AU2011253346B2 - One time passwords with IPsec and IKE version 1 authentication - Google Patents

One time passwords with IPsec and IKE version 1 authentication Download PDF

Info

Publication number
AU2011253346B2
AU2011253346B2 AU2011253346A AU2011253346A AU2011253346B2 AU 2011253346 B2 AU2011253346 B2 AU 2011253346B2 AU 2011253346 A AU2011253346 A AU 2011253346A AU 2011253346 A AU2011253346 A AU 2011253346A AU 2011253346 B2 AU2011253346 B2 AU 2011253346B2
Authority
AU
Australia
Prior art keywords
password
time
communication
client
certificate
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Ceased
Application number
AU2011253346A
Other languages
English (en)
Other versions
AU2011253346A1 (en
Inventor
Anat Bar-Anan
Ben Bernstein
Anat Eyal
Nimrod Vered
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Microsoft Technology Licensing LLC
Original Assignee
Microsoft Technology Licensing LLC
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Microsoft Technology Licensing LLC filed Critical Microsoft Technology Licensing LLC
Publication of AU2011253346A1 publication Critical patent/AU2011253346A1/en
Application granted granted Critical
Publication of AU2011253346B2 publication Critical patent/AU2011253346B2/en
Assigned to MICROSOFT TECHNOLOGY LICENSING, LLC reassignment MICROSOFT TECHNOLOGY LICENSING, LLC Request for Assignment Assignors: MICROSOFT CORPORATION
Ceased legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/083Network architectures or network communication protocols for network security for authentication of entities using passwords
    • H04L63/0838Network architectures or network communication protocols for network security for authentication of entities using passwords using one-time-passwords
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/32Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
    • H04L9/321Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving a third party or a trusted authority
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/32Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
    • H04L9/3226Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials using a predetermined code, e.g. password, passphrase or PIN
    • H04L9/3228One-time or temporary data, i.e. information which is sent for every authentication or authorization, e.g. one-time-password, one-time-token or one-time-key
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/32Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
    • H04L9/3263Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving certificates, e.g. public key certificate [PKC] or attribute certificate [AC]; Public key infrastructure [PKI] arrangements

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Hardware Design (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)
  • Computer And Data Communications (AREA)
AU2011253346A 2010-05-13 2011-04-27 One time passwords with IPsec and IKE version 1 authentication Ceased AU2011253346B2 (en)

Applications Claiming Priority (3)

Application Number Priority Date Filing Date Title
US12/779,457 US8799649B2 (en) 2010-05-13 2010-05-13 One time passwords with IPsec and IKE version 1 authentication
US12/779,457 2010-05-13
PCT/US2011/034188 WO2011142971A2 (en) 2010-05-13 2011-04-27 One time passwords with ipsec and ike version 1 authentication

Publications (2)

Publication Number Publication Date
AU2011253346A1 AU2011253346A1 (en) 2012-12-13
AU2011253346B2 true AU2011253346B2 (en) 2014-05-01

Family

ID=44912769

Family Applications (1)

Application Number Title Priority Date Filing Date
AU2011253346A Ceased AU2011253346B2 (en) 2010-05-13 2011-04-27 One time passwords with IPsec and IKE version 1 authentication

Country Status (7)

Country Link
US (1) US8799649B2 (enExample)
EP (1) EP2569897B1 (enExample)
JP (1) JP5827680B2 (enExample)
CN (1) CN102893575B (enExample)
AU (1) AU2011253346B2 (enExample)
CA (1) CA2798024C (enExample)
WO (1) WO2011142971A2 (enExample)

Families Citing this family (9)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US8856509B2 (en) * 2010-08-10 2014-10-07 Motorola Mobility Llc System and method for cognizant transport layer security (CTLS)
US8595806B1 (en) * 2010-09-21 2013-11-26 Amazon Technologies, Inc. Techniques for providing remote computing services
US8843741B2 (en) * 2012-10-26 2014-09-23 Cloudpath Networks, Inc. System and method for providing a certificate for network access
US9325697B2 (en) 2013-01-31 2016-04-26 Hewlett Packard Enterprise Development Lp Provisioning and managing certificates for accessing secure services in network
CN103428203B (zh) * 2013-07-24 2016-06-29 福建星网锐捷网络有限公司 接入访问控制方法及设备
KR20150015793A (ko) * 2013-08-01 2015-02-11 삼성전자주식회사 화상형성장치 및 화상형성장치의 사용자 인증 방법
US10985921B1 (en) 2019-11-05 2021-04-20 Capital One Services, Llc Systems and methods for out-of-band authenticity verification of mobile applications
KR102558364B1 (ko) * 2021-03-18 2023-07-20 주식회사 케이티 5g lan 서비스 제공 방법
CN115002057B (zh) * 2022-05-26 2024-04-12 威艾特科技(深圳)有限公司 一种分布式多服务端即时通信方法

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20020093915A1 (en) * 2001-01-18 2002-07-18 Victor Larson Third party VPN certification
US20070067828A1 (en) * 2005-08-11 2007-03-22 Msystems Ltd. Extended one-time password method and apparatus
US20080034216A1 (en) * 2006-08-03 2008-02-07 Eric Chun Wah Law Mutual authentication and secure channel establishment between two parties using consecutive one-time passwords
US20090158033A1 (en) * 2007-12-12 2009-06-18 Younseo Jeong Method and apparatus for performing secure communication using one time password

