Patent · US Expired

Key generation method for communication session encryption and authentication system

US7581100B2 · kind B2 · utility

30Cited by
24References
14Claims
0Family size

Assignee

Inventor

Key dates

Filing dateSep 2, 2003
Grant dateAug 25, 2009
Priority date
Expiry dateDec 10, 2025

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L63/0869
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

An interactive mutual authentication protocol, which does not allow shared secrets to pass through untrusted communication media, integrates an encryption key management system into the authentication protocol. The server provides ephemeral encryption keys in response to a request during a Session Random Key (SRK) initiation interval. SRK is provided for all sessions initiated in the SRK initiation interval. A set of ephemeral intermediate Data Random Keys (DRK) is associated with each request. A message carrying the SRK is sent to the requestor. A response from the requester includes a shared parameter encrypted using the SRK verifying receipt of the SRK. After verifying receipt of the SRK at the requester, at least one message is sent by the server carrying an encrypted version of one of said set of ephemeral intermediate DRK to be accepted as an encryption key for the session.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.