Invention Grant
- Patent Title: Password-based authentication
-
Application No.: US15042241Application Date: 2016-02-12
-
Publication No.: US10250591B2Publication Date: 2019-04-02
- Inventor: Jan Leonhard Camenisch , Anja Lehmann , Gregory Neven
- Applicant: International Business Machines
- Applicant Address: US NY Armonk
- Assignee: International Business Machines Corporation
- Current Assignee: International Business Machines Corporation
- Current Assignee Address: US NY Armonk
- Agency: Harrington & Smith
- Main IPC: H04L9/32
- IPC: H04L9/32 ; H04L29/06 ; H04L9/00 ; H04L9/06 ; H04L9/08

Abstract:
A system has λ≥2 servers. At least each of a set of authentication servers stores a key-share ski of secret key sk, shared between q of the λ servers, of a key-pair (pk, sk). An access control server sends an authentication value to a subset of the authentication servers. The authentication value was formed using a predetermined function of a first ciphertext for a user ID and a second ciphertext produced by encrypting a password attempt under public key pk using a homomorphic encryption algorithm. The authentication value decrypts to a predetermined value if the password attempt equals the user password for that user ID. Each authentication server in the subset produces a decryption share dependent on the authentication value using the key-share ski. The access control server uses decryption shares to determine if the authentication value decrypts to the predetermined value, if so permitting access to a resource.
Public/Granted literature
- US20170237725A1 Password-Based Authentication Public/Granted day:2017-08-17
Information query