Firewall Wizards mailing list archives

Re: Token based OTP: SafeWord or SecurID?


From: Ryan Russell <ryan () securityfocus com>
Date: Thu, 7 Dec 2000 19:57:20 -0800 (PST)

On Wed, 6 Dec 2000, Vin McLellan wrote:

         Tommy Ward <tommy () securify com> wrote:

As far as (RSA's SecurID] algorithm, it is patented, and it is implemented
in several software products, including the ACE/Server and the software
version of the token.  That means it is not really very secret....

         As others have noted, the 14 year-old SecurID hash is an RSA trade
secret. It remains unpublished today largely due to commitments RSA (then
Security Dynamics) made to early customers, when such commitments were
demanded by many customers, particularly in banking and financial services.

Based on my limited understaning of the patent application process in the
US, an item can't both be patented, and remain unpublished.  Which bit of
info is incorrect?


_______________________________________________
firewall-wizards mailing list
firewall-wizards () nfr com
http://www.nfr.com/mailman/listinfo/firewall-wizards


Current thread: