×

Method and apparatus for offline cryptographic key establishment

  • US 7,971,234 B1
  • Filed: 09/15/2006
  • Issued: 06/28/2011
  • Est. Priority Date: 09/15/2006
  • Status: Expired due to Fees
First Claim
Patent Images

1. An apparatus for establishment of a trust relationship between first and second security appliances which are communicatively connected over an insecure medium, comprising:

  • a module for generating a verifier code in the first security appliance in response to an input by a first user operatively connected to the first security appliance, wherein the first and second security appliances are configured to transparently encrypt data en route to one or more storage devices operatively connected to the first and second security appliances;

    the first security appliance associated with the first user for generating a trust establishment package (TEP) and for forwarding the verifier code to a second user via the insecure medium in the TEP;

    an offline channel over which the first user can communicate the TEP a second time to the second user in response to communicating the verifier code via the insecure medium;

    the second security appliance associated with the second user configured to upload the TEP received from the first user via the insecure medium; and

    wherein the trust establishment package is authentic when the verifier code in the TEP received from the first user via the offline channel is the same as the verifier code received from the first user via the insecure medium, andwherein neither the first security appliance nor the second security appliance have to share all keys associated with the first and second security appliances to establish the trust relationship.

View all claims
  • 2 Assignments
Timeline View
Assignment View
    ×
    ×