Invention Grant
- Patent Title: Method and apparatus for communicating credential information within a network device authentication conversation
- Patent Title (中): 用于在网络设备认证会话内传送凭证信息的方法和装置
-
Application No.: US11651742Application Date: 2007-01-09
-
Publication No.: US07793336B2Publication Date: 2010-09-07
- Inventor: Joseph Salowey , William Gossman
- Applicant: Joseph Salowey , William Gossman
- Applicant Address: US CA San Jose
- Assignee: Cisco Technology, Inc.
- Current Assignee: Cisco Technology, Inc.
- Current Assignee Address: US CA San Jose
- Agency: Hickman Palermo Truong & Becker LLP
- Main IPC: H04L9/32
- IPC: H04L9/32 ; H04L9/00

Abstract:
A method is disclosed for communicating a security credential within a network device authentication conversation. An authenticator that is coupled to a supplicant through a network performs a first message conversation resulting in creating a security context that is known to the authenticator and the supplicant. A second message conversation is initiated. The second message conversation is cryptographically protected using the same security context. A security credential is provided to the supplicant in the second message conversation. The second message conversation and first message conversation are then concluded. Specific embodiments can bootstrap digital certificates, public/private key pairs, and other credentials to supplicants, in-band, within an EAP-SIM or EAP-AKA conversation and without initiating a new session or exchanging special-purpose keys to protect distribution of the credentials.
Public/Granted literature
Information query