Invention Grant
- Patent Title: Secure remote user authentication leveraging public key cryptography and key splitting
-
Application No.: US15415451Application Date: 2017-01-25
-
Publication No.: US10411907B2Publication Date: 2019-09-10
- Inventor: Prasad Peddada , Taher Elgamal
- Applicant: salesforce.com, inc.
- Applicant Address: US CA San Francisco
- Assignee: SALESFORCE.COM, INC.
- Current Assignee: SALESFORCE.COM, INC.
- Current Assignee Address: US CA San Francisco
- Agency: Schwabe Williamson & Wyatt
- Main IPC: H04L9/32
- IPC: H04L9/32 ; H04W12/06 ; H04L29/06 ; H04L9/08 ; G06F21/31

Abstract:
An ID service on an app server interacts with a corresponding identity app installed on a user device such as a smart phone. At setup, the ID service receives the user's public key and only a segment of the corresponding private key. A special challenge message is created and partially decrypted using the private key segment on the server side, and then decryption is completed on the client app using the remaining segment(s) of the private key to recover the challenge. A token authenticator based on the result of the decryption is sent back to the identity service, for it to verify validity of the result and, if it is valid, enable secure login without requiring a password.
Public/Granted literature
- US20180212785A1 SECURE REMOTE USER AUTHENTICATION LEVERAGING PUBLIC KEY CRYPTOGRAPHY AND KEY SPLITTING Public/Granted day:2018-07-26
Information query