Nova Patents
EP1104960A1

Message authentication

Abstract

For the authentication of messages communicated in a distributed system from an originator to a destination a keyed-hashing technique is used according to which data to be authenticated is concatenated with a private (secret) key and then processed to the cryptographic hash function. The data are transmitted together with the digest of the hash function from the originator to the destination. The data comprises temporal validity information representing the temporal validity of the data. For example the setup key of a communication is therefore only valid within a given time interval that is dynamically defined by the communication originator. After the time interval is exceeded the setup key is invalid and cannot be reused again.

EP1104960A1, drawing sheet 1
Sheet 1 of 4

Term

Term ended

Projected expiry passed 2 December 2019, 6.8 years ago.

  1. Priority and filed
  2. Published
  3. Projected expiry
  4. Today

19 claims: 8 independent, 11 dependent

  1. 1
    Method for the authentication of data communicated from a originator to a destination, wherein a keyed hashing technique is used, according to which data to be authenticated is concatenated with a private key and then processed with a cryptographic hash function, and the data are transmitted together with the digest of the hash function from the originator to the destination, characterized in that the data comprises temporal validity information representing the temporal validity of the data.
  2. 3
    Method according to anyone of the preceding claims, characterized in that the data comprises random data which are unique for a time span defined by the temporal validity information.
  3. 4
    Method according to anyone of the preceding claims, characterized in that the data is a login key for a communication setup and/or a message.
  4. 5
    Method for the authenticated transmission of messages, comprising the following communication setup steps:- generating a login key by a keyed-hashing method on the basis of random data, temporal validity information and a private key, - transmitting the login key from an originator to a destination, and - verifying the authenticity and the temporal validity of the login key on the basis of the keyed hashing digest on the destination side.
  5. 10
    Software program product, characterized in that it implements, when loaded into a computing device of a distributed system, a method according to anyone of the preceding claims.
  6. 11
    Distributed system for communicating authenticated data from a originator to a destination, designed for a keyed hashing technique according to which data to be authenticated is concatenated with a private key and then processed with a cryptographic hash function, and the data are transmitted together with the digest of the hash function from the originator to the destination, characterized in that the data comprises temporal validity information representing the temporal validity of the data.
  7. 14
    Distributed system according to anyone of claims 11 to 13, characterized in that the data is a login key for a communication setup and/or a message.
  8. 15
    Distributes system for the authenticated transmission of messages, comprising:- an originator designed to generate a login key by a keyed-hashing method on the basis of random data, temporal validity information and a private key, - a network for transmitting the login key from the originator to a destination, wherein the destination is designed to verify the authenticity and the temporal validity of the login key on the basis of the keyed hashing digest.