首页> 外国专利> Revocation of credentials in secret handshake protocols

Revocation of credentials in secret handshake protocols

机译:秘密握手协议中的凭证撤销

摘要

According to a general aspect, a computer-implemented method for a first user to verify an association with a second user through a secret handshake protocol includes maintaining information about a reusable identification handle for the first user, where the information about the reusable identification handle is provided by a trusted third party, maintaining information about a reusable credential for the first user, where the information about the reusable credential is provided by a trusted third party, and maintaining information about a matching reference for verifying an association with another user, where the information about the matching reference is provided by a trusted third party. Information based on the reusable identification handle and based on the reusable credential is transmitted to a potential peer. First information based on a reusable identification handle for the second user is received, and second information based on a reusable credential for the second user is received. A first comparison of a combination of the first information and the second information is performed with the matching reference to determine whether the second user's credentials match the first users matching reference. A second comparison of the first information with information published on a revocation list is performed to determine whether the second user's credentials have been revoked from usage. Based on the first comparison and the second comparison, a determination is made whether or not to verify the association of second user with the first user.
机译:根据一般方面,一种用于第一用户通过秘密握手协议验证与第二用户的关联的计算机实现的方法包括:维护关于针对第一用户的可重用标识句柄的信息,其中,关于可重用标识句柄的信息是由受信任的第三方提供,维护有关第一用户的可重用凭据的信息,其中有关可重用凭据的信息由受信任的第三方提供,并维护有关用于验证与另一个用户的关联的匹配参考的信息,其中有关匹配参考的信息由受信任的第三方提供。基于可重用标识句柄和基于可重用凭证的信息被传输到潜在对等方。接收基于针对第二用户的可重用标识句柄的第一信息,并且接收基于针对第二用户的可重用凭证的第二信息。将第一信息和第二信息的组合与匹配参考进行第一比较,以确定第二用户的证书是否与第一用户匹配参考相匹配。进行第一信息与在撤销列表上发布的信息的第二比较以确定是否已从使用中撤销了第二用户的凭证。基于第一比较和第二比较,确定是否验证第二用户与第一用户的关联。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号