Invention Application
- Patent Title: PROVISION OF SECURE COMMUNIUCATIONS CONNECTION USING THIRD PARTY AUTHENTICATION
- Patent Title (中): 使用第三方认证提供安全公共关系
-
Application No.: PCT/GB2007/002010Application Date: 2007-05-31
-
Publication No.: WO2007141486A1Publication Date: 2007-12-13
- Inventor: HERWONO, Ian , HODGSON, Paul, William
- Applicant: BRITISH TELECOMMUNICATIONS PUBLIC LIMITED COMPANY , HERWONO, Ian , HODGSON, Paul, William
- Applicant Address: 81 Newgate Street London Greater London EC1A 7AJ GB
- Assignee: BRITISH TELECOMMUNICATIONS PUBLIC LIMITED COMPANY,HERWONO, Ian,HODGSON, Paul, William
- Current Assignee: BRITISH TELECOMMUNICATIONS PUBLIC LIMITED COMPANY,HERWONO, Ian,HODGSON, Paul, William
- Current Assignee Address: 81 Newgate Street London Greater London EC1A 7AJ GB
- Agency: NASH, Roger, William
- Priority: EP06252961.5 20060608
- Main IPC: H04L9/08
- IPC: H04L9/08 ; H04L9/32
Abstract:
The present invention relates to communications, and in particular though not exclusively to forming a secure connection between two untrusted devices. The present invention provides a method of securely connecting a first device (A) to a second device (B) using a third party authentication server (AS) coupled to the second device, the first device and the authentication server both having first device shared secret data (SSDa) and the second device and the authentication server both having second device shared secret data (SSDb). The method comprises receiving a request from the first device at the authentication server; the authentication server and the first device both generating a first device key (K_A) using the first device shared secret data in response to a first device random number (RANDa) sent from the authentication server to the first device; the authentication server and the second device both generating a second device key (K_B) using the second device shared secret data in response to a second device random number (RANDb) sent from the authentication server to the second device; and the authentication server securely forwarding to the second device (B) and the first device (A) a common key (K_AB) using the second and first device keys (K_B, K_A).
Information query