System and method for protecting a password against brute force attacks
    24.
    发明授权
    System and method for protecting a password against brute force attacks 有权
    保护密码免受暴力攻击的系统和方法

    公开(公告)号:US08838975B2

    公开(公告)日:2014-09-16

    申请号:US11555030

    申请日:2006-10-31

    IPC分类号: H04L29/06

    摘要: In a system and method for authenticating a client device by an authentication device, the client device user is assigned a PIN generated by the authentication device. The user provides the PIN and a password to the client device, from which the client device generates a symmetric key and further generates a public/private key pair. The private key is encrypted using the symmetric key and stored in encrypted form only. The public key and a message authentication code generated from the PIN are provided to the authentication device, which stores the public key. Subsequently, when the user seeks to be authenticated, the user enters a password at the client device, which is used to generate a symmetric key to decrypt the encrypted private key. A message to the authentication device is signed using the resultant value. The authentication device uses the public key to verify the signature of the message.

    摘要翻译: 在用于通过认证设备认证客户端设备的系统和方法中,向客户端设备用户分配由认证设备产生的PIN。 用户向客户端设备提供PIN和密码,客户端设备从该设备生成对称密钥并进一步生成公钥/私钥对。 私钥使用对称密钥加密,仅以加密形式存储。 将公钥和从PIN生成的消息认证码提供给存储公钥的认证装置。 随后,当用户寻求认证时,用户在客户端设备处输入密码,用于生成对称密钥来解密加密的私钥。 使用结果值对认证设备的消息进行签名。 认证设备使用公钥验证消息的签名。

    System and method for securing data for redirecting and transporting over a wireless network
    25.
    发明授权
    System and method for securing data for redirecting and transporting over a wireless network 有权
    用于保护无线网络重定向和传输数据的系统和方法

    公开(公告)号:US08761396B2

    公开(公告)日:2014-06-24

    申请号:US13355228

    申请日:2012-01-20

    IPC分类号: H04L29/06

    摘要: A system and method for securing data for redirecting and transporting over a wireless network are generally described herein. In accordance with some embodiments, when it is determined that an electronic message that is protected with a first encryption algorithm is to be transported over a wireless network to a wireless device, the electronic message is converted to a data structure that is recognizable by the wireless device and the data structure is encrypted with a second encryption algorithm using a random session key. The second encryption algorithm has a stronger security than the first encryption algorithm. The random session key is encrypted with a public key and packets that comprise the encrypted data structure and the encrypted random session key are transmitted to the wireless device over the wireless network.

    摘要翻译: 通常在此描述用于保护用于通过无线网络重定向和传送的数据的系统和方法。 根据一些实施例,当确定用第一加密算法保护的电子消息将通过无线网络传送到无线设备时,电子消息被转换成可被无线识别的数据结构 设备,并且使用随机会话密钥使用第二加密算法对数据结构进行加密。 第二种加密算法比第一种加密算法具有更强的安全性。 随机会话密钥用公钥加密,并且包括加密数据结构和加密的随机会话密钥的分组通过无线网络传送到无线设备。