发明名称 SYSTEM AND METHOD FOR KEY RECOVERY
摘要 A secure mechanism for transparent key recovery for a user who has changed authentication information is disclosed. A password manager agent intercepts requests by a user to access secure resources that require user credentials. Upon detecting changed authentication information for the user, the password manager agent automatically regenerates the components of a cryptographic key associated with the user that was previously used to encrypt user credentials for the user and then destroyed. After regeneration of the original cryptographic key, the password manager agent uses the key to decrypt the user credentials necessary for the requested application. The regenerated key is then destroyed and the user credentials are re-encrypted by the password manager agent using a new cryptographic key associated with the user made up of multiple components. Following the re-encryption of the user credentials, the components used to assemble the new key are securely stored in multiple locations and the new key is destroyed.
申请公布号 US2006242415(A1) 申请公布日期 2006.10.26
申请号 US20050908318 申请日期 2005.05.06
申请人 CITRIX SYSTEMS, INC. 发明人 GAYLOR TIMOTHY R.
分类号 H04L9/00 主分类号 H04L9/00
代理机构 代理人
主权项
地址