Nova Patents
EP0246823A2

Data communication systems and methods.

Abstract

In order to improve the security of message transmission from a terminal apparatus 1 in a communications system a check-sum or MAC is computed from the data within the message in dependence upon a cryptographic key (KEY 1). This MAC is issued as a "challenge" to a user who is also equipped with a separate portable token 2 for computing a "response" in dependence upon a second cryptographic key (KEY 2) which is unique to his token. This "response" is then entered into the terminal 1 and appended to the message as its authentication code before transmission. A recipient of the message and authentication code equipped with the same cryptographic keys can therefore check both the contents of the message and the correct identity of the sender by computing an expected authentication code from the received message and comparing it with the code received.

EP0246823A2, drawing sheet 1
Sheet 1 of 2

Term

Term ended

Projected expiry passed 15 May 2007, 19.4 years ago.

  1. Priority
  2. Filed
  3. Published
  4. Projected expiry
  5. Today

9 claims: 2 independent, 7 dependent

  1. 1
    A method of secure message transmission from a terminal apparatus (1) to a remote receiving station in a communications system, which involves appending to a message to be transmitted an authentication code the value of which depends upon both the information in the message and information representing the identity of the sender, characterized in that the authentication code is produced by a method comprising the steps of:computing within the terminal apparatus (1) a first code the value of which depends upon the information within the message;issuing that code to the sender;computing a second code from said first code and information representing the identity of the sender, within a token (2) assigned to the sender and which can be actuated to perform this computation only upon recognition of a correct input indicative of the authority of the sender;and entering said second code into the terminal apparatus (1), that code or a derivative thereof constituting the authentication code.
  2. 8
    Apparatus for secure message transmission to a remote receiving station in a communications system, by a method which involves appending to a message to be transmitted an authentication code the value of which depends upon both the information in the message and information representing the identity of the sender, characterized by a terminal apparatus (1) adapted to compute a first code the value of which depends upon the information within the message and to issue that code to the sender;and a token (2) assigned to the sender which is adapted to compute a second code from said first code and information representing the identity of the sender and which can be activated to perform this computation only upon recognition of a correct input indicative of the authority of the-sender;the terminal apparatus (1) also being adapted to receive said second code and append that code or a derivative thereof to the message as said authentication code.