发明名称 SIMPLE, SECURE LOGIN WITH MULTIPLE AUTHENTICATION PROVIDERS
摘要 A secure distributed single-login authentication system comprises a client and a server. The client collects a user name and password from a user and tests that user name and password at a variety of potential authentication servers to check where the login is valid. It combines the password with a time varying salt and a service specific seed in a message digesting hash and generates a first hash value. The client sends the hash value along with the user name and the time varying salt to a currently selected server. The server extracts the user name and looks up an entry under the user name from the selected server's database. If an entry is found, it retrieves the password and performs the same hash function on the combination of the user name, the service specific seed, and the retrieved password to generate a second hash value. Then, it compares two hash values. If these two values match, the user is authenticated. In this way, the system never sufficiently reveals the password to authentication agents that might abuse the information.
申请公布号 US2007169181(A1) 申请公布日期 2007.07.19
申请号 US20060566648 申请日期 2006.12.04
申请人 ROSKIND JAMES 发明人 ROSKIND JAMES
分类号 H04L9/32;G06F7/04;G06F7/58;G06F15/16;G06F17/30;G06K9/00;G06K19/00;H04L9/00;H04L29/06;H04L29/12 主分类号 H04L9/32
代理机构 代理人
主权项
地址