首页> 外国专利> SYNCHRONIZATION OF MANDATE HASHES BETWEEN CATALOG SERVICES

SYNCHRONIZATION OF MANDATE HASHES BETWEEN CATALOG SERVICES

机译:目录服务之间的授权哈希的同步

摘要

The subject disclosure is directed towards securely synchronizing passwords that are changed at a source location (e.g., an on-premises directory service) to a target location (e.g., a cloud directory service), so that the same credentials may be used to log into the source or target location, yet without necessarily having each domain controller handle the synchronization. The plaintext password is not revealed, instead using hash values computed therefrom to represent the password-related data. The target may receive a secondary hash of a primary hash, and thereby only receive and store a password blob. Authentication is accomplished by using the same hashing algorithms at the target service to compute a blob and compare against the synchronized blob. Also described are crypto agility and/or changing hashing algorithms without requiring a user password change.
机译:本公开内容针对安全地将在源位置(例如,本地目录服务)处更改的密码同步到目标位置(例如,云目录服务),以便可以使用相同的凭证登录源或目标位置,但不必让每个域控制器都处理同步。不显示明文密码,而是使用从中计算出的哈希值表示与密码相关的数据。目标可以接收主哈希的辅助哈希,从而仅接收和存储密码Blob。通过在目标服务上使用相同的哈希算法来计算Blob并与同步Blob进行比较,即可完成身份验证。还描述了无需用户密码更改的加密敏捷性和/或更改的哈希算法。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号