发明名称 TRANSPARENT CLIENT AUTHENTICATION
摘要 A system and method for authenticating a client application to a service. During registration, an application requesting access to a service receives a service identifier, which can be authenticated. The application can generate and send to the service an application-service key, based upon the authenticated identifier and a secret application key, a service-application identifier based upon the authenticated service identifier and an application identifier, and a registration nonce, all of which can be stored at the server. During authentication, the client sends the application-service identifier to the service, which the server can use to lookup the stored registration data. The server sends the registration nonce to the client, which can compute a proof of possession of the service-application key and send to the server. The server can compute its own version of the key, which is compared with the received key for authentication purposes.
申请公布号 CA2740698(A1) 申请公布日期 2010.04.22
申请号 CA20092740698 申请日期 2009.10.15
申请人 VERISIGN, INC. 发明人 HALLAM-BAKER, PHILLIP MARTIN
分类号 H04M1/66 主分类号 H04M1/66
代理机构 代理人
主权项
地址