×

System and method for trusted path communications

  • US 5,499,297 A
  • Filed: 12/20/1994
  • Issued: 03/12/1996
  • Est. Priority Date: 04/17/1992
  • Status: Expired due to Term
First Claim
Patent Images

1. In a computing system having a security server and a controller which can communicate with the security server, a method of identifying and authenticating a first user from a plurality of users seeking access to the security server, wherein the method comprises the steps of:

  • providing a cryptographic key;

    assigning a user unique identifier to each user, wherein the step of assigning comprises assigning a first user unique identifier to the first user;

    assigning a personal keying device to each user, wherein each personal keying device comprises input means for entering user input and storage means for storing an encrypted last countersign and an encrypted version of the user unique identifier of the user to whom the personal keying device is assigned;

    storing, in the security server, and expected personal identification number associated with the first user unique identifier;

    attaching the personal keying device assigned to the first user to the controller;

    entering, at the input means of the personal keying device, a user-entered personal identification number;

    combining the user-entered personal identification number, the first user unique identifier and the last countersign into a message;

    encrypting the message with the cryptographic key and transmitting the encrypted message to the security server;

    decrypting the message and comparing the user-entered personal identification number to the expected personal identification number;

    if the user-entered personal identification number matches the expected personal identification number, comparing the decrypted last countersign to a stored value to determine the first user'"'"'s access rights.

View all claims
  • 5 Assignments
Timeline View
Assignment View
    ×
    ×