-
公开(公告)号:US09160732B2
公开(公告)日:2015-10-13
申请号:US14068586
申请日:2013-10-31
发明人: Troy Jacob Ronda , Pierre Antoine Roberge , Patrick Hans Engel , Rene McIver , Greg Wolfond , Andre Boysen
CPC分类号: H04L63/08 , G06F21/00 , H04L9/3234 , H04L9/3263 , H04L63/0853 , H04L2209/56 , H04L2209/80
摘要: A method of establishing a communication channel between a network client and a computer server over a network is described. The network client may be configured to communicate with the computer server over the network and to communicate with a token manager. The token manager may be configured with a parent digital certificate that is associated with the token manager. The token manager or network client generates a credential from the parent digital certificate, and transmits the credential to the computer server. The credential may be associated with the computer server. The network client may establish the communications channel with the computer server in accordance with an outcome of a determination of validity of the credential by, the computer server.
摘要翻译: 描述了通过网络在网络客户端和计算机服务器之间建立通信信道的方法。 网络客户端可以被配置为通过网络与计算机服务器通信并与令牌管理器进行通信。 令牌管理器可以配置有与令牌管理器相关联的父数字证书。 令牌管理器或网络客户端从父数字证书生成凭证,并将凭证发送到计算机服务器。 证书可能与计算机服务器相关联。 网络客户端可以根据由计算机服务器确定证书的有效性的结果与计算机服务器建立通信信道。
-
公开(公告)号:US09860245B2
公开(公告)日:2018-01-02
申请号:US14753177
申请日:2015-06-29
发明人: Troy Jacob Ronda , Pierre Antoine Roberge , Patrick Hans Engel , Rene McIver , Gregory Howard Wolfond , Andre Michael Boysen
CPC分类号: H04L63/0853 , H04L9/3213 , H04L9/3215 , H04L9/3228 , H04L9/3268 , H04L63/08 , H04L2209/56 , H04L2463/102
摘要: A method of authenticating a network client to a relying party computer via a computer server comprises the computer server receiving a transaction code from a token manager via a first communications channel. The network client is configured to communicate with a token manager which is configured to communicate with a hardware token interfaced therewith. The network client is also configured to communicate with the relying party computer and the computer server. The computer server also receives a transaction pointer from the relying party computer via a second communications channel that is distinct from the first communications channel. Preferably, the transaction pointer is unpredictable by the computer server. The computer server transmits an authorization signal to the relying party computer in accordance with a correlation between the transaction code and the transaction pointer. The authorization signal facilitates authentication of the network client to the relying party computer.
-
公开(公告)号:US20140059348A1
公开(公告)日:2014-02-27
申请号:US14068586
申请日:2013-10-31
发明人: Troy Jacob Ronda , Pierre Antoine Roberge , Patrick Hans Engel , Rene McIver , Greg Wolfond , Andre Boysen
CPC分类号: H04L63/08 , G06F21/00 , H04L9/3234 , H04L9/3263 , H04L63/0853 , H04L2209/56 , H04L2209/80
摘要: A method of establishing a communication channel between a network client and a computer server over a network is described. The network client may be configured to communicate with the computer server over the network and to communicate with a token manager. The token manager may be configured with a parent digital certificate that is associated with the token manager. The token manager or network client generates a credential from the parent digital certificate, and transmits the credential to the computer server. The credential may be associated with the computer server. The network client may establish the communications channel with the computer server in accordance with an outcome of a determination of validity of the credential by, the computer server.
摘要翻译: 描述了通过网络在网络客户端和计算机服务器之间建立通信信道的方法。 网络客户端可以被配置为通过网络与计算机服务器通信并与令牌管理器进行通信。 令牌管理器可以配置有与令牌管理器相关联的父数字证书。 令牌管理器或网络客户端从父数字证书生成凭证,并将凭证发送到计算机服务器。 证书可能与计算机服务器相关联。 网络客户端可以根据由计算机服务器确定证书的有效性的结果与计算机服务器建立通信信道。
-
-