Patent · US Active

Distributed authentication using persistent stateless credentials

US9118645B2 · kind B2 · utility

1Cited by
4References
24Claims
0Family size

Assignee

Inventor

Key dates

Filing dateDec 19, 2012
Grant dateAug 25, 2015
Priority date
Expiry dateMay 31, 2033

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L63/0807
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

Techniques and tools are described for performing distributed authentication using persistent stateless credentials. Distributed authentication can be performed during egress by obtaining a principal identifier, generating an expiration time, obtaining a secret key identifier that identifies a secret key, generating an initialization vector, encrypting the principal identifier and the expiration time to produce a ciphertext, creating a credential, and providing the credential for persistence at a client device. The credential comprises the ciphertext, the initialization vector, the secret key identifier. Distributed authentication can be performed during ingress by obtaining a credential, extracting a ciphertext, an initialization vector, and a secret key identifier from the credential, obtaining a secret key identified by the secret key identifier, decrypting the ciphertext to produce a principal identifier and an expiration time and authenticating the credential using, at least in part, the principal identifier and the expiration time.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.