IP Library Granted Patent US 9,350,545
Granted Patent B1
US 9,350,545 · App. 14/319,417 · Granted May 24, 2016

Recovery mechanism for fault-tolerant split-server passcode verification of one-time authentication tokens

Inventors: Nikolaos Triandopoulos (Arlington, MA); John Brainard (Sudbury, MA)
Assignee: EMC Corporation
H04L9/321H04L9/085H04L9/3213H04L9/3226H04L63/083H04L63/0838H04L63/0846
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,350,545
App. No.
14/319,417
Granted
May 24, 2016
Kind
B1
Abstract

A recovery mechanism is provided for split-server passcode verification systems. An exemplary server-centric recovery scheme enables the system to respond to authentication attempts even if an authentication server is unavailable. The exemplary server-centric recovery scheme allows a periodic exchange of encrypted partial secret states among the authentication servers. Recovery occurs by allowing the decryption of the encrypted partial secret state that corresponds to the server that is unresponsive. An exemplary token-centric recovery scheme comprises determining that a first authentication server is unavailable; applying an authentication mechanism to a message requesting a token to change to a new split-state mode; and sending the authenticated message to the token.

Claims (28)

1. A recovery method for a split-server passcode verification system comprising a plurality of authentication servers, said recovery method comprising:

determining that a first one of said plurality of authentication servers is unavailable;

instructing a second one of said plurality of authentication servers to enter a recovery mode based on the determination that the first one of said plurality of authentication servers is unavailable, wherein prior to said first authentication server becoming unavailable, at least one of said first and second authentication servers provide a respective secret key used to protect a partial secret state to a relying party and said second authentication server receives an encrypted version of said respective partial secret state of said first authentication server;

obtaining said encrypted partial secret state of said first authentication server from said second authentication server;

decrypting said received said encrypted partial secret state of said first authentication server to recover said partial secret state of said first authentication server; and

employing said recovered partial secret state of said first authentication server to perform a split-server passcode verification of at least one user with said second authentication server.

2. The method of claim 1 , wherein said step of employing said recovered partial secret state of said first authentication server to perform said split-server passcode verification is performed until one or more of said first authentication server is available and a replacement authentication server is initiated.

3. The method of claim 1 , wherein said first and second authentication servers exchange an encrypted version of said respective partial secret stat.

4. The method of claim 1 , further comprising the steps of generating secret keys sk B,t , sk R,t for said first and second authentication servers, respectively; obtaining a respective partial secret state σ B,t , σ R,t from said first and second authentication servers, respectively; encrypting said respective partial secret states σ B,t , σ R,t using at least one encryption key; and providing each of said encrypted versions c B,t , c R,t of said respective partial secret state σ B,t , σ R,t to the other of said authentication servers.

5. The method of claim 1 , wherein said at least one of said first and second authentication servers provide a respective secret key used to protect a partial secret state to a relying party and said second authentication server receives an encrypted version of said respective partial secret state of said first authentication server substantially simultaneously with a proactivization process.

6. The method of claim 1 , wherein said first and second authentication servers provide an “aliveness” message to at least one other server.

7. The method of claim 1 , wherein each of said encrypted partial secret states is encrypted under an independent master secret key unknown to said authentication server receiving said encrypted partial secret state.

8. The method of claim 1 , wherein said second authentication server receives an encrypted version of said respective partial secret state of said first authentication server at a recovery state update rate.

9. An apparatus in a split-server passcode verification system comprising a plurality of authentication servers, comprising:

a memory; and

at least one hardware device, coupled to the memory, operative to implement the following steps:

determining that a first one of said plurality of authentication servers is unavailable;

instructing a second one of said plurality of authentication servers to enter a recovery mode based on the determination that the first one of said plurality of authentication servers is unavailable, wherein prior to said first authentication server becoming unavailable, at least one of said first and second authentication servers provide a respective secret key used to protect a partial secret state to a relying party and said second authentication server receives an encrypted version of said respective partial secret state of said first authentication server;

obtaining said encrypted partial secret state of said first authentication server from said second authentication server;

decrypting said received said encrypted partial secret state of said first authentication server to recover said partial secret state of said first authentication server; and

employing said recovered partial secret state of said first authentication server to perform a split-server passcode verification of at least one user with said second authentication server.

