Patent · US Active

System and method for securing a credential via user and server verification

US8112787B2 · kind B2 · utility

81Cited by
6References
21Claims
0Family size

Assignee

Inventor

Key dates

Filing dateJan 3, 2007
Grant dateFeb 7, 2012
Priority date
Expiry dateApr 25, 2030

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L63/126
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

Systems and methods for securing a credential generated by or stored in an authentication token during an attempt to access a service, application, or resource are provided. A secure processor receives a credential from an authentication token and securely stores the credential. The secure processor then verifies the identity of the individual attempting to use the authentication token and cryptographically verifies the identity of the server being accessed. The credential is only released for transmission to the server if both the identity of the individual and the identity of the server are successfully verified. Alternatively, a secure connection is established between the secure processor and the server being accessed and a secure connection is established between the secure processor and a computing device. The establishment of the secure connections verifies the identity of the server. After the secure connections are established, the identity of the user is verified.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.