Electrical computers and digital processing systems: support – Multiple computer communication using cryptography – Particular communication authentication technique
Reexamination Certificate
2007-06-14
2010-12-14
Orgad, Edan (Department: 2439)
Electrical computers and digital processing systems: support
Multiple computer communication using cryptography
Particular communication authentication technique
Reexamination Certificate
active
07853794
ABSTRACT:
A remote user, two-way authentication and password change protocol that also allows parties to optionally establish a session key which can be used to protect subsequent communication. In a preferred embodiment, a challenge token is generated and exchanged which is a onetime value that includes a random value that changes from session to session. The construction and use of the challenge token avoids transmission of the password or even the transmission of a digest of the password itself. Thus the challenge token does not reveal any information about a secret password or a digest of the password.
REFERENCES:
patent: 6718467 (2004-04-01), Trostle
patent: 6792533 (2004-09-01), Jablon
patent: 6826686 (2004-11-01), Peyravian et al.
Peyravian, “Method for Protecting Password Transmission”, published in Computers and Security, vol. 19, No. 5, 2000, pp. 466-469.
“Secure Hash Standard”, NIST FIPS PUB 180-2, Aug. 2002, cover page-pp. 71.
Diffie et al., “New Directions in Cryptography”, IEEE Transactions on Information Theory, vol. IT-22, No. 6, 1976, pp. 644-654.
www.atis.org/tg2k/—message—authentication—code.html, definition of Message Authentication Code (MAC), printed Mar. 20, 2007, 1 page.
www.ibm.com, definition of nonce, printed Mar. 19, 2007, 1 page.
http://searchsecurity.techtarget.com/sDefinition/0,,sid14—gci213673,00.html, definition of 0ne-time pad, printed Mar. 19, 2007, 5 pages.
Jeffries Clark Debs
Peyravian Mohammad
International Business Machines - Corporation
Orgad Edan
Pivnichny John R.
Wang Harris C
Yee & Associates P.C.
LandOfFree
Efficient method for providing secure remote access does not yet have a rating. At this time, there are no reviews or comments for this patent.
If you have personal experience with Efficient method for providing secure remote access, we encourage you to share that experience with our LandOfFree.com community. Your opinion is very important and Efficient method for providing secure remote access will most certainly appreciate the feedback.
Profile ID: LFUS-PAI-O-4228471