FIELD: physics, computer engineering.
SUBSTANCE: invention relates to protection of information from unauthorised use. A method of creating a safe environment for protecting information from unauthorised use includes encrypting information using a cryptographic processor and a private cryptographic key stored in a user device; generating and sending a data packet containing a one-time user authentication code to the server of the service person; decrypting the data packet at the server of the service person and verifying at the server the one-time user authentication code and a verification code; in case of a positive verification result, the server sends to the user the data packet and the one-time user authentication code obtained when decrypting data packet of the user; the user device then generates a new data packet characterised by a new one-time user authentication code, the data packet consisting of an encrypted part and an unencrypted part, the unencrypted part containing a verification code configured to verify integrity of the entire data packet and a user identifier.
EFFECT: high level of security during user authentication.
17 cl, 2 dwg
Authors
Dates
2015-08-20—Published
2013-11-01—Filed