发明名称 Authentication system using one-time passwords
摘要 A system for authenticating a user located at a requesting node to a resource such as a host application located at an authenticating node using one-time passwords that change pseudorandomly with each request for authentication. At the requesting node a non-time-dependent value is generated from nonsecret information identifying the user and the host application, using a secret encryption key shared with the authenticating node. The non-time-dependent value is combined with a time-dependent value to generate a composite value that is encrypted to produce an authentication parameter. The authentication parameter is reversibly transformed into an alphanumeric character string that is transmitted as a one-time password to the authenticating node. At the authenticating node the received password is transformed back into the corresponding authentication parameter, which is decrypted to regenerate the composite value. The non-time-dependent value is replicated at the authenticating node using the same nonsecret information and encryption key shared with the requesting node. The locally generated non-time-dependent value is combined with the regenerated composite value to regenerate the time-dependent value. The user is authenticated if the regenerated time-dependent value is within a predetermined range of a time-dependent value that is locally generated at the authenticating node.
申请公布号 US5592553(A) 申请公布日期 1997.01.07
申请号 US19960597376 申请日期 1996.02.08
申请人 INTERNATIONAL BUSINESS MACHINES CORPORATION 发明人 GUSKI, RICHARD H.;LARSON, RAYMOND C.;MATYAS, JR., STEPHEN M.;JOHNSON, DONALD B.;COPPERSMITH, DON
分类号 G09C1/00;G06F1/00;G06F21/00;H04L9/32;H04L12/22;H04L29/06;(IPC1-7):H04L9/32 主分类号 G09C1/00
代理机构 代理人
主权项
地址