发明名称 Hardware-bonded credential manager method and system
摘要 An internet data exchange authentication method that can provide much of the user authentication assurance and capability of dedicated computer security cryptographic hardware, without requiring that the user actually have such hardware. This method allows users with computerized devices to communicate securely with secure servers by creating customized challenge-response authentication objects (pockets) where both the challenge and the response is based partially on the hardware identity of the user's computerized device, and partially on a secret (such as a random number) known only by the secure server. The secure server receives the device's hardware identity, generates the secret, creates the pocket, encrypts the pocket, and sends the encrypted pocket back to the user's device. The secure server, or a third trusted credential server, then sends the decryption key for the encrypted pocket back to the user using a different,“out of band”communications modality, thus reducing the chances of interception.
申请公布号 US8037295(B2) 申请公布日期 2011.10.11
申请号 US20080103654 申请日期 2008.04.15
申请人 AUTHENEX, INC. 发明人 LIN PAUL
分类号 H04L29/06 主分类号 H04L29/06
代理机构 代理人
主权项
地址