Invention Grant
- Patent Title: Unattended authentication in HTTP using time-based one-time passwords
-
Application No.: US17351557Application Date: 2021-06-18
-
Publication No.: US11750597B2Publication Date: 2023-09-05
- Inventor: Mauro Marzorati , Seda Ozses , Barbara K. Smith , Cindy J Mullen
- Applicant: KYNDRYL, INC.
- Applicant Address: US NY New York
- Assignee: Kyndryl, Inc.
- Current Assignee: Kyndryl, Inc.
- Current Assignee Address: US NY New York
- Agency: Calderon Safran & Cole, P.C.
- Agent Erik Swanson; Andrew M. Calderon
- Main IPC: H04L9/40
- IPC: H04L9/40 ; H04L67/02

Abstract:
In an approach to unattended authentication in HTTP using time-based one-time passwords, a request is received from a client for a Hypertext Transfer Protocol (HTTP) authentication on a server. A challenge is sent to the client, where the challenge includes a header that indicates that a Time-based One-time Password (TOTP) is to be used for the HTTP authentication. A first response is received from the client based on a first TOTP value and a shared secret, wherein the first response is encoded based on an encoding mechanism included in the header. Responsive to validating the first TOTP value and the shared secret from the client, the client is authenticated.
Public/Granted literature
- US20220407851A1 UNATTENDED AUTHENTICATION IN HTTP USING TIME-BASED ONE-TIME PASSWORDS Public/Granted day:2022-12-22
Information query