首页> 外国专利> System and method for providing identity hiding in a shared key authentication protocol

System and method for providing identity hiding in a shared key authentication protocol

机译:用于在共享密钥认证协议中提供身份隐藏的系统和方法

摘要

A system and method is provided for hiding an initiator's identity (ID), e.g. a ClientID, in a shared key authentication protocol, using authentication based on a hint of the ID. The hint is a function of the ID which cannot be readily inverted to produce the initiator's identity, for example, a hash function over the ID, such as a modular N sum hash of the initiator's identity where N corresponds to N hash buckets in a shared key database; a cryptographic hash over the ID and a corresponding shared key; or a function of the ID which cannot be readily inverted to produce the initiator's identity and a pair of MAC values wherein the MAC values are compared to find a shared key. The resulting hash may be reduced to a required number of bits for identification of a hash bucket in the database. The system and method thereby provide a computationally efficient method of protecting, or hiding, a client ID in a client-server system for shared-key authentication, which avoids the requirement of known systems to send the client ID in clear text early in the message exchange, which leaves known shared-key protocols open to passive and active identity disclosure attacks.
机译:提供一种用于隐藏发起者的身份(ID)(例如,身份验证者)的系统和方法。共享密钥身份验证协议中的ClientID,使用基于ID提示的身份验证。提示是ID的函数,该ID不能轻易反转以生成发起者的身份,例如,ID上的哈希函数,例如发起者身份的模块化N和哈希,其中N对应于共享中的N个哈希桶密钥数据库; ID和对应的共享密钥上的加密哈希;或不能轻易反转以产生发起者身份的ID和一对MAC值的函数,其中将MAC值进行比较以找到共享密钥。可以将所得的哈希减少到用于标识数据库中的哈希桶的所需位数。从而,该系统和方法提供了一种计算有效的方法来保护或隐藏客户机/服务器系统中的客户机ID以进行共享密钥验证,从而避免了已知系统在消息的早期以明文形式发送客户机ID的要求。交换,使已知的共享密钥协议容易受到被动和主动身份公开攻击。

著录项

  • 公开/公告号US2007180247A1

    专利类型

  • 公开/公告日2007-08-02

    原文格式PDF

  • 申请/专利权人 MARCUS LEECH;

    申请/专利号US20050314403

  • 发明设计人 MARCUS LEECH;

    申请日2005-12-21

  • 分类号H04L9/00;

  • 国家 US

  • 入库时间 2022-08-21 21:04:08

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号