CA2483989A1 - Systeme et appareil permettant d'authentifier un systeme ou un reseau - Google Patents
Systeme et appareil permettant d'authentifier un systeme ou un reseau Download PDFInfo
- Publication number
- CA2483989A1 CA2483989A1 CA002483989A CA2483989A CA2483989A1 CA 2483989 A1 CA2483989 A1 CA 2483989A1 CA 002483989 A CA002483989 A CA 002483989A CA 2483989 A CA2483989 A CA 2483989A CA 2483989 A1 CA2483989 A1 CA 2483989A1
- Authority
- CA
- Canada
- Prior art keywords
- server
- cas
- biotoken
- biometric
- authentication
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Granted
Links
Classifications
-
- G—PHYSICS
- G06—COMPUTING; CALCULATING OR COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/30—Authentication, i.e. establishing the identity or authorisation of security principals
- G06F21/31—User authentication
- G06F21/32—User authentication using biometric data, e.g. fingerprints, iris scans or voiceprints
-
- G—PHYSICS
- G06—COMPUTING; CALCULATING OR COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/30—Authentication, i.e. establishing the identity or authorisation of security principals
- G06F21/31—User authentication
- G06F21/42—User authentication using separate channels for security data
-
- G—PHYSICS
- G06—COMPUTING; CALCULATING OR COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/60—Protecting data
- G06F21/62—Protecting access to data via a platform, e.g. using keys or access control rules
- G06F21/6218—Protecting access to data via a platform, e.g. using keys or access control rules to a system of files or objects, e.g. local or distributed file system or database
- G06F21/6245—Protecting personal data, e.g. for financial or medical purposes
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
- H04L63/0861—Network architectures or network communication protocols for network security for authentication of entities using biometrical features, e.g. fingerprint, retina-scan
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/3226—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials using a predetermined code, e.g. password, passphrase or PIN
- H04L9/3231—Biological data, e.g. fingerprint, voice or retina
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/3236—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials using cryptographic hash functions
-
- G—PHYSICS
- G06—COMPUTING; CALCULATING OR COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F2221/00—Indexing scheme relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F2221/21—Indexing scheme relating to G06F21/00 and subgroups addressing additional information or applications relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F2221/2149—Restricted operating environment
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L2209/00—Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
- H04L2209/76—Proxy, i.e. using intermediary entity to perform cryptographic operations
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L2209/00—Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
- H04L2209/80—Wireless
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/04—Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks
- H04L63/0428—Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
- H04L63/083—Network architectures or network communication protocols for network security for authentication of entities using passwords
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Theoretical Computer Science (AREA)
- Health & Medical Sciences (AREA)
- General Health & Medical Sciences (AREA)
- Computer Hardware Design (AREA)
- General Engineering & Computer Science (AREA)
- Signal Processing (AREA)
- Computer Networks & Wireless Communication (AREA)
- Software Systems (AREA)
- Physics & Mathematics (AREA)
- General Physics & Mathematics (AREA)
- Biomedical Technology (AREA)
- Bioethics (AREA)
- Databases & Information Systems (AREA)
- Medical Informatics (AREA)
- Computing Systems (AREA)
- Life Sciences & Earth Sciences (AREA)
- Biodiversity & Conservation Biology (AREA)
- Storage Device Security (AREA)
- Mobile Radio Communication Systems (AREA)
Abstract
La présente invention concerne un dispositif biométrique mobile et un serveur permettant la validation biométrique d'une personne qui a initialisé un biojeton et qui a communiqué un ou plusieurs codes produits par le biojeton à un serveur sur un canal de communications sécurisé ou non. Le dispositif biométrique, ou biojeton, comprend des moyens qui permettent de capturer des informations biométriques, des moyens de hachage d'une partie des informations biométriques, et des moyens de transmission et affichage d'un code calculé au moyen d'une valeur d'horloge, d'un nombre aléatoire, d'une fonction de hachage sécurisée et d'un compteur. Le serveur comprend des fonctions nécessaires à l'initialisation du dispositif biométrique, au stockage de valeurs clés sensibles à l'initialisation, et à la validation de codes sensibles à une utilisation future du dispositif biométrique après une demande de validation. L'invention se rapporte également à des fonctions et caractéristiques supplémentaires qui permettent de créer un espace d'application sûr, vérifiable et privé sur un dispositif ou une machine, comme un ordinateur ou un téléphone cellulaire, après la validation.
