CN106572065B - 一种多ttp参与的实体身份有效性验证方法及装置 - Google Patents
一种多ttp参与的实体身份有效性验证方法及装置 Download PDFInfo
- Publication number
- CN106572065B CN106572065B CN201510654832.XA CN201510654832A CN106572065B CN 106572065 B CN106572065 B CN 106572065B CN 201510654832 A CN201510654832 A CN 201510654832A CN 106572065 B CN106572065 B CN 106572065B
- Authority
- CN
- China
- Prior art keywords
- message
- trusted
- signature
- party
- entity
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Active
Links
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/3263—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving certificates, e.g. public key certificate [PKC] or attribute certificate [AC]; Public key infrastructure [PKI] arrangements
- H04L9/3268—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving certificates, e.g. public key certificate [PKC] or attribute certificate [AC]; Public key infrastructure [PKI] arrangements using certificate validation, registration, distribution or revocation, e.g. certificate revocation list [CRL]
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
- H04L63/0884—Network architectures or network communication protocols for network security for authentication of entities by delegation of authentication, e.g. a proxy authenticates an entity to be authenticated on behalf of this entity vis-à-vis an authentication entity
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
- H04L63/0823—Network architectures or network communication protocols for network security for authentication of entities using certificates
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/12—Applying verification of the received information
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/12—Applying verification of the received information
- H04L63/123—Applying verification of the received information received data contents, e.g. message integrity
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/08—Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
- H04L9/0861—Generation of secret information including derivation or calculation of cryptographic keys or passwords
- H04L9/0869—Generation of secret information including derivation or calculation of cryptographic keys or passwords involving random numbers or seeds
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/08—Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
- H04L9/0894—Escrow, recovery or storing of secret information, e.g. secret key escrow or cryptographic key storage
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/30—Public key, i.e. encryption algorithm being computationally infeasible to invert or user's encryption keys not requiring secrecy
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/321—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving a third party or a trusted authority
- H04L9/3213—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving a third party or a trusted authority using tickets or tokens, e.g. Kerberos
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/3247—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving digital signatures
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/40—Network security protocols
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Computing Systems (AREA)
- Computer Hardware Design (AREA)
- General Engineering & Computer Science (AREA)
- Theoretical Computer Science (AREA)
- Management, Administration, Business Operations System, And Electronic Commerce (AREA)
- Mobile Radio Communication Systems (AREA)
- Storage Device Security (AREA)
Abstract
Description
Claims (15)
Priority Applications (6)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201510654832.XA CN106572065B (zh) | 2015-10-10 | 2015-10-10 | 一种多ttp参与的实体身份有效性验证方法及装置 |
PCT/CN2016/096342 WO2017059744A1 (zh) | 2015-10-10 | 2016-08-23 | 一种多ttp参与的实体身份有效性验证方法及装置 |
KR1020187010987A KR102107918B1 (ko) | 2015-10-10 | 2016-08-23 | 엔티티의 신원의 유효성을 검증하기 위한 다중-ttp-기반의 방법 및 장치 |
EP16853050.9A EP3361692B1 (en) | 2015-10-10 | 2016-08-23 | Multi-ttp-based method and device for verifying validity of identity of entity |
JP2018517881A JP6543768B2 (ja) | 2015-10-10 | 2016-08-23 | マルチttpが参与するエンティティアイデンティティ有効性検証方法及び装置 |
US15/765,223 US10652029B2 (en) | 2015-10-10 | 2016-08-23 | Multi-TTP-based method and device for verifying validity of identity of entity |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201510654832.XA CN106572065B (zh) | 2015-10-10 | 2015-10-10 | 一种多ttp参与的实体身份有效性验证方法及装置 |
