Invention Grant
- Patent Title: Using metadata in security tokens to prevent coordinated gaming in a reputation system
-
Application No.: US12559976Application Date: 2009-09-15
-
Publication No.: US08621654B2Publication Date: 2013-12-31
- Inventor: Carey Nachenberg , Zulfikar Ramzan
- Applicant: Carey Nachenberg , Zulfikar Ramzan
- Applicant Address: US CA Mountain View
- Assignee: Symantec Corporation
- Current Assignee: Symantec Corporation
- Current Assignee Address: US CA Mountain View
- Agency: Fenwick & West LLP
- Main IPC: H04L29/06
- IPC: H04L29/06

Abstract:
To prevent gaming of a reputation system, a security token is generated for a security module using metadata about the client observed during the registration of the security module. The registration server selects metadata for use in generating the security token. The generated security token is provided to identify the client in later transactions. A security server may conduct a transaction with the client and observe metadata about the client during the transaction. The security server also extracts metadata from the security token. The security server correlates the observed metadata during the transaction with the extracted metadata from the security token. Based on the result of the correlation, a security policy is applied. As a result, the metadata in the security token enables stateless verification of the client.
Public/Granted literature
- US20110067086A1 Using Metadata In Security Tokens to Prevent Coordinated Gaming In A Reputation System Public/Granted day:2011-03-17
Information query