发明名称 Session key security protocol
摘要 Exchanging information in a multi-site authentication system. A network server receives, from an authentication server, a request by a client computing device for a service provided by the network server along with an authentication ticket. The authentication ticket includes: a session key encrypted by a public key associated with the network server, message content encrypted by the session key, and a signature for the encrypted session key and the encrypted message content. The signature includes address information of the network server. The network server identifies its own address information in the signature to validate the signature included in the authentication ticket and verifies the authentication ticket content based on the signature included in the authentication ticket. The network server decrypts the encrypted session key via a private key associated with the second network server and decrypts the encrypted message content via the decrypted session key.
申请公布号 US7971240(B2) 申请公布日期 2011.06.28
申请号 US20090426726 申请日期 2009.04.20
申请人 MICROSOFT CORPORATION 发明人 GUO WEI-QUIANG MICHAEL;HOWARD JOHN HAL;CHAN KOK WAI
分类号 G06F21/20;H04L9/32;G06F21/00;H04L9/08;H04L29/06 主分类号 G06F21/20
代理机构 代理人
主权项
地址