[go: up one dir, main page]
More Web Proxy on the site http://driver.im/

CA2483989A1 - Systeme et appareil permettant d'authentifier un systeme ou un reseau - Google Patents

Systeme et appareil permettant d'authentifier un systeme ou un reseau Download PDF

Info

Publication number
CA2483989A1
CA2483989A1 CA002483989A CA2483989A CA2483989A1 CA 2483989 A1 CA2483989 A1 CA 2483989A1 CA 002483989 A CA002483989 A CA 002483989A CA 2483989 A CA2483989 A CA 2483989A CA 2483989 A1 CA2483989 A1 CA 2483989A1
Authority
CA
Canada
Prior art keywords
server
cas
biotoken
biometric
authentication
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CA002483989A
Other languages
English (en)
Other versions
CA2483989C (fr
Inventor
Robert Eryou
Clovis Najm
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Individual
Original Assignee
Individual
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Individual filed Critical Individual
Publication of CA2483989A1 publication Critical patent/CA2483989A1/fr
Application granted granted Critical
Publication of CA2483989C publication Critical patent/CA2483989C/fr
Anticipated expiration legal-status Critical
Expired - Fee Related legal-status Critical Current

Links

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/30Authentication, i.e. establishing the identity or authorisation of security principals
    • G06F21/31User authentication
    • G06F21/32User authentication using biometric data, e.g. fingerprints, iris scans or voiceprints
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/30Authentication, i.e. establishing the identity or authorisation of security principals
    • G06F21/31User authentication
    • G06F21/42User authentication using separate channels for security data
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/60Protecting data
    • G06F21/62Protecting access to data via a platform, e.g. using keys or access control rules
    • G06F21/6218Protecting access to data via a platform, e.g. using keys or access control rules to a system of files or objects, e.g. local or distributed file system or database
    • G06F21/6245Protecting personal data, e.g. for financial or medical purposes
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/0861Network architectures or network communication protocols for network security for authentication of entities using biometrical features, e.g. fingerprint, retina-scan
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/32Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
    • H04L9/3226Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials using a predetermined code, e.g. password, passphrase or PIN
    • H04L9/3231Biological data, e.g. fingerprint, voice or retina
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/32Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
    • H04L9/3236Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials using cryptographic hash functions
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F2221/00Indexing scheme relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/21Indexing scheme relating to G06F21/00 and subgroups addressing additional information or applications relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/2149Restricted operating environment
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L2209/00Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
    • H04L2209/76Proxy, i.e. using intermediary entity to perform cryptographic operations
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L2209/00Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
    • H04L2209/80Wireless
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/04Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks
    • H04L63/0428Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/083Network architectures or network communication protocols for network security for authentication of entities using passwords

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Theoretical Computer Science (AREA)
  • Health & Medical Sciences (AREA)
  • General Health & Medical Sciences (AREA)
  • Computer Hardware Design (AREA)
  • General Engineering & Computer Science (AREA)
  • Signal Processing (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Software Systems (AREA)
  • Physics & Mathematics (AREA)
  • General Physics & Mathematics (AREA)
  • Biomedical Technology (AREA)
  • Bioethics (AREA)
  • Databases & Information Systems (AREA)
  • Medical Informatics (AREA)
  • Computing Systems (AREA)
  • Life Sciences & Earth Sciences (AREA)
  • Biodiversity & Conservation Biology (AREA)
  • Storage Device Security (AREA)
  • Mobile Radio Communication Systems (AREA)

Abstract

La présente invention concerne un dispositif biométrique mobile et un serveur permettant la validation biométrique d'une personne qui a initialisé un biojeton et qui a communiqué un ou plusieurs codes produits par le biojeton à un serveur sur un canal de communications sécurisé ou non. Le dispositif biométrique, ou biojeton, comprend des moyens qui permettent de capturer des informations biométriques, des moyens de hachage d'une partie des informations biométriques, et des moyens de transmission et affichage d'un code calculé au moyen d'une valeur d'horloge, d'un nombre aléatoire, d'une fonction de hachage sécurisée et d'un compteur. Le serveur comprend des fonctions nécessaires à l'initialisation du dispositif biométrique, au stockage de valeurs clés sensibles à l'initialisation, et à la validation de codes sensibles à une utilisation future du dispositif biométrique après une demande de validation. L'invention se rapporte également à des fonctions et caractéristiques supplémentaires qui permettent de créer un espace d'application sûr, vérifiable et privé sur un dispositif ou une machine, comme un ordinateur ou un téléphone cellulaire, après la validation.
CA2483989A 2002-04-30 2003-04-30 Systeme et appareil permettant d'authentifier un systeme ou un reseau Expired - Fee Related CA2483989C (fr)

Applications Claiming Priority (5)

