PatentFIZZ™

Open source post grant review

United States Patent No. 5,511,122

Intermediate network authentication

Inventor(s): Atkinson; Randall (Annandale, VA)

Issued on: April 23, 1996
Filed on: June 3, 1994
Application No.: 08/254,087
FIZZ another patent document

patents: n,nnn,nnn or nnnnnnn
(7 digits)

publications: nnnnnnnnnnn
(11 digits)

Intermediate network authentication


Nickname - none received yet. Care to suggest one?


An internetwork authentication method is provided for verifying a sending host by a receiving host or an intermediate router or gateway. The method comprises the steps of: obtaining a network address and a public key of a receiving host; utilizing the public key from the receiving host in combination with a private key of the originating host to generate a cryptographic signature; transmitting the signature along with data through a first subnetwork in at least one packet; receiving at least one packet at the receiving host; and the receiving host utilizing a private key of said receiving host site and a public key of said originating host to verify said cryptographic signature.

GotRenewables? - Track the latest developments in renewable energy

What is claimed is:

1. A method for authenticating an originating host at a receiving host, said method comprising the steps of:

(a) obtaining a network address and a public key of said receiving host;

(b) utilizing said public key from said receiving host in combination with a private key from said sending host to generate a cryptographic signature;

(c) transmitting said cryptographic signature along with data through a first subnetwork in at least one packet;

(d) receiving said at least one packet at said receiving host; and

(e) said receiving host utilizing a private key of said receiving host and a public key of said originating host to verify said cryptographic signature.

2. The method recited in claim 1 wherein an asymmetric algorithm is used to generate said cryptographic signature.

3. The method recited in claim 2 wherein said asymmetric algorithm is an RSA digital signature algorithm.

4. A method for authentication of an originating host at a receiving host site and one or more intermediate routers, said method comprising the steps of:

(a) obtaining a network address for said receiving host;

(b) utilizing a private key from said originating host to generate a cryptographic signature;

(c) transmitting said cryptographic signature along with data through a first subnetwork in at least one packet, having a first packet size;

(d) receiving said at least one packet at said receiving host; and

(e) said receiving host utilizing a public key of said originating host to verify said cryptographic signature.

5. The method recited in claim 4 wherein said packets are authenticated at an intermediate router by utilizing a public key of said originating host to verify said cryptographic signature.

6. The method recited in claim 4 wherein an asymmetric algorithm is used to generate said cryptographic signature.

7. The method recited in claim 6 wherein said asymmetric algorithm is an RSA digital signature algorithm.

8. A method for authentication of an originating host at a receiving host site and one or more intermediate routers, said method comprising the steps of:

(a) obtaining a network address for said receiving host;

(b) utilizing a private key from said originating host to generate a cryptographic signature;

(c) transmitting said cryptographic signature along with data through two or more subnetworks in at least one packet having a first packet size, where the packet is fragmented into 2 or more packet fragments during transit from said originating host to said receiving host;

(d) receiving said at least one packet at said receiving host; and

(e) said receiving host utilizing a public key of said originating host to verify said cryptographic signature.

9. The method recited in claim 8 wherein said transmitting step is conducted by transmitting a first fragmented packet of said first subnetwork packets to a first available intermediate router, and each subsequent fragmented packet of said first subnetwork packets following the progress of said first fragmented packet through said second subnetwork in a train like fashion.

10. The method recited in claim 4, wherein said at least one packet having a first packet size is fragmented and thereby forming at least two fragmented packet, said fragmented packets having a first fragmented packet which is transmitted to a first available intermediate router in said first subnetwork, and each subsequent fragmented packet following the progress of said first fragmented packet through said first subnetwork in a train like fashion.

11. The method recited in claim 9 wherein said packet fragments are authenticated at an intermediate router by first assembling said packet fragments and then utilizing a public key of said originating host to verify said cryptographic signature.

12. The method recited in claim 10 wherein said packet fragments are authenticated at an intermediate router by first assembling said packet fragments and then utilizing a public key of said originating host to verify said cryptographic signature.

13. The method recited in claim 1 wherein said receiving host, utilizing a public key of said originating host, verifies that said data has been sent by said sending host by utilizing said cryptographic signature.

14. The method recited in claim 4 wherein said receiving host, utilizing a public key of said originating host, verifies that said data has been sent by said originating host by utilizing said cryptographic signature.

Comments from the community

One comment has been received for United States Patent No. 5,511,122. Want to add another?

#1|smd comments:

Ok, so this is different from SSH in what way? Using SSH to access a router, possibly through other routers along the way? Opinions?

Got something to say about this patent?

NOTE:

<p>, <a>, and text-formatting codes are ok, but will be checked.

Have a large file you'd like to attach to this patent? Please contact us.

security image

Security Code