Invention Grant
- Patent Title: Authentication token with incremental key establishment capacity
- Patent Title (中): 具有增量密钥建立能力的认证令牌
-
Application No.: US12501131Application Date: 2009-07-10
-
Publication No.: US08347096B2Publication Date: 2013-01-01
- Inventor: Frank Hoornaert , Frederik Mennes
- Applicant: Frank Hoornaert , Frederik Mennes
- Applicant Address: US IL Oakbrook Terrace
- Assignee: Vasco Data Security, Inc.
- Current Assignee: Vasco Data Security, Inc.
- Current Assignee Address: US IL Oakbrook Terrace
- Agency: RatnerPrestia
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L9/00

Abstract:
The present invention relates to the field of strong authentication tokens and more specifically to methods and apparatus employing cryptographic key establishment protocols for such strong authentication tokens.An apparatus comprising storage for a secret key, said secret key for use in the generation of cryptographic values, and a cryptographic agent for generating said cryptographic values using said secret key, selects one of a predetermined set of key transformations in an unpredictable way and applies said selected key transformation to said secret key prior to generating one of said cryptographic values.A server receives and authenticates a credential generated using a transformed secret and derives the transformed secret, by generating a plurality of verification values using a set of known permitted transformations of a stored secret, determining whether said credential matches one of said plurality of verification values, and, if said credential matches one of said plurality of verification values, storing the corresponding one of said set of known permitted transformations as an updated value for said stored secret.
Public/Granted literature
- US20110010552A1 Authentication token with incremental key establishment capacity Public/Granted day:2011-01-13
Information query