首页> 外国专利> ''A METHOD AND AN APPARATUS FOR MUTUALLY AUTHENTICATING DURING SESSION SETUP WITH DISTRIBUTED COMPUTING ENVIRONMENT CREDENTIALS BETWEEN CLIENTS AND SERVERS INTERCONECTED IN A LAN SERVER ENVIRONMENT''

''A METHOD AND AN APPARATUS FOR MUTUALLY AUTHENTICATING DURING SESSION SETUP WITH DISTRIBUTED COMPUTING ENVIRONMENT CREDENTIALS BETWEEN CLIENTS AND SERVERS INTERCONECTED IN A LAN SERVER ENVIRONMENT''

机译:``在会话建立过程中使用局域网服务器环境中相互连接的客户端和服务器之间的分布式计算环境凭据进行相互认证的方法和设备''

摘要

SYSTEM AND METHOD FOR SUPPORTING DISTRIBUTED COMPUTING MECHANISMS IN A LOCAL AREA NETWORK SERVER ENVIRONMENT Abstract LAN server machines are configured to utilize their existing mechanisms to pass generic security subsystem (GSS) distributed computing environment (DCE) credentials The server management block (SMB) protocol is extended to facilitate exchange of such credentials wherein the server utilizes the GSS API interface to obtain and validate such credentials. The GSS interface provides tokens which encapsulate all necessary information to perform mutual authentication between the client and server. A new protocol level is defined with respect to such SMB protocol extensions which includes a new protocol name exchanged in the negotiate protocol (NP) SMB. Pre¬existing LAN servers will turn on a bit in the SMB_Secmode field in the NP response indicating that the server supports exchange of secpkgX SMB. The server will then wait for an SMB speck or SMB sesssetupX response. The former response will permit the user/client and server to exchange GSS tokens utilizing a conventional LAN server mechanism and to thereby and mutually authenticate.
机译:在本地网络服务器环境中支持分布式计算机制的系统和方法摘要LAN服务器计算机配置为利用其现有机制来传递通用安全子系统(GSS)分布式计算环境(DCE)凭证。服务器管理块(SMB)协议是扩展以促进此类凭证的交换,其中服务器利用GSS API接口获取并验证此类凭证。 GSS接口提供了令牌,这些令牌封装了在客户端和服务器之间执行相互身份验证所需的所有必要信息。针对此类SMB协议扩展定义了新的协议级别,其中包括在协商协议(NP)SMB中交换的新协议名称。预先存在的LAN服务器将在NP响应的SMB_Secmode字段中打开一个位,指示该服务器支持secpkgX SMB的交换。然后,服务器将等待SMB斑点或SMB sesssetupX响应。前一个响应将允许用户/客户端和服务器使用常规的LAN服务器机制交换GSS令牌,从而相互认证。

著录项

  • 公开/公告号IN198358B

    专利类型

  • 公开/公告日2009-07-24

    原文格式PDF

  • 申请/专利权人

    申请/专利号IN2050/MAS/1996

  • 发明设计人 TIMOTHY ROGER KELIS;THOMAS FRANK PEEBLES;

    申请日1996-11-18

  • 分类号

  • 国家 IN

  • 入库时间 2022-08-21 19:27:00

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号