发明授权
US07464265B2 Methods for iteratively deriving security keys for communications sessions
有权
用于迭代地导出通信会话的安全密钥的方法
- 专利标题: Methods for iteratively deriving security keys for communications sessions
- 专利标题(中): 用于迭代地导出通信会话的安全密钥的方法
-
申请号: US10138868申请日: 2002-05-03
-
公开(公告)号: US07464265B2公开(公告)日: 2008-12-09
- 发明人: Arun Ayyagari , Daniel R. Simon , Bernard D. Aboba , Krishna Ganugapati , Timothy M. Moore , Pradeep Bahl
- 申请人: Arun Ayyagari , Daniel R. Simon , Bernard D. Aboba , Krishna Ganugapati , Timothy M. Moore , Pradeep Bahl
- 申请人地址: US WA Redmond
- 专利权人: Microsoft Corporation
- 当前专利权人: Microsoft Corporation
- 当前专利权人地址: US WA Redmond
- 代理机构: Wolf, Greenfield & Sacks, P.C.
- 主分类号: H04L9/00
- IPC分类号: H04L9/00
摘要:
Disclosed are methods for a client, having established one set of security keys, to establish a new set without having to communicate with an authentication server. When the client joins a group, master session security keys are derived and made known to the client and to the group's access server. From the master session security keys, the access server and client each derive transient session security keys, used for authentication and encryption. To change the transient session security keys, the access server creates “liveness” information and sends it to the client. New master session security keys are derived from the liveness information and the current set of transient session security keys. From these new master session security keys are derived new transient session security keys. This process limits the amount of data sent using one set of transient session security keys and thus limits the effectiveness of any statistical attacker.
公开/授权文献
信息查询