首页> 外国专利> CRYPTOGRAPHIC BINDING OF AUTHENTICATION SCHEMES

CRYPTOGRAPHIC BINDING OF AUTHENTICATION SCHEMES

机译:认证方案的密码学绑定

摘要

Methods and apparatus cryptographically bind authentication schemes to verify that a secure authentication sequence was executed for access to sensitive applications/resources. Users execute two login sequences with a strong authentication framework. Upon completion of the first, the framework generates an unencrypted token from underlying data, later hashed into an authentication token. With a private key corresponding to the first sequence, the authentication token is encrypted and passed to the second sequence where it is encrypted again with a private key corresponding to the second sequence. Upon access attempts to the sensitive applications/resources, verification of execution of the two login sequences includes recovering the authentication token from its twice encrypted form and comparing it to a comparison token independently generated by the application/resource via the underlying data. An audit log associated with the application/resource stores the data, the recovered authentication token, etc., for purposes of later non-repudiation.
机译:方法和装置以密码方式绑定认证方案,以验证执行了安全的认证序列以访问敏感的应用程序/资源。用户使用强大的身份验证框架执行两个登录序列。在完成第一个操作后,框架会从基础数据生成未加密的令牌,然后将其哈希到身份验证令牌中。利用对应于第一序列的私钥,认证令牌被加密并传递到第二序列,在第二序列中,认证令牌再次被对应于第二序列的私钥加密。在尝试访问敏感的应用程序/资源时,两个登录序列执行的验证包括从其两次加密的形式中恢复身份验证令牌,并将其与由应用程序/资源通过基础数据独立生成的比较令牌进行比较。与应用程序/资源关联的审核日志存储数据,恢复的身份验证令牌等,以用于以后的不可抵赖性。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号