The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
May. 14, 2019

Filed:

Jun. 13, 2016
Applicant:

Emc Corporation, Hopkinton, MA (US);

Inventor:

Salah Machani, Toronto, CA;

Assignee:

EMC IP Holding Company LLC, Hopkinton, MA (US);

Attorney:
Primary Examiner:
Assistant Examiner:
Int. Cl.
CPC ...
G06F 21/45 (2013.01); H04L 9/08 (2006.01); H04L 29/06 (2006.01);
U.S. Cl.
CPC ...
G06F 21/45 (2013.01); H04L 9/085 (2013.01); H04L 9/0894 (2013.01); H04L 63/0428 (2013.01); H04L 63/083 (2013.01); H04L 63/0861 (2013.01); H04L 2463/082 (2013.01);
Abstract

New techniques are disclosed for protecting a token seed in a multifactor authentication system. A personal identification number is used to derive a fixed share, and the token seed is split, using a secret sharing technique, into a set of three shares made up of the fixed share, a remote share, and a local share, such that the token seed can only be reconstructed using any two of the three shares. The remote share is stored on a remote authentication server, and an encrypted version of the local share is stored on the user device. The remote share may be encrypted by performing a key wrapping operation on the remote share using the local share, and then storing the encrypted version of the remote share on the remote authentication server. The token seed, fixed share, remote share and local share may then be deleted from the user device.


Find Patent Forward Citations

Loading…