Application Number Priority Date Filing Date Title
US37713202P 2002-04-30 2002-04-30
US37719202P 2002-04-30 2002-04-30
US60/377,132 2002-04-30
US60/377,192 2002-04-30
PCT/IB2003/003301 WO2003093923A2 (fr) 2002-04-30 2003-04-30 Systeme et appareil permettant d'authentifier un systeme ou un reseau

Publications (2)

Publication Number Publication Date
CA2483989A1 true CA2483989A1 (fr) 2003-11-13
CA2483989C CA2483989C (fr) 2013-04-09

Family

ID=29406780

Family Applications (1)

Application Number Title Priority Date Filing Date
CA2483989A Expired - Fee Related CA2483989C (fr) 2002-04-30 2003-04-30 Systeme et appareil permettant d'authentifier un systeme ou un reseau

Country Status (4)

Country Link
EP (1) EP1506469A2 (fr)
AU (1) AU2003247117B2 (fr)
CA (1) CA2483989C (fr)
WO (1) WO2003093923A2 (fr)

Families Citing this family (14)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
NO321850B1 (no) * 2004-06-25 2006-07-10 Buypass As Fremgangsmate for a generere og verifisere en elektronisk signatur
US7707622B2 (en) 2004-11-18 2010-04-27 Biogy, Inc. API for a system having a passcode authenticator
US7886155B2 (en) 2004-12-20 2011-02-08 Biogy, Inc. System for generating requests to a passcode protected entity
US8209751B2 (en) 2004-11-18 2012-06-26 Biogy, Inc. Receiving an access key
US7702911B2 (en) 2004-11-18 2010-04-20 Biogy, Inc. Interfacing with a system that includes a passcode authenticator
EP1846830B1 (fr) * 2004-12-20 2020-07-08 Biogy, Inc. Clés d'accès
WO2007036763A1 (fr) * 2005-09-29 2007-04-05 Clovis Najm Systeme d'authentification biometrique
EP1783650B1 (fr) 2005-10-26 2011-01-12 Swisscom AG Procédé et système de communication destinés à comparer des données biométriques enregistrées à l'aide de capteurs biométriques avec des données de référence
EP1868126B1 (fr) * 2006-06-16 2011-08-10 Thomson Licensing Dispositif et procédé pour la découverte des clients émulés
RU2451409C2 (ru) * 2010-01-26 2012-05-20 Российская Федерация, от имени которой выступает Федеральная служба по техническому и экспортному контролю (ФСТЭК России) Способ однозначного хэширования неоднозначных биометрических данных
CN104125070B (zh) * 2014-07-30 2018-05-15 中国银行股份有限公司 一种用于多个信息交互系统的互信认证方法及系统
TWI725696B (zh) 2020-01-07 2021-04-21 緯創資通股份有限公司 行動裝置、驗證終端裝置及身分驗證方法
EP3917103A1 (fr) * 2020-05-29 2021-12-01 Siemens Aktiengesellschaft Procédé, système, émetteur et récepteur d'authentification d'un émetteur
CN111783071B (zh) * 2020-07-07 2024-04-19 支付宝(杭州)信息技术有限公司 基于密码、基于隐私数据的验证方法、装置、设备及系统

Family Cites Families (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US7272723B1 (en) * 1999-01-15 2007-09-18 Safenet, Inc. USB-compliant personal key with integral input and output devices
US6507912B1 (en) * 1999-01-27 2003-01-14 International Business Machines Corporation Protection of biometric data via key-dependent sampling
AU2001253795A1 (en) * 2000-04-26 2001-11-07 Global Transaction Company Multi-tiered identity verification authority for e-commerce

Also Published As

Publication number Publication date
AU2003247117A1 (en) 2003-11-17
WO2003093923A3 (fr) 2004-12-23
AU2003247117B2 (en) 2010-01-21
EP1506469A2 (fr) 2005-02-16
CA2483989C (fr) 2013-04-09
WO2003093923A2 (fr) 2003-11-13

Similar Documents

Publication Publication Date Title
US9774449B2 (en) Systems and methods for distributing and securing data
US9300649B2 (en) Context sensitive dynamic authentication in a cryptographic system
CA2463286C (fr) Systeme d'authentification multifactorielle
US9189777B1 (en) Electronic commerce with cryptographic authentication
US20150135301A1 (en) Method of and system for encryption and authentication
AU2016311166B2 (en) System and method for biometric protocol standards
CA2483989C (fr) Systeme et appareil permettant d'authentifier un systeme ou un reseau
WO2007036763A1 (fr) Systeme d'authentification biometrique
AU2014240194B2 (en) Systems and methods for distributing and securing data

Legal Events

Date Code Title Description
EEER Examination request
MKLA Lapsed

Effective date: 20150430

MKLA Lapsed

Effective date: 20150430