EP0484686A2

Secure communications system for remotely located computers.

Abstract

A system for determining when a remote computer user is authorized to communicate with a host computer and to establish a ciphering key to be used for the communications session. A random number is generated at the host computer, ciphered under the user's PIN, and sent to the remote user where it is deciphered under the PIN to provide a session key. In one embodiment, this key is reciphered under the PIN, sent to the host computer, and deciphered under the PIN. The deciphered value is equal to the generated random number when the correct PIN's are used, thereby validating the user. In another embodiment, the deciphered random number at the remote user location is used as a key to cipher the PIN which is sent to the host, deciphered under the random number, and compared with the PIN existing at the host. Subsequent ciphering can use the determined session key as a ciphering key. Additional security can be realized by adding random digits to the PIN, masking some of the developed keys, and sending the user ID to the host in ciphered form. This system does not require a stored key in the remote computer or the transfer in the clear of the PIN between computers.

EP0484686A2, drawing sheet 1
Sheet 1 of 7

Term

Term ended

Projected expiry passed 9 October 2011, 15 years ago.

  1. Priority
  2. Filed
  3. Published
  4. Projected expiry
  5. Today

25 claims: 6 independent, 19 dependent

  1. 1
    A security system for validating the authority of a remote user to communicate with a host device, said system comprising:means at the host device for storing user ID and personal identification number (PIN) information;means at the host device for providing a non-predetermined signature value;means at the host device for ciphering the signature value under a first key value which is dependent upon at least a portion of the stored ID and PIN information, and which preferably is formed by concatenating the user ID and PIN information at the host device;means for sending the ciphered signature value across a communications channel to the remote user;means at the remote user location for deciphering the ciphered signature value received from the host device under a second key value which is equal to said first key value and derived from the same information as said first key value, and which preferably is formed by concatenating the user ID and PIN information at the user location;means at the remote user location for ciphering the deciphered signature value under a third key value and for sending the ciphered signature value to the host device;and validation means at the host device for deciphering the ciphered signature value received from the remote user location and for determining if the deciphered signature value is equal to the signature value originally provided by the host device.
  2. 12
    A method of establishing a common ciphering key at two different communicating locations, said method including the steps of:generating a non-predetermined number at a first of said locations which is used to establish a session key at that location;ciphering the session key at said first location under a first key dependent at least upon a confidential user code known at said first location;transferring the ciphered session key to the second location;deciphering the ciphered session key under a second key which is dependent at least upon said confidential user code which is also known at said second location;reciphering the session key at the second location under a third key dependent at least upon the confidential user code known at said second location;transferring the reciphered session key to the first location;deciphering the reciphered session key under a fourth key dependent at least upon said confidential user code known at said first location;and comparing the deciphered session key at the first location with the established session key at the same location and, when they are equal, using the session key existing at both locations as a common ciphering key in any subsequent ciphering functions during the remainder of the session.
  3. 16
    The ciphering key establishing method of anyone of claims 12 to 15 including the step of concatenating the randomized confidential user code with the user ID in the formation of the third key, and preferably masking the result of the concatenation according to the masking information included in the generated session key established at the first location.
  4. 17
    The ciphering key establishing method of anyone of claims 12 to 16 including the step of forming the fourth key from a combination of the user ID and the confidential user code with the possible one or more random digits added, and preferably masking the value used to form the fourth key according to the masking information included in the generated session key established at the first location.
  5. 18
    A method for a remote user to establish secure communications with a host device, said method including the steps of:receiving a ciphered session key from the host device;deciphering the ciphered session key to provide a session key, said deciphering being under a key formed from at least a confidential user code known by the remote user;reciphering the session key under another key formed from at least the confidential user code;and sending the reciphered session key to the host device for validation;and wherein preferably said deciphered session key is used for subsequent ciphering functions by the remote user during the remainder of the session.
  6. 22
    A method for a host device to establish secure communications with a remote user, said method including the steps of:generating a non-predetermined number which is used in forming a session key for the secure communications;ciphering the session key under a key which is formed from at least a confidential user code for the remote user, said user code being known by the host device;sending the ciphered session key to the remote user for processing;receiving a reciphered session key from the remote user;deciphering the reciphered session key under another key formed from at least said confidential user code known by the host device;and determining if the formed and the deciphered-reciphered session key are equal.