18393479. TLS-BASED AUTHENTICATION METHOD WITHOUT INTERVENTION OF CERTIFICATE AUTHORITY simplified abstract (ELECTRONICS AND TELECOMMUNICATIONS RESEARCH INSTITUTE)

From WikiPatents
Jump to navigation Jump to search

TLS-BASED AUTHENTICATION METHOD WITHOUT INTERVENTION OF CERTIFICATE AUTHORITY

Organization Name

ELECTRONICS AND TELECOMMUNICATIONS RESEARCH INSTITUTE

Inventor(s)

Daegeun Yoon of Daejeon (KR)

TLS-BASED AUTHENTICATION METHOD WITHOUT INTERVENTION OF CERTIFICATE AUTHORITY - A simplified explanation of the abstract

This abstract first appeared for US patent application 18393479 titled 'TLS-BASED AUTHENTICATION METHOD WITHOUT INTERVENTION OF CERTIFICATE AUTHORITY

The abstract describes a transport layer security (TLS)-based authentication method that involves receiving a certificate for TLS authentication from a certificate authority, transmitting a delegated request to a delegated entity, receiving a public key from the delegated entity, generating delegated data and proof data based on the public key, storing the proof data, and transmitting the certificate and delegated data back to the delegated entity.

  • Simplified Explanation:

- A method for TLS-based authentication involving certificate issuance, delegation, public key generation, data generation, proof data generation, storage, and transmission.

  • Key Features and Innovation:

- Utilizes TLS for secure authentication. - Involves delegation of requests to a separate entity. - Generates public-private key pairs for secure communication. - Stores proof data for verification purposes. - Enhances security and authentication processes.

  • Potential Applications:

- Secure authentication in web servers. - Secure communication between entities. - Enhanced data protection in online transactions.

  • Problems Solved:

- Vulnerabilities in traditional authentication methods. - Lack of secure communication channels. - Risk of data breaches and unauthorized access.

  • Benefits:

- Improved security and authentication processes. - Enhanced data protection and privacy. - Secure communication between entities.

  • Commercial Applications:

- Secure authentication solutions for online platforms. - Data protection services for businesses. - Secure communication tools for sensitive information exchange.

  • Questions about TLS-based authentication:

1. How does TLS enhance security in authentication processes? TLS provides encryption and secure communication channels, reducing the risk of data breaches and unauthorized access.

2. What are the potential drawbacks of delegating authentication requests to a separate entity? Delegating requests may introduce additional points of failure or security vulnerabilities if not implemented properly.


Original Abstract Submitted

A transport layer security (TLS)-based authentication method according to the present invention includes: receiving, in a web server, a certificate for TLS authentication issued from a certificate authority on a web server; transmitting a delegated request from the web server to a delegated entity; receiving, in the web server, a public key among a public key-private key pair generated by the delegated entity in response to the delegated request; generating, in the web server, delegated data based on the public key; generating, in the web server, delegated proof data of the same version as the delegated data; storing, in the web server, the delegated proof data in a delegated proof data storage; and transmitting the certificate and delegated data from the web server to the delegated entity.