×

Avoiding server storage of client state

  • US 7,373,502 B2
  • Filed: 01/12/2004
  • Issued: 05/13/2008
  • Est. Priority Date: 01/12/2004
  • Status: Active Grant
First Claim
Patent Images

1. A method of avoiding the storage of client state on a server, the method comprising the computer-implemented steps of:

  • based on a local key that is not known to a client, encrypting client state information to produce encrypted information, wherein the client state information includes a secret key known only to the client and the server;

    receiving the encrypted information from the client;

    based on the local key, decrypting the encrypted information that was received from the client, thereby producing decrypted information; and

    using the secret key, which was included in the decrypted information, to communicate securely with the client by encrypting data that is to be sent to the client.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×