Applications Claiming Priority (5)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
US37713202P | 2002-04-30 | 2002-04-30 | |
US37719202P | 2002-04-30 | 2002-04-30 | |
US60/377,132 | 2002-04-30 | ||
US60/377,192 | 2002-04-30 | ||
PCT/IB2003/003301 WO2003093923A2 (fr) | 2002-04-30 | 2003-04-30 | Systeme et appareil permettant d'authentifier un systeme ou un reseau |
Publications (2)
Publication Number | Publication Date |
---|---|
CA2483989A1 true CA2483989A1 (fr) | 2003-11-13 |
CA2483989C CA2483989C (fr) | 2013-04-09 |
Family
ID=29406780
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CA2483989A Expired - Fee Related CA2483989C (fr) | 2002-04-30 | 2003-04-30 | Systeme et appareil permettant d'authentifier un systeme ou un reseau |
Country Status (4)
Country | Link |
---|---|
EP (1) | EP1506469A2 (fr) |
AU (1) | AU2003247117B2 (fr) |
CA (1) | CA2483989C (fr) |
WO (1) | WO2003093923A2 (fr) |
Families Citing this family (14)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
NO321850B1 (no) * | 2004-06-25 | 2006-07-10 | Buypass As | Fremgangsmate for a generere og verifisere en elektronisk signatur |
US7707622B2 (en) | 2004-11-18 | 2010-04-27 | Biogy, Inc. | API for a system having a passcode authenticator |
US7886155B2 (en) | 2004-12-20 | 2011-02-08 | Biogy, Inc. | System for generating requests to a passcode protected entity |
US8209751B2 (en) | 2004-11-18 | 2012-06-26 | Biogy, Inc. | Receiving an access key |
US7702911B2 (en) | 2004-11-18 | 2010-04-20 | Biogy, Inc. | Interfacing with a system that includes a passcode authenticator |
EP1846830B1 (fr) * | 2004-12-20 | 2020-07-08 | Biogy, Inc. | Clés d'accès |
WO2007036763A1 (fr) * | 2005-09-29 | 2007-04-05 | Clovis Najm | Systeme d'authentification biometrique |
EP1783650B1 (fr) | 2005-10-26 | 2011-01-12 | Swisscom AG | Procédé et système de communication destinés à comparer des données biométriques enregistrées à l'aide de capteurs biométriques avec des données de référence |
EP1868126B1 (fr) * | 2006-06-16 | 2011-08-10 | Thomson Licensing | Dispositif et procédé pour la découverte des clients émulés |
RU2451409C2 (ru) * | 2010-01-26 | 2012-05-20 | Российская Федерация, от имени которой выступает Федеральная служба по техническому и экспортному контролю (ФСТЭК России) | Способ однозначного хэширования неоднозначных биометрических данных |
CN104125070B (zh) * | 2014-07-30 | 2018-05-15 | 中国银行股份有限公司 | 一种用于多个信息交互系统的互信认证方法及系统 |
TWI725696B (zh) | 2020-01-07 | 2021-04-21 | 緯創資通股份有限公司 | 行動裝置、驗證終端裝置及身分驗證方法 |
EP3917103A1 (fr) * | 2020-05-29 | 2021-12-01 | Siemens Aktiengesellschaft | Procédé, système, émetteur et récepteur d'authentification d'un émetteur |
CN111783071B (zh) * | 2020-07-07 | 2024-04-19 | 支付宝(杭州)信息技术有限公司 | 基于密码、基于隐私数据的验证方法、装置、设备及系统 |
Family Cites Families (3)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US7272723B1 (en) * | 1999-01-15 | 2007-09-18 | Safenet, Inc. | USB-compliant personal key with integral input and output devices |
US6507912B1 (en) * | 1999-01-27 | 2003-01-14 | International Business Machines Corporation | Protection of biometric data via key-dependent sampling |
AU2001253795A1 (en) * | 2000-04-26 | 2001-11-07 | Global Transaction Company | Multi-tiered identity verification authority for e-commerce |
-
2003
- 2003-04-30 EP EP03747532A patent/EP1506469A2/fr not_active Withdrawn
- 2003-04-30 CA CA2483989A patent/CA2483989C/fr not_active Expired - Fee Related
- 2003-04-30 WO PCT/IB2003/003301 patent/WO2003093923A2/fr not_active Application Discontinuation
- 2003-04-30 AU AU2003247117A patent/AU2003247117B2/en not_active Ceased
Also Published As
Publication number | Publication date |
---|---|
AU2003247117A1 (en) | 2003-11-17 |
WO2003093923A3 (fr) | 2004-12-23 |
AU2003247117B2 (en) | 2010-01-21 |
EP1506469A2 (fr) | 2005-02-16 |
CA2483989C (fr) | 2013-04-09 |
WO2003093923A2 (fr) | 2003-11-13 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
US9774449B2 (en) | Systems and methods for distributing and securing data | |
US9300649B2 (en) | Context sensitive dynamic authentication in a cryptographic system | |
CA2463286C (fr) | Systeme d'authentification multifactorielle | |
US9189777B1 (en) | Electronic commerce with cryptographic authentication | |
US20150135301A1 (en) | Method of and system for encryption and authentication | |
AU2016311166B2 (en) | System and method for biometric protocol standards | |
CA2483989C (fr) | Systeme et appareil permettant d'authentifier un systeme ou un reseau | |
WO2007036763A1 (fr) | Systeme d'authentification biometrique | |
AU2014240194B2 (en) | Systems and methods for distributing and securing data |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
EEER | Examination request | ||
MKLA | Lapsed |
Effective date: 20150430 |
|
MKLA | Lapsed |
Effective date: 20150430 |