发明名称 Module authentication and binding library extensions
摘要 An apparatus, system, and method to provide an initial and an on-going authentication mechanism with which two executable entities may unilaterally or bilaterally authenticate the identity, origin, and integrity of each other. In one instance, the authentication mechanisms are implemented within a dynamically loaded, modular, cryptographic system. The initial authentication mechanism may include digitally signed challenge and possibly encrypted response constructs that are alternately passed between the authenticating and authenticated executable entities. A chain of certificates signed and verified with the use of asymmetric key pairs may also be part of the initial authentication mechanism. Representative asymmetric key pairs include a run-time key pair, a per-instance key pair, and a certifying authority master key pair. The on-going authentication mechanism may include a nonce variable having a state associated therewith. The state may be both time and incidence varying and may be combined in an obfuscating or encrypted manner into data passed between the executable entities. The initial and ongoing authentication mechanisms may have instances implemented without the use of export-regulated cryptography.
申请公布号 US6615350(B1) 申请公布日期 2003.09.02
申请号 US19990274971 申请日期 1999.03.23
申请人 NOVELL, INC. 发明人 SCHELL ROGER R.;JUENEMAN ROBERT R.;GAYMAN MARK G.
分类号 G06F21/00;H04L29/06;(IPC1-7):G06F12/14;G06F11/28;H02L9/32 主分类号 G06F21/00
代理机构 代理人
主权项
地址
您可能感兴趣的专利