发明名称 Establishing secure mutual trust using an insecure password
摘要 A process for establishing secure mutual trust includes generating a one-time-password. The one-time-password is transferred between the devices in a communication occurring off of the network. Each device generates a set of authenticators by hashing a plurality of sub-strings of the password and the device's authentication certificate with a respective set of nonces. The devices exchange the respective sets of authenticators. Each device then alternates revealing its respective set of nonces and its authentication certificate in a multi-stage process. The devices re-calculate the authenticators based upon the respective set of nonces and authentication certificate revealed by the other device along with the one-time-password sub-strings that it posses. If each device determines that the authenticators re-calculated by the given device matches the authenticators previously received from the other device, secure mutual trust is established.
申请公布号 US2007005955(A1) 申请公布日期 2007.01.04
申请号 US20050170523 申请日期 2005.06.29
申请人 MICROSOFT CORPORATION 发明人 PYLE HARRY S.;LIEBERMAN BRUCE L.;SIMON DANIEL R.;SIMONNET GUILLAUME;DOLLAR WILLIAM
分类号 H04L9/00 主分类号 H04L9/00
代理机构 代理人
主权项
地址