Nova Patents
SE539271C2

Mutual authentication

Abstract

This record has no abstract on file.

SE539271C2, drawing sheet 1
Sheet 1 of 16

Term

No projected expiry on record.

  1. Priority and filed
  2. Granted
  3. Today

7 claims: 2 independent, 5 dependent

  1. 1
    CLAIMS 1. A system (300) comprising a first terminal (100a), a second terminal (110b) and a server (340), wherein the first terminal (100a) is configured to authenticate the server (340) by:generating a first authentication token (AT), being a data structure to be used for authenticating a first computing device (100a, 100b, 340), such as a terminal (100), to a second computing device (100a, 100b, 340), such as a server (340);and sending the first authentication token (AT) to the server (340), wherein the server (340) is configured for: receiving the first authentication token (AT) and authenticate it;generating a second authentication token (AT) for the first terminal (100a) and send the second authentication token (AT) to the first terminal (100a);whereby the first terminal (100a) is configured for: receiving the second authentication token (AT) and authenticate it, thereby performing a mutual authentication of the first terminal (100a) and the server (340), wherein the server (340) is further configured for: generating a third authentication token (AT) for the second terminal (100b) and send the third authentication token (AT) to the first terminal (100a), whereby the first terminal (100a) is further configured for: receiving the third authentication token (AT) and sending it to the second terminal (100b), whereby the second terminal (100b) is configured for: receiving and authenticating the third authentication token (AT) thereby performing an authentication of the server (340) and the first terminal (100a), 539 271 wherein the second terminal (100b) is configured to further authenticate the server (340) by: generating a fourth authentication token (AT);and sending the fourth authentication token (AT) to the server (340);wherein the server (340) is further configured for: receiving the fourth authentication token (AT) and authenticate it;generating a fifth authentication token (AT) for the second terminal (100b);and sending the fifth authentication token (AT) to the second terminal (100b), and whereby the second terminal (100b) is configured for: receiving the fifth authentication token (AT) and authenticate it, thereby performing a mutual authentication of the second terminal (100b) and the server (340).
  2. 6
    A method for use in a system (300) comprising a first terminal (100a), a second terminal (110b) and a server (340), wherein the method is for authenticating the server (340) by:the first terminal (100a) generating a first authentication token (AT), being a data structure to be used for authenticating a first computing device (100a, 100b, 340), such as a terminal (100), to a second computing device (100a, 100b, 340), such as a server (340);and the first terminal (100a) sending the first authentication token (AT) to the server (340);the server (340) receiving the first authentication token (AT) and authenticate it;the server (340) generating a second authentication token (AT) for the first terminal (100a);the server (340) sending the second authentication token (AT) to the first terminal (100a), the first terminal (100a) receiving the second authentication token (AT) and authenticating it, thereby performing a mutual authentication of the first terminal (100a) and the server (340);the server (340) generating a third authentication token (AT) for the second terminal (100b) and sending the third authentication token (AT) to the first terminal (100a);the first terminal (100a) receiving the third authentication token (AT) and sending the third authentication token (AT) to the second terminal (100b);and the second terminal (100b) receiving and authenticating the third authentication token (AT) thereby performing an authentication of the server (340) on behalf of the first terminal (100a);539 271 the second terminal (100b) generating a fourth authentication token (AT) and sending the fourth authentication token (AT) to the server (340);the server (340) receiving the fourth authentication token (AT) and authenticate it;5 the server (340) generating a fifth authentication token (AT) for the second terminal (100b) and sending the fifth authentication token (AT) to the second terminal (100b), and the second terminal (100b) receiving the fifth authentication token (AT) and authenticate it, thereby performing a mutual authentication of the second terminal 10 (100b) and the server (340).