10. The apparatus of claim 9 wherein said step of employing said recovered partial secret state of said first authentication server to perform said split-server passcode verification is performed until one or more of said first authentication server is available and a replacement authentication server is initiated.

11. The apparatus of claim 9 wherein said first and second authentication servers exchange an encrypted version of said respective partial secret state.

12. The apparatus of claim 9 , wherein said at least one hardware device is further configured to implement the steps of generating secret keys sk B,t , sk R,t for said first and second authentication servers, respectively; obtaining a respective partial secret state σ B,t , σ R,t from said first and second authentication servers, respectively; encrypting said respective partial secret states σ B,t , σ R,t using at least one encryption key; and providing each of said encrypted versions C B,t , c R,t of said respective partial secret state σB,t, σR,t to the other of said authentication servers.

13. The apparatus of claim 9 , wherein said at least one of said first and second authentication servers provide a respective secret key used to protect a partial secret state to a relying party and said second authentication server receives an encrypted version of said respective partial secret state of said first authentication server substantially simultaneously with a proactivization process.

14. The apparatus of claim 9 , wherein said first and second authentication servers provide an “aliveness” message to at least one other server.

15. The apparatus of claim 9 , wherein each of said encrypted partial secret states is encrypted under an independent master secret key unknown to said authentication server receiving said encrypted partial secret state.

16. The apparatus of claim 9 , wherein said second authentication server receives an encrypted version of said respective partial secret state of said first authentication server at a recovery state update rate.

