Computer accessing system

4310720
Add to folder: View Folders  
Keywords to Highlight:

full-text

print

pdf

permalink

Inventors

Check, Jr., Frank T.

Application #

892252

Filed

Mar-31-1978

Published

Jan-12-1982

Current US Class

235/382
340/5.26
340/5.54
340/5.74
379/903
379/93.02
380/262
713/155

International Classes

H04L 009/00

Field of Search

364/200 178/22 340/149 235/382

Assignee

Pitney Bowes Inc. (Stamford, CT)

Examiners

Thomas; James D.

Attorney, Agent or Firm

Pitchenik; David E., Soltow, Jr.; William D., Scribner; Albert W.

US Patent References

3956615   Transaction executi...
3958081   Block cipher system...
3996449   Operating system a...
4017798   Spread spectrum d...
4074066   Message verificatio...
4079188   Multi-mode digital...
4123747   Identity verification...
4133973   Digital cryptograph...
4145568   Method and appar...

Referenced by:

View Backward References

Other References

Proceedings of the IEEE, vol. 63, No. 11, Nov. 1975, "Some Cryptographic Techniques for Machine-to-Machine Data Communications", Feistel, Notz, and Smith, pp. 1545 to 1554.

Citation

Cite This Patent

More From Subclass 382

6085977   Check processing p...
4721954   Keypad security sys...
6745941   Electronic key with...
4698630   Security system
5159183   IC card
6592031   Authentication syste...
5212464   Magnetic card switch
6861944   Authorization contr...
5700999   Bar code based ref...
6431444   Barcode supervisor...
6848619   Micro-controller pr...
4855920   Postage accounting...
5010240   Composite ticket pr...
6983888   Portable wireless a...
6653938   Automatic security...
4991205   Personal identificat...
6824051   Protected content di...
6968996   Protected content di...
5917407   Unattended autom...
4737785   Device for locks
6547134   Automatic broker to...
6997381   Dual-sided smart c...
5079411   Electronic lock and...
3984658   Programmable car...
6102288   Card for a pledge l...
5949060   High security capa...
5185516   Card-type IC-mount...
6991158   Mobile paper recor...
4423415   Non-counterfeitable...
4780806   Control device for a...
5821871   Authentication met...
4937437   Security system for...
6366929   Service control and...
5770843   Access card for mu...
5923264   Multiple access ele...
5502806   Waiting line mana...
4980679   Time varying ident...
4711995   Electronic key code...
6367695   Self service terminal
6000609   Mechanical/electro...
4150781   Access authenticati...
5157247   IC card
5917177   IC card reader
5774365   Document dispense...
7004382   Payment validation...
5442342   Distributed user aut...
5293424   Secure memory card
6189787   Multifunctional car...
5140317   Electronic security...
5359522   Fluid delivery contr...
6772955   Memory card
6494367   Secure multi-appli...
6062474   ATM signature sec...
5933085   Environmental cont...
4423315   Time recorder
5576526   Closure system
7042356   Equipment monitor...
4519088   Usage control system
4837425   Security arrangem...
6970854   System for remote s...
4582985   Data carrier
6286757   Portable electronic...
 

More From Class 235

5880444   Interactive I/O termi...
5036210   Magnetically detect...
4602149   Transaction proces...
6164535   Price maintenance...
5331138   Hybrid card reader
5189638   Portable semicond...
5334827   Chip card reader
4988850   Magnetoresistance...
5889274   Card reader structu...
6446862   Point of purchase (...
6032865   Method of reading...
4396914   Electronic security...
 
Abstract
A communications link between a computer and a remote user is effected by a portable access unit which generates a nonrecurring access code which is a function of a password and a pseudorandomly generated number. The access code is transmitted and compared with an access code generated by a computer access controller. In addition to the access code, the pseudorandomly generated number provides an encryption key which is not transmitted but corresponds to a mating encryption key generated at the controller. The mating encryption keys are utilized to set up data transmission enciphering/deciphering networks successive links are established by incremented pseudorandomly generated access codes.
 
Claims
Having thus described the invention, there is claimed as new and desired to be secured by Letters Patent:

1. A system for accessing a computer by a user having an assigned password to establish a communications link for data transmission between a computer terminal and a computer, the system comprising access means at the terminal for sequentially generating a pseudorandom number of a first sequence of pseudorandom numbers, means receiving said pseudorandom number and said user assigned password and in response thereto modifying the pseudorandom number as a predetermined function of the password to provide an access code signal unique to itself, means transmitting the access code signal and identification signal from the terminal, controller means at said computer, the controller means receiving the transmitted access code signal and identification signal, the controller means including means responsive to the identification signal for sequentially generating a pseudorandom number of a second sequence of pseudorandom numbers congruent with the numbers of the first sequence and generating a signal corresponding to said user assigned password, and means for modifying said pseudorandom number of the second sequence with said last mentioned signal to provide a congruent access code signal and in response to the equality of the congruent access code signal and transmitted access code signal providing an access signal, and means receiving the access signal and in response thereto establishing a data transmission path between the terminal and the computer, said first and second sequences being the same, whereby computer access is secured through a sequential change of access codes in a pseudorandom fashion without direct transmission of said user's password.



Description
BACKGROUND OF THE INVENTION

1. Summary of the Invention

This invention relates generally to securing communication links between a computer and a remote terminal and more particularly to a system for accessing a computer and keying an encryption network for data transmission through pseudorandom number generation.

Society's multifaceted dependency upon computer systems has increased the possible effects of unauthorized computer access to untold levels. Computer networking, such as time sharing systems, has led to inherent security problems, since programs executed by such systems shared access and cooperated with each other. The capabilities of recent computer systems included not only the utilization of remote terminals but extensive resource sharing and batch processing of different projects. The use of such systems has necessarily increased the likelihood of deliberate or even accidental acquisition and/or alteration of data.

Computer systems have been subject to a variety of security risks ranging from misappropriation of confidential data through unauthorized use of computing time. Access controls have been used in virtually all time sharing and most other computer systems. Differences in the nature of the information being processed have given rise to various security measures and procedures commensurate with the value attached to such data and the consequences of unauthorized access and/or appropriation thereof. For example, the data processed in computer systems utilized for financial transactions has a substantial value due to the monetary losses which could be sustained as a result of system penetration.
 
  An off-line terminal, located at an airline boarding gate processes composite tickets bearing a magnetic stripe. Processing includes: authenticating, verifying,...  A conditional access device for use in connection with a host electronic equipment. The device includes a pointer peripheral containing one or more integrated...