Invention Application
- Patent Title: REMOTE SECURE AUTHORIZATION
- Patent Title (中): 远程安全授权
-
Application No.: PCT/US2004/040172Application Date: 2004-12-02
-
Publication No.: WO2005057507A2Publication Date: 2005-06-23
- Inventor: FASCENDA, Anthony, C.
- Applicant: KOOLSPAN, INC , FASCENDA, Anthony, C.
- Applicant Address: 11134 Stephalee Lane, North Bethesda, MD 20852 US
- Assignee: KOOLSPAN, INC,FASCENDA, Anthony, C.
- Current Assignee: KOOLSPAN, INC,FASCENDA, Anthony, C.
- Current Assignee Address: 11134 Stephalee Lane, North Bethesda, MD 20852 US
- Agency: CODDINGTON, Trevor, Q.
- Priority: US60/526,095 20031202
- Main IPC: G07F
- IPC: G07F
Abstract:
The present invention discloses a technique provisioning network cryptographic keys to a client when direct physical transfer is not feasible. In an embodiment of the invention, a client token generates a temporary key encrypted with a first secret key known only in a master token database and passes this on to an enterprise network token of a network to which service is requested. The enterprise network token then further encrypts the encrypted temporary key with a second secret key and passes that on to the master token database. Since the second secret key is also known by the master token database, the originally encrypted temporary key can be securely decoded only by a master token coupled to the master token database. The decrypted temporary key can then be re-encrypted with a key known only by the enterprise network token and the master token, and returned to the enterprise network token. This allows the enterprise network token to gain secure access to the temporary key of the client token, thereby allowing the enterprise network token to securely provision the remote client token with the appropriate enterprise Network Keys.
Information query