发明授权
US07359507B2 Server-assisted regeneration of a strong secret from a weak secret
有权
服务器辅助从弱秘密中恢复强大的秘密
- 专利标题: Server-assisted regeneration of a strong secret from a weak secret
- 专利标题(中): 服务器辅助从弱秘密中恢复强大的秘密
-
申请号: US09804460申请日: 2001-03-12
-
公开(公告)号: US07359507B2公开(公告)日: 2008-04-15
- 发明人: Burton S. Kaliski
- 申请人: Burton S. Kaliski
- 申请人地址: US MA Bedford
- 专利权人: RSA Security Inc.
- 当前专利权人: RSA Security Inc.
- 当前专利权人地址: US MA Bedford
- 代理机构: BainwoodHuang
- 主分类号: H04K1/00
- IPC分类号: H04K1/00 ; H04L9/00
摘要:
Methods for regenerating a strong secret for a user, based on input of a weak secret, such as a password, are assisted by communications exchanges with a set of independent servers. Each server holds a distinct secret value (i.e., server secret data). The strong secret is a function of the user's weak secret and of the server secret data, and a would-be attacker cannot feasibly compute the strong secret without access to both the user's weak secret and the server secret data. Any attacker has only a limited opportunity to guess the weak secret, even if he has access to all messages transmitted in the generation and regeneration processes plus a subset (but not all) of the server secret data.
公开/授权文献
信息查询