Invention Grant
- Patent Title: Authenticating secure channel establishment messages based on shared-secret
-
Application No.: US16563687Application Date: 2019-09-06
-
Publication No.: US11044082B2Publication Date: 2021-06-22
- Inventor: Allan Henry Vermeulen , Matthew John Campagna , Colm Gearóid MacCárthaigh
- Applicant: Amazon Technologies, Inc.
- Applicant Address: US WA Seattle
- Assignee: Amazon Technologies, Inc.
- Current Assignee: Amazon Technologies, Inc.
- Current Assignee Address: US WA Seattle
- Agency: Kowert, Hood, Munyon, Rankin & Goetzel, P.C.
- Agent Robert C. Kowert
- Main IPC: H04L9/08
- IPC: H04L9/08 ; H04L9/32 ; H04L29/06

Abstract:
Systems and processes are described for establishing and using a secure channel. A shared secret may be used for authentication of session initiation messages as well as for generation of a private/public key pair for the session. A number of ways of agreeing on the shared secret are described and include pre-sharing the keys, reliance on a key management system, or via a token mechanism that uses a third entity to manage authentication, for example. In some instances, the third party may also perform endpoint selection by providing a particular endpoint along with the token. The particular cipher suite applied in a particular implementation may be configurable. The process is applicable to either implicit key confirmation (e.g., handshake negotiation) or explicit key confirmation (e.g., full negotiation).
Public/Granted literature
- US20190394029A1 Authenticating Secure Channel Establishment Messages Based on Shared-Secret Public/Granted day:2019-12-26
Information query