The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Nov. 03, 2015

Filed:

Sep. 29, 2011
Applicants:

Gregory B. Roth, Seattle, WA (US);

Bradley Jeffery Behm, Seattle, WA (US);

Eric D. Crahen, Seattle, WA (US);

Cristian M. Ilac, Sammamish, WA (US);

Nathan R. Fitch, Seattle, WA (US);

Eric Jason Brandwine, Haymarket, VA (US);

Kevin Ross O'neill, Seattle, WA (US);

Inventors:

Gregory B. Roth, Seattle, WA (US);

Bradley Jeffery Behm, Seattle, WA (US);

Eric D. Crahen, Seattle, WA (US);

Cristian M. Ilac, Sammamish, WA (US);

Nathan R. Fitch, Seattle, WA (US);

Eric Jason Brandwine, Haymarket, VA (US);

Kevin Ross O'Neill, Seattle, WA (US);

Assignee:

Amazon Technologies, Inc., Seattle, WA (US);

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
H04L 9/32 (2006.01); H04L 9/08 (2006.01); G06F 21/31 (2013.01); H04L 29/06 (2006.01);
U.S. Cl.
CPC ...
H04L 9/0891 (2013.01); G06F 21/31 (2013.01); H04L 9/083 (2013.01); H04L 9/088 (2013.01); H04L 9/3247 (2013.01); H04L 63/08 (2013.01); G06F 2221/2115 (2013.01); H04L 2209/38 (2013.01); H04L 2463/061 (2013.01);
Abstract

Systems and methods for authentication generate keys from secret credentials shared between authenticating parties and authenticators. Generation of the keys may involve utilizing specialized information that, as a result of being used to generate the keys, renders the generated keys usable for a smaller scope of uses than the secret credential. Further, key generation may involve multiple invocations of a function where each of at least a subset of the invocations of the function results in a key that has a smaller scope of permissible use than a key produced from a previous invocation of the function. Generated keys may be used as signing keys to sign messages. One or more actions may be taken depending on whether a message and/or the manner in which the message was submitted complies with restrictions of the a key's use.


Find Patent Forward Citations

Loading…