会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 1. 发明授权
    • Protocol and method for client-server mutual authentication using event-based OTP
    • 使用基于事件的OTP进行客户机 - 服务器相互验证的协议和方法
    • US09197411B2
    • 2015-11-24
    • US13412275
    • 2012-03-05
    • Salah E. MachaniKonstantin Teslenko
    • Salah E. MachaniKonstantin Teslenko
    • H04L9/32H04L9/08G06Q20/38G06Q20/40H04L29/06
    • H04L9/0863G06Q20/3829G06Q20/401H04L9/3228H04L9/3234H04L9/3242H04L63/0435H04L63/061H04L63/0838H04L2209/56
    • A method of authenticating and encrypting a client-server communication is provided. Two one-time passwords (OTP1 and OTP2) are generated from a cryptographic token. An encryption key (K_ENC) and a MAC key (K_MAC) are generated based on OTP2. The client data are prepared and protected using K_ENC and K_MAC. A request message is sent from the client to the server, and contains the protected client data, a cryptographic token identifier and OTP1. OTP1 is validated at the server, and OTP2 is generated at the server upon successful validation. K_ENC and K_MAC are derived from OTP2 at the server. The request message is processed and result data is generated. The result data is encrypted using K_ENC and a digest is created using K_MAC. The encrypted result data is sent to the client, and is decrypted using K_ENC and the authenticity of the result data is verified using K_MAC.
    • 提供了认证和加密客户端 - 服务器通信的方法。 从加密令牌生成两个一次性密码(OTP1和OTP2)。 基于OTP2生成加密密钥(K_ENC)和MAC密钥(K_MAC)。 使用K_ENC和K_MAC准备和保护客户端数据。 请求消息从客户端发送到服务器,并包含受保护的客户端数据,加密令牌标识符和OTP1。 OTP1在服务器上进行验证,成功验证后会在服务器上生成OTP2。 K_ENC和K_MAC从服务器上的OTP2派生。 处理请求消息并生成结果数据。 使用K_ENC对结果数据进行加密,并使用K_MAC创建摘要。 将加密的结果数据发送到客户端,并使用K_ENC进行解密,并使用K_MAC验证结果数据的真实性。
    • 2. 发明授权
    • Method and system for client-server mutual authentication using event-based OTP
    • 使用基于事件的OTP进行客户端 - 服务器相互验证的方法和系统
    • US08130961B2
    • 2012-03-06
    • US12028232
    • 2008-02-08
    • Salah E. MachaniKonstantin Teslenko
    • Salah E. MachaniKonstantin Teslenko
    • H04L9/00
    • H04L9/0863G06Q20/3829G06Q20/401H04L9/3228H04L9/3234H04L9/3242H04L63/0435H04L63/061H04L63/0838H04L2209/56
    • The invention comprises a method of authenticating and encrypting a client-server communication, comprising the steps of: a) generating a first one-time password (OTP1) and a second one-time password (OTP2) from a cryptographic token; b) generating an encryption key (K_ENC) and a MAC key (K_MAC) based on OTP2; c) preparing and protecting the client data using K_ENC and K_MAC; d) sending a request message from the client to the server, the request message containing the protected client data, a cryptographic token identifier (TID) and OTP1; e) validating OTP1 at the server, and generating OTP2 at the server upon successful validation; f) deriving K_ENC and K_MAC from OTP2 at the server; g) processing the request message and generating result data h) encrypting the result data using K_ENC and creating a digest using K_MAC; i) sending the encrypted result data to the client; and i) decrypting the result data at the client using K_ENC and verifying the authenticity of the result data using K_MAC.
    • 本发明包括一种认证和加密客户端 - 服务器通信的方法,包括以下步骤:a)从加密令牌生成第一个一次性密码(OTP1)和第二个一次性密码(OTP2); b)基于OTP2生成加密密钥(K_ENC)和MAC密钥(K_MAC); c)使用K_ENC和K_MAC准备和保护客户端数据; d)从客户端向服务器发送请求消息,包含受保护客户端数据的请求消息,密码令牌标识符(TID)和OTP1; e)在服务器上验证OTP1,并在成功验证后在服务器上生成OTP2; f)从服务器的OTP2导出K_ENC和K_MAC; g)处理请求消息并生成结果数据h)使用K_ENC加密结果数据并使用K_MAC创建摘要; i)将加密的结果数据发送给客户端; 并且i)使用K_ENC在客户端解密结果数据,并使用K_MAC验证结果数据的真实性。