Patent · US Expired

Method for providing mutual authentication of a user and a server on a network

US5434918A · kind A · utility

157Cited by
5References
1Claims
0Family size

Assignee

Inventors

Key dates

Filing dateDec 14, 1993
Grant dateJul 18, 1995
Priority date
Expiry dateDec 14, 2013

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L63/083
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

An authentication method that permits a user and a file serving workstation to mutually authenticate themselves. This is accomplished by exchanging a random number that is encrypted by a password that is known to the user and stored in a password file on the file serving workstation. A logon ID is sent from the client workstation to the server workstation. The stored user password corresponding to the user ID is retrieved from the password file. A random number is created that is encrypted by a symmetric encryption algorithm on the server workstation using the retrieved user password, and which provides an encrypted password. The user is then requested to enter the password into the user workstation. The entered password is used to decrypt the encrypted password received from the server workstation and retrieve the random number therefrom to authenticate the server workstation. The random number is then used as the encryption and decryption key for communication between the user and server workstations. An encrypted message is transmitted using the random number from the client workstation to the server workstation. The encrypted message is decrypted at the server workstation to au…

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.