Invention Grant
- Patent Title: Protection of authentication tokens
-
Application No.: US16332367Application Date: 2017-09-13
-
Publication No.: US11177958B2Publication Date: 2021-11-16
- Inventor: Yaron Kassner , Hed Kovetz , Matan Binyamin Fattal
- Applicant: SILVERFORT LTD.
- Applicant Address: IL Tel Aviv
- Assignee: SILVERFORT LTD.
- Current Assignee: SILVERFORT LTD.
- Current Assignee Address: IL Tel Aviv
- Agency: Kligler & Associates Patent Attorneys Ltd
- International Application: PCT/IB2017/055516 WO 20170913
- International Announcement: WO2018/051236 WO 20180322
- Main IPC: H04L9/32
- IPC: H04L9/32 ; H04L9/08

Abstract:
Described embodiments include an apparatus, comprising a communication interface and a processor. The processor is configured to obtain an NT Local Area Network Manager (NTLM) authentication token, which authenticates a client device to a service using an NTLM authentication protocol. The processor is further configured to, subsequently to obtaining the NTLM authentication token, receive, via the communication interface, from another processor that belongs to the client device, a challenge that was sent to the client device by the service in response to a request, from the client device, to access the service. The processor is further configured to, using the NTLM authentication token, compute a response to the received challenge, and to communicate the computed response to the client device, without exposing the NTLM authentication token to the client device. Other embodiments are also described.
Public/Granted literature
- US20210288804A1 Protection of Authentication Tokens Public/Granted day:2021-09-16
Information query