Assignments (22)
RELEASE OF SECURITY INTEREST RECORDED AT REEL/FRAME 56096/0525 Recorded Mar 5, 2026
From: JPMORGAN CHASE BANK, N.A.
To: RSA SECURITY LLC; RSA SECURITY USA LLC
Reel/Frame 075030/0744 →
RELEASE OF SECURITY INTEREST RECORDED AT REEL/FRAME 56098/0534 Recorded Mar 5, 2026
From: MORGAN STANLEY SENIOR FUNDING, INC.
To: RSA SECURITY LLC
Reel/Frame 075041/0175 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 23, 2024
From: RSA SECURITY LLC
To: RSA SECURITY LLC
Reel/Frame 069762/0401 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 23, 2024
From: RSA SECURITY LLC
To: RSA SECURITY USA, LLC
Reel/Frame 069762/0529 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (045455/0001) Recorded May 20, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO ASAP SOFTWARE EXPRESS, INC.); DELL MARKETING L.P. (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO CREDANT TECHNOLOGIES, INC.); DELL USA L.P.; DELL INTERNATIONAL L.L.C.; DELL PRODUCTS L.P.; DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO FORCE10 NETWORKS, INC. AND WYSE TECHNOLOGY L.L.C.); EMC CORPORATION (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO MAGINATICS LLC); EMC IP HOLDING COMPANY LLC (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO MOZY, INC.); SCALEIO LLC
Reel/Frame 061753/0001 →
TERMINATION AND RELEASE OF SECOND LIEN SECURITY INTEREST IN PATENTS RECORDED AT REEL 053666, FRAME 0767 Recorded Apr 29, 2021
From: JEFFERIES FINANCE LLC, AS COLLATERAL AGENT
To: RSA SECURITY LLC
Reel/Frame 056095/0574 →
FIRST LIEN INTELLECTUAL PROPERTY SECURITY AGREEMENT Recorded Apr 29, 2021
From: RSA SECURITY LLC
To: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
Reel/Frame 056096/0525 →
TERMINATION AND RELEASE OF FIRST LIEN SECURITY INTEREST IN PATENTS RECORDED AT REEL 054155, FRAME 0815 Recorded Apr 29, 2021
From: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
To: RSA SECURITY LLC
Reel/Frame 056104/0841 →
SECOND LIEN INTELLECTUAL PROPERTY SECURITY AGREEMENT Recorded Apr 29, 2021
From: RSA SECURITY LLC
To: MORGAN STANLEY SENIOR FUNDING, INC., AS COLLATERAL AGENT
Reel/Frame 056098/0534 →
PARTIAL RELEASE OF SECURITY INTEREST Recorded Nov 24, 2020
From: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
To: ASAP SOFTWARE EXRESS, INC.; DELL USA L.P.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC; FORCE10 NETWORKS, INC.; SCALEIO LLC; WYSE TECHNOLOGY L.L.C.
Reel/Frame 054511/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 7, 2020
From: EMC IP HOLDING COMPANY LLC
To: RSA SECURITY LLC
Reel/Frame 053717/0020 →
RELEASE OF SECURITY INTEREST IN CERTAIN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (040136/0001) Recorded Sep 3, 2020
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS AGENT
To: ASAP SOFTWARE EXPRESS; DELL USA L.P.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC; FORCE10 NETWORKS, INC.; SCALEIO LLC; WYSE TECHNOLOGY L.L.C.
Reel/Frame 054163/0416 →
RELEASE OF SECURITY INTEREST IN CERTAIN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (053546/0001) Recorded Sep 3, 2020
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS AGENT
To: DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; FORCE10 NETWORKS, INC.; EMC IP HOLDING COMPANY LLC; WYSE TECHNOLOGY L.L.C.
Reel/Frame 054191/0287 →
RELEASE OF SECURITY INTEREST IN CERTAIN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (049452/0223) Recorded Sep 3, 2020
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS AGENT
To: DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC; FORCE10 NETWORKS, INC.; WYSE TECHNOLOGY L.L.C.
Reel/Frame 054250/0372 →
FIRST LIEN PATENT SECURITY AGREEMENT Recorded Sep 1, 2020
From: RSA SECURITY LLC
To: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
Reel/Frame 054155/0815 →
SECOND LIEN PATENT SECURITY AGREEMENT Recorded Sep 1, 2020
From: RSA SECURITY LLC
To: JEFFERIES FINANCE LLC
Reel/Frame 053666/0767 →
SECURITY AGREEMENT Recorded Apr 22, 2020
From: CREDANT TECHNOLOGIES INC.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; FORCE10 NETWORKS, INC.; WYSE TECHNOLOGY L.L.C.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A.
Reel/Frame 053546/0001 →
SECURITY AGREEMENT Recorded Mar 21, 2019
From: CREDANT TECHNOLOGIES, INC.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; FORCE10 NETWORKS, INC.; WYSE TECHNOLOGY L.L.C.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A.
Reel/Frame 049452/0223 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 29, 2016
From: EMC CORPORATION
To: EMC IP HOLDING COMPANY LLC
Reel/Frame 040203/0001 →
SECURITY AGREEMENT Recorded Sep 21, 2016
From: ASAP SOFTWARE EXPRESS, INC.; AVENTAIL LLC; CREDANT TECHNOLOGIES, INC.; DELL USA L.P.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL SOFTWARE INC.; DELL SYSTEMS CORPORATION; EMC CORPORATION; EMC IP HOLDING COMPANY LLC; FORCE10 NETWORKS, INC.; MAGINATICS LLC; MOZY, INC.; SCALEIO LLC; SPANNING CLOUD APPS LLC; WYSE TECHNOLOGY L.L.C.
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
Reel/Frame 040136/0001 →
SECURITY AGREEMENT Recorded Sep 21, 2016
From: ASAP SOFTWARE EXPRESS, INC.; AVENTAIL LLC; CREDANT TECHNOLOGIES, INC.; DELL USA L.P.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL SOFTWARE INC.; DELL SYSTEMS CORPORATION; EMC CORPORATION; EMC IP HOLDING COMPANY LLC; FORCE10 NETWORKS, INC.; MAGINATICS LLC; MOZY, INC.; SCALEIO LLC; SPANNING CLOUD APPS LLC; WYSE TECHNOLOGY L.L.C.
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
Reel/Frame 040134/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 17, 2014
From: TRIANDOPOULOS, NIKOLAOS; BRAINARD, JOHN
To: EMC CORPORATION
Reel/Frame 034189/0206 →