首页> 外国专利> METHOD FOR PROVIDING AN ENHANCED LEVEL OF AUTHENTICATION RELATED TO A SECURE SOFTWARE CLIENT APPLICATION THAT IS PROVIDED, BY AN APPLICATION DISTRIBUTION ENTITY, IN ORDER TO BE TRANSMITTED TO A CLIENT COMPUTING DEVICE; SYSTEM, SOFTWARE CLIENT APPLICATION INSTANCE OR CLIENT COMPUTING DEVICE, THIRD PARTY SERVER ENTITY, AND PROGRAM AND COMPUTER PROGRAM PRODUCT

METHOD FOR PROVIDING AN ENHANCED LEVEL OF AUTHENTICATION RELATED TO A SECURE SOFTWARE CLIENT APPLICATION THAT IS PROVIDED, BY AN APPLICATION DISTRIBUTION ENTITY, IN ORDER TO BE TRANSMITTED TO A CLIENT COMPUTING DEVICE; SYSTEM, SOFTWARE CLIENT APPLICATION INSTANCE OR CLIENT COMPUTING DEVICE, THIRD PARTY SERVER ENTITY, AND PROGRAM AND COMPUTER PROGRAM PRODUCT

机译:提供与应用程序分发实体提供的安全软件客户端应用程序相关的增强级别的方法,以便将要发送到客户端计算设备;系统,软件客户端应用程序实例或客户端计算设备,第三方服务器实体和程序和计算机程序产品

摘要

The invention relates to a method for providing an enhanced level of authentication related to a secure software client application that is provided, by an application distribution entity, in order to be transmitted, using a telecommunications network, to a client computing device in view of software code of the software client application being executed by the client computing device,wherein a first secure communication channel is established - in view of transmitting an instance of the software client application to the client computing device - between the client computing device and the application distribution entity, and wherein a second secure communication channel is established between the application distribution entity and a third party server entity,wherein the method comprises the following steps:-- in a first step, an asymmetric pair of cryptographic keys and/or a security token information is generated as a protected information in view of subsequently allowing for an authenticated transmission of data - provided by the software client application instance upon it being executed by the client computing device - to the third party server entity,wherein the protected information is generated by the third party server entity and/or by a trusted entity, and wherein a first partial information and at least a second partial information is derived from the protected information,-- wherein in a second step, subsequent to the first step, the first partial information and the at least second partial information is transmitted to the client computing device, the first partial information being transmitted - besides the software client application instance - using at least the first secure communication channel, and the at least second partial information being transmitted using a third communication channel, different from the first secure communication channel, wherein at least the first partial information and the second partial information are required to obtain the protected information.
机译:本发明涉及一种用于提供与应用程序分发实体提供的安全软件客户端应用程序相关的增强级别,以便通过应用程序分发实体提供给客户端计算设备的安全软件客户端应用程序相关的方法。客户端计算设备执行的软件客户端应用程序的代码,其中建立第一安全通信信道 - 鉴于将软件客户端应用程序的实例发送到客户端计算设备 - 在客户端计算设备和应用程序分发实体之间,并且其中在应用程序分发之间建立第二安全通信信道实体和第三方服务器实体,其中该方法包括以下步骤: - 在第一步骤中,鉴于随后允许由软件客户端应用程序实例提供的数据提供的数据提供了经过身份验证的数据传输,将生成不对称的密码密钥和/或安全令牌信息。客户端计算设备 - 到第三方服务器实体,其中受保护的信息由第三方服务器实体和/或由可信实体生成,并且其中第一部分信息和至少第二部分信息源自受保护信息, - 其中,在第一步骤之后,在第一步骤之后,第一部分信息和至少第二部分信息被发送到客户端计算设备,除了软件客户端应用程序实例之外发送第一部分信息 - 使用第一安全通信信道和使用与第一安全通信信道不同的第三通信信道发送的第一安全通信信道和至少第二部分信息,其中至少需要第一部分信息和第二部分信息来获得受保护的信息。

著录项

  • 公开/公告号EP3511852B1

    专利类型

  • 公开/公告日2021-04-28

    原文格式PDF

  • 申请/专利权人

    申请/专利号EP20180151455

  • 发明设计人 FRIELINGSDORF MATTHIAS;SCHENK VOLKER;

    申请日2018-01-12

  • 分类号G06F21/42;H04L29/06;

  • 国家 EP

  • 入库时间 2022-08-24 18:24:46

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号