Service channel authentication token

    公开(公告)号:US10430578B2

    公开(公告)日:2019-10-01

    申请号:US15801514

    申请日:2017-11-02

    摘要: A computer system receives an authentication request from a user device and determines a determined device identification from a set of received device attributes. When the device is properly authenticated, the computer system generates an authentication token that is signed by the determined device identification and returns the authentication token to the user device. When the computer system subsequently receives a service request with an authentication token and a plurality of device attributes for a protected resource from a user device, the computer system determines a derived device identification from some or all of the received device attributes. When a signed device identification of the authentication token and the derived device identification are equal, the apparatus continues processing the service request. Otherwise, the service request is rejected.

    Service Channel Authentication Token
    4.
    发明申请
    Service Channel Authentication Token 有权
    服务通道认证令牌

    公开(公告)号:US20150334099A1

    公开(公告)日:2015-11-19

    申请号:US14280849

    申请日:2014-05-19

    IPC分类号: H04L29/06 G06F21/45 G06F21/44

    摘要: A computer system receives an authentication request from a user device and determines a determined device identification from a set of received device attributes. When the device is properly authenticated, the computer system generates an authentication token that is signed by the determined device identification and returns the authentication token to the user device. When the computer system subsequently receives a service request with an authentication token and a plurality of device attributes for a protected resource from a user device, the computer system determines a derived device identification from some or all of the received device attributes. When a signed device identification of the authentication token and the derived device identification are equal, the apparatus continues processing the service request. Otherwise, the service request is rejected.

    摘要翻译: 计算机系统从用户设备接收认证请求,并从一组接收到的设备属性中确定确定的设备标识。 当设备被正确认证时,计算机系统生成由确定的设备标识签名的认证令牌,并将认证令牌返回给用户设备。 当计算机系统随后从用户设备接收到具有认证令牌的服务请求和用于受保护资源的多个设备属性时,计算机系统从所接收的设备属性中的一些或全部确定导出的设备标识。 当认证令牌的签名设备标识和导出的设备标识相等时,设备继续处理服务请求。 否则,服务请求被拒绝。