发明名称 Secure user and data authentication over a communication network
摘要 The invention relates to a method of performing user and data authentication over a client (22) in communication via a network (14) with a server infrastructure (16). The client (22) has access via a user-controllable card reader (24) to a smart card (26) on which at least one signature key is stored. The method comprises a user authentication step which includes displaying by the card reader (24) an authentication context, controlling the card reader to request the user for signature approval, and, in the case of signature approval, submitting a challenge, if required together with context data, or data derived therefrom to the smart card (26) for signing. The method further comprises a data authentication step which includes displaying by the card reader (24) the data to be authenticated, controlling the card reader (24) to request the user for signature approval, and, in the case of signature approval, submitting the data to be authenticated, or data derived therefrom, to the smart card (26) for signing. <IMAGE>
申请公布号 EP1349031(A1) 申请公布日期 2003.10.01
申请号 EP20020006514 申请日期 2002.03.18
申请人 UBS AG 发明人 HILTGEN, ALAIN P., DR.
分类号 G06F21/34;H04L29/06;(IPC1-7):G06F1/00 主分类号 G06F21/34
代理机构 代理人
主权项
地址