US2010299729A1PendingUtilityA1

Server Computer Issued Credential Authentication

Assignee: APPLE INCPriority: Dec 24, 2003Filed: Apr 21, 2010Published: Nov 25, 2010
Est. expiryDec 24, 2023(expired)· nominal 20-yr term from priority
H04L 63/0428G06F 21/33H04L 63/08G06F 2221/2129
43
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

Methods and systems for authenticating computers is disclosed. The methods and system include issue a credential from a first computer to a second computer. When the second computer authenticates to the first computer, the second computer transmits the credential and a first challenge to the first computer. The first computer determines whether the credential is valid, computes a first response to the first challenge, and generates a second challenge. The first computer transmits the first response and the second challenge to the second computer. The second computer determines whether the first response is valid and computes a second response to the second challenge. The second computer transmits the second response to the first computer in order to verify and authenticate the computers.

Claims

exact text as granted — not AI-modified
1 . A method for authenticating a computer, the method comprising the following steps:
 issuing a credential from a first computer to a second computer;   transmitting said credential and a computer challenge from the second computer to the first computer when the second computer is to be authenticated;   transmitting a response to said computer challenge from said first computer to said second computer; and   verifying said response with said second computer in order to authenticate and verify said computers.   
     
     
         2 . The method of  claim 1 , wherein the challenge is a random number generated by the second computer and the first computer computes the response to the challenge by performing a predetermined function on the random number. 
     
     
         3 . The method of  claim 2 , wherein the second computer determines whether the first computer response is valid by performing the predetermined function on the random number and comparing the result to the response. 
     
     
         4 . The method of  claim 3 , wherein the predetermined function is a hash function. 
     
     
         5 . The method of  claim 1 , wherein the second computer establishes a connection with the first computer when the response is valid. 
     
     
         6 . The method of  claim 1 , wherein the first computer issues a credential with a time limit and the first computer determines whether the credential transmitted from the second computer is valid by determining the expiration time of the credential. 
     
     
         7 . A system for authenticating a computer, the system comprising:
 a first computer; and   a second computer in communication with the first computer;   wherein the first computer and the second computer are configured to execute the following instructions:
 issue a credential from the first computer to the second computer; 
 transmit the credential and a challenge from the second computer to the first computer when the second computer is to be authenticated; 
 transmit a response to the challenge from the first computer to the second computer; and 
 verify the response with the second computer in order to authenticate and verify the computers. 
   
     
     
         8 . The system of  claim 7 , wherein the second computer is configured to generate a challenge that is a random number and the first computer is configured to generate a response to the challenge by performing a predetermined function on the random number. 
     
     
         9 . The system of  claim 8 , wherein the second computer is configured to determine whether the response is valid by performing the predetermined function on the random number and comparing the result to the response. 
     
     
         10 . The system of  claim 9 , wherein the predetermined function is a hash function. 
     
     
         11 . The system of  claim 7 , wherein the second computer establishes a connection with the first computer when the response is valid. 
     
     
         12 . The system of  claim 7 , wherein the first computer issues a credential with a time limit and the first computer determines whether the credential transmitted from the second computer is valid by determining the expiration time of the credential. 
     
     
         13 . A computer-readable medium containing a program with instructions that execute the following procedure:
 issue a credential from a first computer to a second computer;   generate a first challenge with the second computer;   transmit the credential and the first challenge from the second computer to the first computer;   determine with the first computer whether the credential is valid;   compute a first response to the first challenge and generate a second challenge with the first computer;   transmit the first response and the second challenge from the first computer to the second computer;   determine with the second computer whether the first response is valid to verify the first computer;   compute a second response to the second challenge with the second computer;   transmit the second response from the second computer to the first computer; and   determine with the first computer whether the second response is valid to verify and authenticate the computers.   
     
     
         14 . The computer-readable medium of  claim 13  having instructions for the second computer to encrypt the credential before transmitting the credential to the first computer. 
     
     
         15 . The computer-readable medium of  claim 13  having instructions for the second computer to generate the first challenge that is a random number and the first computer computes a first response to the first challenge by performing a predetermined function on the random number. 
     
     
         16 . The computer-readable medium of  claim 15 , wherein the second computer determines whether the first response is valid by performing the predetermined function on the random number and comparing the result to the first response. 
     
     
         17 . The computer-readable medium of  claim 16 , wherein the predetermined function is a hash function. 
     
     
         18 . The computer-readable medium of  claim 13  having instructions for the first computer to generate a second challenge that is a random number and the second computer computes a second response to the second challenge by performing a predetermined function on the random number. 
     
     
         19 . The computer-readable medium of  claim 18 , wherein the first computer determines whether the second response is valid by performing the predetermined function on the random number and comparing the result to the second response. 
     
     
         20 . The computer-readable medium of  claim 19 , wherein the predetermined function is a hash function.

Join the waitlist — get patent alerts

Track US2010299729A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.