Information security – Access control or authentication – Network
Reexamination Certificate
2007-03-20
2007-03-20
Barron, Gilberto (Department: 2134)
Information security
Access control or authentication
Network
C726S004000, C726S021000
Reexamination Certificate
active
10278362
ABSTRACT:
A challenge-response user-authentication procedure masks an authentication center's expected response (XRES) utilizing a masking function (ƒ) and by transmitting a random challenge and a masked expected response (XRES′) instead of the XRES to an intermediate party where the actual user authentication takes place. The intermediate party sends the random challenge to the user and recieves a user response (RES) from the user. The intermediate party then generates a masked user response (RES′) using the same masking function (ƒ) and verifies that RES′ corresponds to XRES′.
REFERENCES:
patent: 5241599 (1993-08-01), Bellovin et al.
patent: 5491750 (1996-02-01), Bellare et al.
patent: 5513245 (1996-04-01), Mizikovsky et al.
patent: 5537474 (1996-07-01), Brown et al.
patent: 5668876 (1997-09-01), Falk et al.
patent: 5740361 (1998-04-01), Brown
patent: 6058480 (2000-05-01), Brown
patent: 6668166 (2003-12-01), Kanabar
patent: 7113994 (2006-09-01), Swift et al.
patent: WO01 76134 (2001-10-01), None
Schneier, B., “Applied Cryptography”, 1996, John Wiley and Sons, Inc., 2nd Edition, pp. 52-53.
Samarakoon et al., “Novel Authentication and Key Agreement Protocol for Low Processing Power and Systems Resource REquirements in Portable Communications Systems”, 1999, Institution of Electrical Engineers, pp. 9/1-9/5.
Brown, “Techniques for Privacy and Authentication in Personal Communication Systems”, Aug. 1995, IEEE Personal Communications, pp. 6-10.
Haverinen H: “EAP SIM Authentication” Internet Draft, Jul. 1, 2002, http://www1.ietf.org/mail-archive/ietf-announce/Current/msg19300.html The whole document.
Arkko J et al: “EAP AKA Authentication” Internet Draft, Jul. 1, 2002, http://www1.ietf.org/mail-archive/ietf-announce/Current/msg19299.html The whole document.
Barron Gilberto
Powers William S
Telefonaktiebolaget LM Ericsson (publ)
LandOfFree
Challenge-response user authentication does not yet have a rating. At this time, there are no reviews or comments for this patent.
If you have personal experience with Challenge-response user authentication, we encourage you to share that experience with our LandOfFree.com community. Your opinion is very important and Challenge-response user authentication will most certainly appreciate the feedback.
Profile ID: LFUS-PAI-O-3750911