-
公开(公告)号:EP0779003A1
公开(公告)日:1997-06-18
申请号:EP95927903.0
申请日:1995-08-16
发明人: HARDING, Peter, Maxwell , HICKS, Richard, Middleton , KINGAN, Jonathan, James , MEYERSTEIN, Michael, Victor , NOLDE, Keith, Eric , RABSON, John , RANGER, Jonathan, Crispin , ROBERTS, David, Anthony , STIRLAND, Mark, Jonathan , SWALE, Richard, Paul
CPC分类号: H04L63/08 , H04L9/0822 , H04L9/3271 , H04L63/0428 , H04L2209/56 , H04Q3/0029 , H04Q2213/13339 , H04Q2213/13515
摘要: An authentication system of a terminal on a public switched telephone network comprises a security node associated with a local exchange (10) and a network terminal (14). For one-way authentication, the terminal (14) responds to a call initiation by sending a unique authentication code (R) comprising a number (m) and a secret key (Sj) encrypted according to a first algorithm (F), the secret key being specific to the terminal. The security node constructs the expected authentication code (E) from the number (m), using the first algorithm (F) and a second key which is a function of a terminal identification number (TN), and compares the expected code (E) with the received code (R). In two-way authentication, the security node responds to the call initiation by sending a transaction number (n) to the terminal (14) encrypted according to a second algorithm (fj). The terminal (14) generates the authentication code (R) as a function of the first algorithm (F), the secret key (Sj) and the transaction number (n). The authentication code (R) is sent back to the security node. An expected code (E) is compared with the received one (R) in the same way. In both cases, a match between expected and received authentication codes (E and R) constitutes authentication of the terminal (14), allowing the user access to the network.
-
公开(公告)号:EP0779003B1
公开(公告)日:1999-10-06
申请号:EP95927903.5
申请日:1995-08-16
发明人: HARDING, Peter, Maxwell , HICKS, Richard, Middleton , KINGAN, Jonathan, James , MEYERSTEIN, Michael, Victor , NOLDE, Keith, Eric , RABSON, John , RANGER, Jonathan, Crispin , ROBERTS, David, Anthony , STIRLAND, Mark, Jonathan , SWALE, Richard, Paul
CPC分类号: H04L63/08 , H04L9/0822 , H04L9/3271 , H04L63/0428 , H04L2209/56 , H04Q3/0029 , H04Q2213/13339 , H04Q2213/13515
摘要: An authentication system of a terminal on a public switched telephone network comprises a security node associated with a local exchange (10) and a network terminal (14). For one-way authentication, the terminal (14) responds to a call initiation by sending a unique authentication code (R) comprising a number (m) and a secret key (Sj) encrypted according to a first algorithm (F), the secret key being specific to the terminal. The security node constructs the expected authentication code (E) from the number (m), using the first algorithm (F) and a second key which is a function of a terminal identification number (TN), and compares the expected code (E) with the received code (R). In two-way authentication, the security node responds to the call initiation by sending a transaction number (n) to the terminal (14) encrypted according to a second algorithm (fj). The terminal (14) generates the authentication code (R) as a function of the first algorithm (F), the secret key (Sj) and the transaction number (n). The authentication code (R) is sent back to the security node. An expected code (E) is compared with the received one (R) in the same way. In both cases, a match between expected and received authentication codes (E and R) constitutes authentication of the terminal (14), allowing the user access to the network.
-