Invention Grant
US09363259B2 Performing client authentication using onetime values recovered from barcode graphics
有权
使用从条形码图形恢复的一次性值执行客户端身份验证
- Patent Title: Performing client authentication using onetime values recovered from barcode graphics
- Patent Title (中): 使用从条形码图形恢复的一次性值执行客户端身份验证
-
Application No.: US13900929Application Date: 2013-05-23
-
Publication No.: US09363259B2Publication Date: 2016-06-07
- Inventor: Srinivas Chenna
- Applicant: SYMANTEC CORPORATION
- Applicant Address: US CA Mountain View
- Assignee: SYMANTEC CORPORATION
- Current Assignee: SYMANTEC CORPORATION
- Current Assignee Address: US CA Mountain View
- Agency: Patterson & Sheridan, LLP
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L9/32 ; G09C5/00

Abstract:
Techniques are disclosed for authenticating users accessing computing applications, e.g., applications hosted in a cloud environment accessed using a variety of computing systems. As disclosed, an authentication process is performed using a certificate and private key installed on a mobile device and a nonce generated on the server. To authenticate a user, a server generates a nonce, encrypts the nonce with a public key associated with the user, and encodes the encrypted nonce in a barcode graphic (e.g., a QR code). The resulting barcode graphic is displayed to the user, and a mobile device scans the barcode graphic to recover the encrypted nonce. The encrypted nonce is decrypted using a private key stored on the mobile device. The clear text nonce is then displayed on the screen of the mobile device and used as a one-time password (OTP) for authentication.
Public/Granted literature
- US20140351589A1 PERFORMING CLIENT AUTHENTICATION USING ONETIME VALUES RECOVERED FROM BARCODE GRAPHICS Public/Granted day:2014-11-27
Information query