×

Using trusted associations to establish trust in a computer network

  • US 5,872,847 A
  • Filed: 07/30/1996
  • Issued: 02/16/1999
  • Est. Priority Date: 07/30/1996
  • Status: Expired due to Term
First Claim
Patent Images

1. A method for sharing a user'"'"'s trusted information, as needed, with another user over an Internet Protocol (IP) based computer network, said method comprising the steps of:

  • determining the Internet Protocol (IP) address of a second user on the computer network;

    determining the accessability of the second user on the computer network by sending an Internet Control message Protocol (ICMP) Echo Request to said second user carrying the first user'"'"'s security parameter and including a security level, digital certificate including a public key and signature of a first secure network interface unit (SNIU) associated with said first user, and receiving an Internet Control message Protocol (ICMP) Echo Reply from said second user in response to said ICMP Echo Request, said Reply including;

    an association key encrypted using a key algorithm, said second user'"'"'s security level, and a digital certificate and signature corresponding to a second SNIU associated with said second user;

    exchanging, between the first user and the second user through said first and second SNIUs, security related information needed to complete the establishment of a trusted association; and

    ,maintaining the trusted association during all communications between the first user and the second user,wherein each intermediate SNIU, in the communications path between the first SNIU and second SNIU, which receives the ICMP Echo reply originating from the second user, authenticates the ICMP echo reply, extracts a release key from the ICMP echo reply corresponding to the previous SNIU, generates a new release key corresponding to the next SNIU and encrypts the key using the public key corresponding to the next SNIU, removes the previous certificate and signature, appends its certificate, and digitally signs the ICMP Echo Reply before sending it on to the next SNIU.

View all claims
  • 4 Assignments
Timeline View
Assignment View
    ×
    ×