WO2002050630A3 - Systeme et procede de regulation de mots de passe - Google Patents

Systeme et procede de regulation de mots de passe Download PDF

Info

Publication number
WO2002050630A3
WO2002050630A3 PCT/US2001/048301 US0148301W WO0250630A3 WO 2002050630 A3 WO2002050630 A3 WO 2002050630A3 US 0148301 W US0148301 W US 0148301W WO 0250630 A3 WO0250630 A3 WO 0250630A3
Authority
WO
WIPO (PCT)
Prior art keywords
user
transmitted
response
challenge
complexity
Prior art date
Application number
PCT/US2001/048301
Other languages
English (en)
Other versions
WO2002050630A2 (fr
WO2002050630A9 (fr
Inventor
Ravi Sandhu
Colin Desa
Karuna Ganesan
Original Assignee
Singlesignon Net
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Singlesignon Net filed Critical Singlesignon Net
Publication of WO2002050630A2 publication Critical patent/WO2002050630A2/fr
Publication of WO2002050630A3 publication Critical patent/WO2002050630A3/fr
Publication of WO2002050630A9 publication Critical patent/WO2002050630A9/fr

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/30Authentication, i.e. establishing the identity or authorisation of security principals
    • G06F21/31User authentication
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F2221/00Indexing scheme relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/21Indexing scheme relating to G06F21/00 and subgroups addressing additional information or applications relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/2103Challenge-response
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/04Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks
    • H04L63/0428Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload
    • H04L63/0442Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload wherein the sending and receiving network entities apply asymmetric encryption, i.e. different keys for encryption and decryption

Abstract

Un procédé d'authentification d'un utilisateur consiste à recevoir une demande d'accès d'un utilisateur prétendant être un utilisateur particulier. Une première intervention ayant un premier niveau de complexité est transmise à l'utilisateur. Une réponse à la première intervention transmise est transmise. Une détermination est effectuée afin de savoir si oui ou non la réponse transmise authentifie l'utilisateur comme étant l'utilisateur particulier. L'accès demandé par l'utilisateur est autorisé si la réponse transmise authentifie l'utilisateur. Toutefois, une seconde intervention d'un second niveau de complexité, supérieur à celui du premier niveau de complexité, est transmise à l'utilisateur si la réponse transmise authentifie l'utilisateur.
PCT/US2001/048301 2000-12-19 2001-12-18 Systeme et procede de regulation de mots de passe WO2002050630A2 (fr)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
US79311000A 2000-12-19 2000-12-19
US09/793,110 2001-02-27

Publications (3)

Publication Number Publication Date
WO2002050630A2 WO2002050630A2 (fr) 2002-06-27
WO2002050630A3 true WO2002050630A3 (fr) 2002-11-07
WO2002050630A9 WO2002050630A9 (fr) 2002-12-19

Family

ID=25159118

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/US2001/048301 WO2002050630A2 (fr) 2000-12-19 2001-12-18 Systeme et procede de regulation de mots de passe

Country Status (1)

Country Link
WO (1) WO2002050630A2 (fr)

Citations (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6006328A (en) * 1995-07-14 1999-12-21 Christopher N. Drake Computer software authentication, protection, and security system

Patent Citations (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6006328A (en) * 1995-07-14 1999-12-21 Christopher N. Drake Computer software authentication, protection, and security system

Also Published As

Publication number Publication date
WO2002050630A2 (fr) 2002-06-27
WO2002050630A9 (fr) 2002-12-19

Similar Documents

Publication Publication Date Title
WO2001077792A3 (fr) Systeme et procede d'authentification d'un utilisateur
WO1999060750A3 (fr) Procede permettant d'empecher l'utilisation non autorisee d'un service
WO2000030285A8 (fr) Procede et appareil permettant de distribuer de maniere sure des justificatifs d"authentification a des abonnes itinerants
AU5401200A (en) Security architecture
WO2004019550A3 (fr) Systeme et procede d'authentification d'un composant sans fil
WO2002069605A3 (fr) Procede et systeme pour deleguer des procedures de securite a un domaine visite
EP1638034A3 (fr) Procédé et système pour contrôler des privilèges d'accès à des noeuds réseaux sûrs
WO2000067415A3 (fr) Procede et systeme permettant une authentification et une ouverture de session unique utilisant des mouchards electroniques certifies de maniere cryptographiques dans un environnement informatique reparti
WO2007040730A3 (fr) Procedes et systemes permettant d'utiliser des systemes de traitement de donnees afin d'authentifier des tiers
JP2003188885A5 (fr)
WO2001001627A3 (fr) Regeneration assistee par serveur d'un secret fort a partir d'un secret faible
PL363770A1 (en) Method and system designed to authenticate user for sub-location of network location
CA2263434A1 (fr) Procede de controle d'acces dans un systeme d'affranchissement virtuel
WO2006099081A3 (fr) Le procede des systemes de gestion d'informations relatives aux comptes
WO2006039365A3 (fr) Procede et systeme d'authentification sur un reseau ouvert
WO2002012987A3 (fr) Systemes et procedes permettant d'authentifier un utilisateur a un serveur web
AU2003291892A1 (en) System and method of secure authentication information distribution
WO2003032126A3 (fr) Systeme d'authentification multifactorielle
WO2007047440A3 (fr) Procede et appareil pour la reauthentification d'un dispositif informatique utilisant un etat de memoire cache
WO2003100544A3 (fr) Procede d'authentification d'un utilisateur d'un service d'un fournisseur de services
WO2004051413A3 (fr) Authentification biometrique de connexion reseau-client
MY145724A (en) Persistent authorization context based on external authentication
WO2005048029A3 (fr) Systeme et procede pour commander l'acces a un contenu numerique notamment un support video
WO2004003679A3 (fr) Procede pour enregistrer l'adresse d'origine d'un noeud mobile avec un agent d'origine
CA2422334A1 (fr) Authentification d'utilisateurs de reseau

Legal Events

Date Code Title Description
AL Designated countries for regional patents

Kind code of ref document: A2

Designated state(s): AT BE CH CY DE DK ES FI FR GB GR IE IT LU MC NL PT SE TR

AL Designated countries for regional patents

Kind code of ref document: A3

Designated state(s): AT BE CH CY DE DK ES FI FR GB GR IE IT LU MC NL PT SE TR

121 Ep: the epo has been informed by wipo that ep was designated in this application
AL Designated countries for regional patents

Kind code of ref document: C2

Designated state(s): AT BE CH CY DE DK ES FI FR GB GR IE IT LU MC NL PT SE TR

COP Corrected version of pamphlet

Free format text: PAGES 1/12-12/12, DRAWINGS, REPLACED BY NEW PAGES 1/11-11/11; DUE TO LATE TRANSMITTAL BY THE RECEIVING OFFICE

122 Ep: pct application non-entry in european phase