Invention Grant
- Patent Title: Hardware-bonded credential manager method and system
- Patent Title (中): 硬件凭证管理方法和系统
-
Application No.: US12103654Application Date: 2008-04-15
-
Publication No.: US08037295B2Publication Date: 2011-10-11
- Inventor: Paul Lin
- Applicant: Paul Lin
- Applicant Address: US CA San Jose
- Assignee: Authenex, Inc.
- Current Assignee: Authenex, Inc.
- Current Assignee Address: US CA San Jose
- Agency: Stevens Law Group
- Agent David R. Stevens
- Main IPC: H04L29/06
- IPC: H04L29/06

Abstract:
An internet data exchange authentication method that can provide much of the user authentication assurance and capability of dedicated computer security cryptographic hardware, without requiring that the user actually have such hardware. This method allows users with computerized devices to communicate securely with secure servers by creating customized challenge-response authentication objects (pockets) where both the challenge and the response is based partially on the hardware identity of the user's computerized device, and partially on a secret (such as a random number) known only by the secure server. The secure server receives the device's hardware identity, generates the secret, creates the pocket, encrypts the pocket, and sends the encrypted pocket back to the user's device. The secure server, or a third trusted credential server, then sends the decryption key for the encrypted pocket back to the user using a different, “out of band” communications modality, thus reducing the chances of interception.
Public/Granted literature
- US20090259838A1 Hardware-Bonded Credential Manager Method and System Public/Granted day:2009-10-15
Information query