Family Cites Families (15)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JPH11282804A (ja) * 1998-03-31 1999-10-15 Secom Joho System Kk ユーザ認証機能付き通信システム及びユーザ認証方法
US20020138728A1 (en) 2000-03-07 2002-09-26 Alex Parfenov Method and system for unified login and authentication
US7113996B2 (en) 2000-07-21 2006-09-26 Sandy Craig Kronenberg Method and system for secured transport and storage of data on a network
US6931529B2 (en) * 2001-01-05 2005-08-16 International Business Machines Corporation Establishing consistent, end-to-end protection for a user datagram
US20030208695A1 (en) * 2002-05-01 2003-11-06 Ronald Soto Method and system for controlled, centrally authenticated remote access
US7421732B2 (en) 2003-05-05 2008-09-02 Nokia Corporation System, apparatus, and method for providing generic internet protocol authentication
US20070008924A1 (en) * 2004-01-15 2007-01-11 Padraig Moran Device to facilitate the deployment of mobile virtual private networks for medium/large corporate networks
US20060059346A1 (en) * 2004-09-14 2006-03-16 Andrew Sherman Authentication with expiring binding digital certificates
US7836306B2 (en) * 2005-06-29 2010-11-16 Microsoft Corporation Establishing secure mutual trust using an insecure password
US20090025080A1 (en) 2006-09-27 2009-01-22 Craig Lund System and method for authenticating a client to a server via an ipsec vpn and facilitating a secure migration to ssl vpn remote access
JP2008129673A (ja) * 2006-11-17 2008-06-05 Nippon Telegr & Teleph Corp <Ntt> ユーザ認証システム、ユーザ認証方法、それに用いるゲートウェイ及びプログラムとその記録媒体
US20080137863A1 (en) 2006-12-06 2008-06-12 Motorola, Inc. Method and system for using a key management facility to negotiate a security association via an internet key exchange on behalf of another device
US20080183851A1 (en) 2007-01-30 2008-07-31 Utstarcom, Inc. Apparatus and Method Pertaining to Management of On-Line Certificate Status Protocol Responses in a Cache
KR20070072463A (ko) * 2007-06-14 2007-07-04 이상곤 일회용 비밀번호를 이용한 공인인증서 보안 강화 방안
KR101096726B1 (ko) * 2008-05-19 2011-12-21 에스케이플래닛 주식회사 콘텐츠 drm 변환 시스템 및 방법과 이를 위한 인증 서버및 사용자 단말기

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20020093915A1 (en) * 2001-01-18 2002-07-18 Victor Larson Third party VPN certification
US20070067828A1 (en) * 2005-08-11 2007-03-22 Msystems Ltd. Extended one-time password method and apparatus
US20080034216A1 (en) * 2006-08-03 2008-02-07 Eric Chun Wah Law Mutual authentication and secure channel establishment between two parties using consecutive one-time passwords
US20090158033A1 (en) * 2007-12-12 2009-06-18 Younseo Jeong Method and apparatus for performing secure communication using one time password

Also Published As

Publication number Publication date
CN102893575B (zh) 2015-08-26
JP2013531834A (ja) 2013-08-08
EP2569897B1 (en) 2014-08-20
CN102893575A (zh) 2013-01-23
CA2798024C (en) 2017-04-04
US8799649B2 (en) 2014-08-05
WO2011142971A3 (en) 2012-01-26
CA2798024A1 (en) 2011-11-17
EP2569897A4 (en) 2013-12-04
EP2569897A2 (en) 2013-03-20
JP5827680B2 (ja) 2015-12-02
AU2011253346A1 (en) 2012-12-13
WO2011142971A2 (en) 2011-11-17
US20110283103A1 (en) 2011-11-17

Similar Documents

Publication Publication Date Title
US12170662B2 (en) Domain unrestricted mobile initiated login
US11811748B2 (en) Methods and systems for controlling access to a protected resource
US11855767B2 (en) Methods and systems for distributing encrypted cryptographic data
CN110874464B (zh) 用户身份认证数据的管理方法和设备
AU2011253346B2 (en) One time passwords with IPsec and IKE version 1 authentication
EP2632108B1 (en) Method and system for secure communication
US8532620B2 (en) Trusted mobile device based security
EP1498800B1 (en) Security link management in dynamic networks
US8589673B2 (en) Methods and systems for distributing cryptographic data to authenticated recipients
US9332002B1 (en) Authenticating and authorizing a user by way of a digital certificate
JP5021215B2 (ja) Webサービス用の信頼できる第三者認証
CN102577301A (zh) 用于可信认证和登录的方法和装置
US11677547B1 (en) Mobile authenticator for performing a role in user authentication
US20160285843A1 (en) System and method for scoping a user identity assertion to collaborative devices
WO2022140469A1 (en) Domain unrestricted mobile initiated login
Wang et al. Design and Implementation of Authentication and Authorization Flow in ESCP System

Legal Events

Date Code Title Description
FGA Letters patent sealed or granted (standard patent)
PC Assignment registered

Owner name: MICROSOFT TECHNOLOGY LICENSING, LLC

Free format text: FORMER OWNER WAS: MICROSOFT CORPORATION

MK14 Patent ceased section 143(a) (annual fees not paid) or expired