发明申请
- 专利标题: SECURELY ROAMING DIGITAL IDENTITIES
- 专利标题(中): 安全浏览数字识别
-
申请号: US12620444申请日: 2009-11-17
-
公开(公告)号: US20100064361A1公开(公告)日: 2010-03-11
- 发明人: John P. Shewchuk , Arun K. Nanda , Donald F. Box , Douglas A. Walter , Hervey O. Wilson
- 申请人: John P. Shewchuk , Arun K. Nanda , Donald F. Box , Douglas A. Walter , Hervey O. Wilson
- 申请人地址: US WA Redmond
- 专利权人: Microsoft Corporation
- 当前专利权人: Microsoft Corporation
- 当前专利权人地址: US WA Redmond
- 主分类号: H04L29/06
- IPC分类号: H04L29/06 ; H04L9/32
摘要:
A cryptographic session key is utilized to maintain security of a digital identity. The session key is valid only for a limited period of time. Additional security is provided via a bimodal credential allowing different levels of access to the digital identify. An identity token contains pertinent information associated with the digital identity. The identity token is encrypted utilizing public-key cryptography. An identifier utilized to verify the validity of the digital identity is encrypted with the cryptographic session key. The encrypted identity token and the encrypted identifier are provided to a service for example. The service decrypts the encrypted identity token utilizing public key cryptography, and decrypts, with the cryptographic session key obtained from the identity token, the encrypted identifier. If the identifier is determined to be valid, the transaction proceeds normally. If the identifier is determined to be invalid, the transaction is halted.
公开/授权文献
- US08051469B2 Securely roaming digital identities 公开/授权日:2011-11-01
信息查询