- 专利标题: System and method for authentication seed distribution
-
申请号: US09304775申请日: 1999-05-04
-
公开(公告)号: US06985583B1公开(公告)日: 2006-01-10
- 发明人: John G. Brainard , Burton S. Kaliski, Jr. , Magnus Nyström , Ronald L. Rivest
- 申请人: John G. Brainard , Burton S. Kaliski, Jr. , Magnus Nyström , Ronald L. Rivest
- 申请人地址: US MA Bedford
- 专利权人: RSA Security Inc.
- 当前专利权人: RSA Security Inc.
- 当前专利权人地址: US MA Bedford
- 代理机构: Wilmer Cutler Pickering Hale and Dorr LLP
- 主分类号: H04L9/00
- IPC分类号: H04L9/00 ; H04L9/32
摘要:
In one embodiment of a user authentication system and method according to the invention, a device shares a secret, referred to as a master seed, with a server. The device and the server both derive one or more secrets, referred to as verifier seeds, from the master seed, using a key derivation function. The server shares a verifier seed with one or more verifiers. The device, or an entity using the device, can authenticate with one of the verifiers using the appropriate verifier seed. In this way, the device and the verifier can share a secret, the verifier seed for that verifier, without that verifier knowing the master seed, or any other verifier seeds. Thus, the device need only store the one master seed, have access to the information necessary to correctly derive the appropriate seed, and have seed derivation capability. A verifier cannot compromise the master seed, because the verifier does not have access to the master seed.
信息查询