Authenticating security parameters

US9503462B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-9503462-B2
Application numberUS-67290007-A
CountryUS
Kind codeB2
Filing dateFeb 8, 2007
Priority dateFeb 8, 2007
Publication dateNov 22, 2016
Grant dateNov 22, 2016

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

A method for authenticating communicating parties is disclosed. In the method biometric information associated with a first party is generated based on a recording of the first party presenting a predefined input parameter. Said biometric information may then be transmitted to a second party. Authenticity of a security parameter associated with the first party can then be verified based on said biometric information.

First claim

Opening claim text (preview).

We claim: 1. A method, comprising: receiving a first media clip by a first processor, wherein the first media clip comprises a pre-recorded biometric rendering of biometric information associated with a personal feature of a first party based on a recording of the first party presenting a predefined input parameter; verifying, via the first processor, the first media clip to authenticate a security parameter associated with the first party, wherein the first processor automatically verifies the first media clip based on the biometric information associated with the personal feature of the first party; and, subsequent to a positive verification by the first processor of the authenticity of the security parameter associated with the first party: generating a second media clip from a biometric rendering of biometric information associated with a personal feature of a second party based on a recording of the second party resenting a second predefined input parameter; sending said second media clip to the first party; receiving said second media clip by a second processor; and verifying, via the second processor, the second media clip to authenticate a security parameter received from the second party, wherein the second processor automatically verifies the second media clip based on the biometric information associated with the personal feature of the second party. 2. The method as claimed in claim 1 , wherein the predefined input parameter comprises at least one of a public key, a Diffie-Hellman parameter, a random challenge, a time indication, a value provided by a combination of random values generated by the first party and the second party, a shared key, a message authentication code, and a dictionary identifier. 3. The method as claimed in claim 1 , comprising sending the first media clip in a message also comprising the security parameter, the security parameter being provided by at least one of a public key, a Diffie-Hellman parameter, a random challenge and a time indication. 4. The method as claimed in claim 1 , wherein the first media clip comprises at least one of an audio clip and a video clip. 5. The method as claimed in claim 1 , comprising using the first media clip as a signature of the security parameter. 6. The method as claimed in claim 1 , wherein the predefined input parameter comprises at least one of an identity function, a hash function and a short range one-way hash function. 7. The method as claimed in claim 1 , wherein the sending comprises sending a function for converting the first media clip into a format suitable for presentation by a user interface of the second party. 8. The method as claimed in claim 1 , comprising: applying a hash commitment procedure to communications between the first party and the second party; and sending at least one of a check string and a random value in association with said biometric information between the first party and the second party. 9. The method as claimed in claim 1 , wherein the verifying comprises verifying the authenticity of at least one key during an initial key agreement stage. 10. The method as claimed in claim 1 , comprising: agreeing at least one shared security parameter between the parties, and using the agreed security parameter in communications between the first party and the second party, wherein the verifying comprises verifying the authenticity of at least one security parameter subsequent said agreeing of at least one shared security parameter. 11. The method as claimed in claim 1 , comprising communicating the first media clip to the second party in response to a request for verification. 12. The method as claimed in claim 1 , wherein the generation comprises generation of the first media clip using arbitrary dictionaries. 13. The method as claimed in claim 1 , comprising selection of a dictionary, generating the first media clip by taking the selection in to account, and communicating information about the selection between the parties along with the first media clip. 14. An apparatus, comprising: a recording device configured to generate a first media clip from a biometric rendering of biometric information associated with a personal feature of a user thereof based on a presentation by the user of a predefined input parameter, wherein the first media clip is recorded prior to sending the first media clip for verification; and an interface configured to send the first media clip for use for verifying the media clip to authenticate, by a first processor, of a security parameter associated with the user, wherein the processor receives and automatically verifies the first media clip based on the biometric information associated with the personal feature of the first party, and wherein, subsequent to a positive verification by the first processor of the authenticity of the security parameter associated with the first party a second media clip is generated from a biometric rendering of biometric information associated with a personal feature of a second party based on a recording of the second party presenting a second predefined input parameter, said second media clip is sent to the first party, said second media clip is received by a second processor, and, via the second processor, the second media clip verified to authenticate a security parameter received from the second party, wherein the second processor automatically verifies the second media clip based on the biometric information associated with the personal feature of the second party. 15. The apparatus of claim 14 , wherein the predefined input parameter comprises at least one of a public key, a Diffie-Hellman parameter, a random challenge, a time indication, a value provided by a combination of random values, a shared key, a message authentication code, and a dictionary identifier. 16. The apparatus as claimed in claim 14 , configured to send the first media clip in a message comprising at least one of a public key, a Diffie-Hellman parameter, a random challenge and a time indication. 17. The apparatus of claim 14 , wherein the recording device comprises at least one of a digital camera, a digital video camera, a digital voice recorder and a handwriting recognition device. 18. The apparatus of claim 14 , comprising: an interface configured to receive a second media clip generated from a biometric rendering of biometric information associated with a personal feature of a second party; and a processor configured to verify the second media clip to authenticate a security parameter associated with the second party. 19. The apparatus of claim 14 , comprising: an interface configured to receive messages containing a security parameter and a second media clip generated from a biometric rendering of biometric information associated with a personal feature of a second party; a user interface; and a controller configured to present, via the user interface, at least one of audio presentations and video presentations based on the biometric information. 20. An apparatus, comprising: an interface configured to receive a first media clip transmittable over a communication network and generated from a biometric rendering of biometric information associated with a personal feature of a first party, the biometric information being based on a presentation by the first party of a predefined input parameter, wherein the first media clip is recorded prior to the transmission over the communication network; and a first processor configured to receive and verify the first medi

Assignees

Inventors

Classifications

  • H04L63/126Primary

    the source of the received data · CPC title

  • Countermeasures against malicious traffic (countermeasures against attacks on cryptographic mechanisms H04L9/002) · CPC title

  • using biometrical features, e.g. fingerprint, retina-scan (cryptographic mechanisms or cryptographic arrangements for entity authentication using biological data H04L9/3231) · CPC title

  • for achieving mutual authentication (cryptographic mechanisms or cryptographic arrangements for mutual authentication H04L9/3273) · CPC title

  • using biometric data, e.g. fingerprints, iris scans or voiceprints · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US9503462B2 cover?
A method for authenticating communicating parties is disclosed. In the method biometric information associated with a first party is generated based on a recording of the first party presenting a predefined input parameter. Said biometric information may then be transmitted to a second party. Authenticity of a security parameter associated with the first party can then be verified based on said…
Who is the assignee on this patent?
Asokan Nadarajah, Krishnamurthi Govind, Chan Tat, and 1 more
What technology area does this patent fall under?
Primary CPC classification H04L63/126. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Nov 22 2016 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 8 related publications on this page (citations in our corpus or others sharing the same primary CPC).