Invention Grant
- Patent Title: Mutual authentication schemes
- Patent Title (中): 相互认证方案
-
Application No.: US13647615Application Date: 2012-10-09
-
Publication No.: US08880885B2Publication Date: 2014-11-04
- Inventor: Sebastian Lekies , Martin Johns
- Applicant: Sebastian Lekies , Martin Johns
- Applicant Address: DE Walldorf
- Assignee: SAP SE
- Current Assignee: SAP SE
- Current Assignee Address: DE Walldorf
- Agency: Fish & Richardson P.C.
- Main IPC: H04L9/32
- IPC: H04L9/32

Abstract:
Implementations of the present disclosure are directed to web-based authentication. Implementations include receiving user credentials at a browser, transmitting a first request to an application, the first request including a first user credential, receiving a first response, the first response including an encrypted server public key (SPK) and a user-specific salt value, decrypting the encrypted SPK to provide a SPK, the encrypted SPK being decrypted based on the user-specific salt value and a second user credential, determining a browser public key (BPK) and a client-side session signing key (SSK), encrypting the BPK to provide an encrypted BPK, transmitting a second request to the application, the second request including the encrypted BPK and a request signature, the request signature having been provided based on the client-side SSK, and receiving a second response, the second response including a response signature and indicating that a user has been authenticated by the application.
Public/Granted literature
- US20140101447A1 Mutual Authentication Schemes Public/Granted day:2014-04-10
Information query