U.S. patents available from 1976 to present.
U.S. patent applications available from 2005 to present.

Method and apparatus for secure remote authentication in a public network

Patent 5604803 Issued on February 18, 1997. Estimated Expiration Date: Icon_subject June 3, 2014. Estimated Expiration Date is calculated based on simple USPTO term provisions. It does not account for terminal disclaimers, term adjustments, failure to pay maintenance fees, or other factors which might affect the term of a patent.

Patent References

Cryptographic verification of operational keys used in communication networks
Patent #: 4193131
Issued on: 03/11/1980
Inventor: Lennon ,   et al.

Recipient and message authentication method and system
Patent #: 4349695
Issued on: 09/14/1982
Inventor: Morgan ,   et al.

Technique for reducing RSA Crypto variable storage
Patent #: 4736423
Issued on: 04/05/1988
Inventor: Matyas

Software protection system using a single-key cryptosystem, a hardware-based authorization system and a secure coprocessor
Patent #: 4817140
Issued on: 03/28/1989
Inventor: Chandra ,   et al.

Communication security accessing system and process
Patent #: 5056140
Issued on: 10/08/1991
Inventor: Kimbell

Manipulating rights-to-execute in connection with a software copy protection mechanism
Patent #: 5109413
Issued on: 04/28/1992
Inventor: Comerford, et al.

Cryptographic communication method and cryptographic communication device
Patent #: 5136642
Issued on: 08/04/1992
Inventor: Kawamura, et al.

Method for authenticating the user of a data station connected to a computer system
Patent #: 5323146
Issued on: 06/21/1994
Inventor: Glaschick

Access control Patent #: 5323465
Issued on: 06/21/1994
Inventor: Avarne

Inventor

Application

No. 253802 filed on 06/03/1994

US Classes:

713/155, Central trusted authority provides computer authentication709/228, Session/connection parameter setting713/152, Application layer security713/162, Having particular address related cryptography713/171Having key exchange

Examiners

Primary: Cangialosi, Salvatore

Attorney, Agent or Firm

Foreign Patent References

  • 2168831 GB. 11/12/1984

International Class

H04L 009/00

Abstract

A client workstation provides a login address as an anonymous ftp (file transfer protocol) request, and a password as a user's e-mail address. A destination server compares the user's e-mail address provided as a password to a list of authorized users' addresses. If the user's e-mail address is located on the list of authorized users' addresses maintained by the destination server, the destination server generates a random number (X), and encrypts the random number in an ASCII representation using encryption techniques provided by the Internet Privacy Enhanced Mail (PEM) procedures. The encrypted random number is stored in a file as the user's anonymous directory. The server further establishes the encrypted random number as one-time password for the user. The client workstation initiates an ftp request to obtain the encrypted PEM random number as a file transfer (ftp) request from the destination server. The destination server then sends the PEM encrypted password random number, as an ftp file, over the Internet to the client workstation. The client workstation decrypts the PEM encrypted file utilizing the user's private RSA key, in accordance with established PEM decryption techniques. The client workstation then provides the destination server with the decrypted random number password, which is sent in the clear over the Internet, to login to the destination server. Upon receipt of the decrypted random number password, the destination server permits the user to login to the anonymous directory, thereby completing the user authentication procedure and accomplishing login.

Other References

  • Whitfield Diffie, "The First Ten Years of Public-Key Cryptography", (Proceedings of the IEEE, vol. 76, No. 5, May 1988)
  • Paul Fahn, "Answers to Frequently Asked Questions About Today's Cryptography", (RSA Laboratories, 1992)
  • "Part I: Message Encryption and Authentication Procedures", (Privacy Enhancement for Internet Electronic Mail, J. Linn (Network Working Group)
  • "Part II: Certificate-Based Key Management", (Privacy Enhancement for Internet Electronic Mail, S. Kent (Network Working Group)
  • "Part III: Algorithms, Modes, and Identifiers", (Privacy Enhancement for Internet Electronic Mail), D. Balenson (Network Working Group)
  • "Part IV: Key Certification and Related Services" (Privacy Enhancement for Internet Electronic Mail), B. Kaliski (Network Working Group)
  • Whitfield Diffie, Paul C. Van Oorschoot and Michael J. Weiner, "Authentication and Authenticated Key Exchanges" (Designs, Codes and Cryptography, 2-107-125 (1992), Kluwer Academic Publishers)
  • "The MD5 Message-Digest Algorithm", MIT Laboratory for Computer Science and RSA Data Security, Inc. (1992) R. Rivest (Network Working Group)
  • RSA Data Security, Inc. Technology Bulleti
PatentsPlus Images
Enhanced PDF formats
loading...
PatentsPlus: add to cart
PatentsPlus: add to cartSearch-enhanced full patent PDF image
$9.95more info
PatentsPlus: add to cart
PatentsPlus: add to cartIntelligent turbocharged patent PDFs with marked up images
$16.95more info
 
Sign InRegister
Username  
Password   
forgot password?