发明名称 AUTHENTICATION PROTOCOL
摘要 The invention relates to an authentication protocol for increasing safety against a man-in-the-middle (MITM) access attack for point-to-point communication (10), between client computer (12) and server (14), to services. The server (14) responds with an N byte nonce value and the client computer (12) utilizes a hash algorithm to compute a hash value of the parameters clients' password, client computer unique IP address, server IP address, and the nonce value. The hash value is transmitted through the client computer (12) as an authenticator for accessing the services, whereby the server (14) reproduces the authenticator by utilizing the same hash algorithm and parameters. A compare between the reproduction and the transmitted authenticator is accomplished. If they match, the grant of an access to the server (14) and services is authorized. By utilizing the client computer (12) unique IP address in the authenticator it prevents a MITM computer (16), having a different IP address, from addressing the server with a matching authenticator. The present invention also comprises an authenticator signal and a medium for carrying the signal.
申请公布号 US2009144547(A1) 申请公布日期 2009.06.04
申请号 US20090367149 申请日期 2009.02.06
申请人 CINNOBAR FINANCIAL TECHNOLOGY AB 发明人 ROIG DANIEL
分类号 H04L9/00;H04L29/06 主分类号 H04L9/00
代理机构 代理人
主权项
地址