189(B2) 申请公布日期 2012.06.05
申请号 US20100813708 申请日期 2010.06.11
申请人 ROSKIND JAMES;AOL LLC 发明人 ROSKIND JAMES
分类号 H04L29/06;H04L29/12 主分类号 H04L29/06
代理机构 代理人
主权项
地址