IDENTIFICATION AND/OR AUTHENTICATION SYSTEM AND METHOD

The present invention relates to an authentication method which allows a user having a personal electronic device (PED) to authenticate, register or login to a recipient system. Upon interacting with the recipient system, the user is prompted for his unique token ID. The recipient system generates a...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: Vantaggiato, Daniele, Pirrwitz, Bjoern
Format: Patent
Sprache:eng ; fre ; ger
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:The present invention relates to an authentication method which allows a user having a personal electronic device (PED) to authenticate, register or login to a recipient system. Upon interacting with the recipient system, the user is prompted for his unique token ID. The recipient system generates a one-time password (OTP) and sends it to the authentication server together with the token ID and may, in addition, request user's information. The authentication server sends an authentication request to the user's PED including the OTP, which prompts the user for a decision to proceed or not. The user, may decide to proceed with authentication, upon which the PED sends to the recipient system the OTP and a random password created by a previous handshake between recipient system and PED, (RP) stored in the PED, the recipient system authenticating the user thereby by comparing the OTP generated and received and the RP stored and received. If user information was requested, it will be provided to the recipient system together with the authentication data, i.e. the OTP and the RP.