Invention Grant
- Patent Title: Username based key exchange
- Patent Title (中): 基于用户名的密钥交换
-
Application No.: US12201321Application Date: 2008-08-29
-
Publication No.: US09258113B2Publication Date: 2016-02-09
- Inventor: James Paul Schneider
- Applicant: James Paul Schneider
- Applicant Address: US NC Raleigh
- Assignee: Red Hat, Inc.
- Current Assignee: Red Hat, Inc.
- Current Assignee Address: US NC Raleigh
- Agency: Lowenstein Sandler LLP
- Main IPC: H04L9/32
- IPC: H04L9/32 ; H04L9/08

Abstract:
A method and apparatus for an system and process for sharing a secret over an unsecured channel in conjunction with an authentication system. A client computes a message authentication code based on a hashed password value and a first random string received from the server. The client sends a response to the server that includes authentication data including a second random string. Both the client and server concatenate the first random string, second random string and username. Theses values are processed to generate as a shared master secret to further generate shared secrets or keys to establish a secured communication channel between the client and server. The secured communication can be based on stateless messaging where the decryption key associated with the message is identified by the message authentication code, which is placed within the message.
Public/Granted literature
- US20100058060A1 Username Based Key Exchange Public/Granted day:2010-03-04
Information query