首页> 外国专利> Authenticating secure channel establishment messages based on shared-secret

Authenticating secure channel establishment messages based on shared-secret

机译:基于共享秘密对安全通道建立消息进行身份验证

摘要

Systems and processes are described for establishing and using a secure channel. A shared secret may be used for authentication of session initiation messages as well as for generation of a private/public key pair for the session. A number of ways of agreeing on the shared secret are described and include pre-sharing the keys, reliance on a key management system, or via a token mechanism that uses a third entity to manage authentication, for example. In some instances, the third party may also perform endpoint selection by providing a particular endpoint along with the token. The particular cipher suite applied in a particular implementation may be configurable. The process is applicable to either implicit key confirmation (e.g., handshake negotiation) or explicit key confirmation (e.g., full negotiation).
机译:描述了用于建立和使用安全信道的系统和过程。共享秘密可以用于会话发起消息的认证以及用于会话的私有/公共密钥对的生成。描述了在共享秘密上达成一致的多种方式,例如包括预共享密钥,依赖密钥管理系统或通过使用第三实体来管理认证的令牌机制。在某些情况下,第三方还可以通过提供特定端点以及令牌来执行端点选择。在特定实现中应用的特定密码套件可能是可配置的。该过程适用于隐式密钥确认(例如,握手协商)或显式密钥确认(例如,完全协商)。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号