Patent attributes
During pairing between a connecting device and a server, cryptographic information of the connecting device is mapped to symbols and displayed, in a random sequence, on the connecting device. An operator, who is authorizing the connecting device to establish a trusted connection to the server, is provided the symbols in a different sequence from the random sequence. The operator is asked to put the symbols into the random sequence, a candidate validation code is generated from the operator-provided sequence and confirmed by the connecting device when an actual validation code generated by the connecting device for the random sequence matches the candidate validation code. The entropy/effort entered by operator is smaller than entropy of the underlying cryptographic information, but the full extent of the underlying cryptographic information is reliably verified by the operator action.