Publications (2)
Publication Number | Publication Date |
---|---|
CN106572065A CN106572065A (zh) | 2017-04-19 |
CN106572065B true CN106572065B (zh) | 2019-11-22 |
Family
ID=58487364
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN201510654832.XA Active CN106572065B (zh) | 2015-10-10 | 2015-10-10 | 一种多ttp参与的实体身份有效性验证方法及装置 |
Country Status (6)
Country | Link |
---|---|
US (1) | US10652029B2 (zh) |
EP (1) | EP3361692B1 (zh) |
JP (1) | JP6543768B2 (zh) |
KR (1) | KR102107918B1 (zh) |
CN (1) | CN106572065B (zh) |
WO (1) | WO2017059744A1 (zh) |
Families Citing this family (1)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN114760039A (zh) | 2020-12-26 | 2022-07-15 | 西安西电捷通无线网络通信股份有限公司 | 一种身份鉴别方法和装置 |
Family Cites Families (18)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
FI980591A (fi) * | 1998-03-17 | 2000-01-03 | Sonera Oy | Menetelmä ja järjestelmä sopimusosapuolen luotettavaksi ja turvallisek si tunnistamiseksi |
CA2347528A1 (en) | 2001-05-15 | 2002-11-15 | Ibm Canada Limited-Ibm Canada Limitee | System and method for on-line payment |
KR100419484B1 (ko) * | 2001-09-07 | 2004-02-19 | 한국전자통신연구원 | 공개키 기반구조에서 검증서버를 이용한 인증서의 유효성검증 장치 및 방법 |
JP3889004B2 (ja) * | 2003-01-27 | 2007-03-07 | 松下電器産業株式会社 | デジタルコンテンツ配信システム |
CN100389555C (zh) | 2005-02-21 | 2008-05-21 | 西安西电捷通无线网络通信有限公司 | 一种适合有线和无线网络的接入认证方法 |
US8880889B1 (en) | 2007-03-02 | 2014-11-04 | Citigroup Global Markets, Inc. | Systems and methods for remote authorization of financial transactions using public key infrastructure (PKI) |
CN101378318B (zh) | 2008-10-08 | 2010-09-15 | 南京邮电大学 | 开放网络中基于动态可信第三方的身份认证方法 |
CN101662366B (zh) * | 2009-05-27 | 2011-09-21 | 西安西电捷通无线网络通信股份有限公司 | 基于哈希函数的双向认证方法及系统 |
CN101640593B (zh) | 2009-08-28 | 2011-11-02 | 西安西电捷通无线网络通信股份有限公司 | 一种引入在线第三方的实体双向鉴别方法 |
CN101651690A (zh) * | 2009-09-08 | 2010-02-17 | 中兴通讯股份有限公司 | 信任关系的建立方法及对等系统 |
CN102036235A (zh) * | 2009-09-28 | 2011-04-27 | 西门子(中国)有限公司 | 一种用于身份认证的装置和方法 |
CN101674182B (zh) * | 2009-09-30 | 2011-07-06 | 西安西电捷通无线网络通信股份有限公司 | 引入在线可信第三方的实体公钥获取、证书验证及鉴别的方法及系统 |
CN101984577B (zh) | 2010-11-12 | 2013-05-01 | 西安西电捷通无线网络通信股份有限公司 | 匿名实体鉴别方法及系统 |
CN102510387B (zh) * | 2011-12-29 | 2014-06-04 | 西安西电捷通无线网络通信股份有限公司 | 一种安全传输层协议tls握手方法和装置及ttp |
GB2499184B (en) * | 2012-01-23 | 2019-01-30 | Youview Tv Ltd | Authorisation system |
US20140136419A1 (en) * | 2012-11-09 | 2014-05-15 | Keith Shoji Kiyohara | Limited use tokens granting permission for biometric identity verification |
CN104618307B (zh) * | 2013-11-04 | 2018-10-23 | 航天信息股份有限公司 | 基于可信计算平台的网银交易认证系统 |
CN104283688B (zh) * | 2014-10-11 | 2017-12-29 | 东软集团股份有限公司 | 一种USBKey安全认证系统及安全认证方法 |
-
2015
- 2015-10-10 CN CN201510654832.XA patent/CN106572065B/zh active Active
-
2016
- 2016-08-23 US US15/765,223 patent/US10652029B2/en active Active
- 2016-08-23 WO PCT/CN2016/096342 patent/WO2017059744A1/zh active Application Filing
- 2016-08-23 EP EP16853050.9A patent/EP3361692B1/en active Active
- 2016-08-23 JP JP2018517881A patent/JP6543768B2/ja active Active
- 2016-08-23 KR KR1020187010987A patent/KR102107918B1/ko active IP Right Grant
Also Published As
Publication number | Publication date |
---|---|
WO2017059744A1 (zh) | 2017-04-13 |
KR102107918B1 (ko) | 2020-06-26 |
US20180323976A1 (en) | 2018-11-08 |
EP3361692A4 (en) | 2018-11-07 |
JP2018530269A (ja) | 2018-10-11 |
US10652029B2 (en) | 2020-05-12 |
JP6543768B2 (ja) | 2019-07-10 |
EP3361692B1 (en) | 2022-03-30 |
KR20180054776A (ko) | 2018-05-24 |
EP3361692A1 (en) | 2018-08-15 |
CN106572065A (zh) | 2017-04-19 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
CN109309565A (zh) | 一种安全认证的方法及装置 | |
CN101534192B (zh) | 一种提供跨域令牌的系统和方法 | |
CN104717217B (zh) | 一种云存储中基于部分授权的可证明安全数据持有性验证方法 | |
CN109936455A (zh) | 一种数字签名的方法、装置和系统 | |
CN109117674A (zh) | 一种客户端验证加密方法、系统、设备及计算机介质 | |
CN111211905A (zh) | 一种基于无证书认证的Fabric联盟链成员身份管理方法 | |
CN106572066B (zh) | 一种实体身份有效性验证方法及其装置 | |
CN109104410A (zh) | 一种信息的匹配方法及装置 | |
CN107395623A (zh) | 接口访问数据验证方法及装置、计算机存储介质和设备 | |
CN106572065B (zh) | 一种多ttp参与的实体身份有效性验证方法及装置 | |
CN106572063B (zh) | 一种多ttp参与的实体身份有效性验证方法及装置 | |
CN106572064B (zh) | 一种多ttp参与的实体身份有效性验证方法及装置 | |
CN106656504A (zh) | 一种签名设备、系统及其工作方法 | |
CN106571919B (zh) | 一种实体身份有效性验证方法及其装置 | |
CN106571920B (zh) | 一种多ttp参与的实体身份有效性验证方法及装置 | |
CN106571921B (zh) | 一种实体身份有效性验证方法及其装置 | |
CN105338004B (zh) | 云环境下低性能设备适用的具有隐私保护的公开审计方法 | |
Walfish | Enhanced security models for network protocols | |
CN107113305A (zh) | 用于发送和验证签名的装置和方法 | |
Mavrogiannopoulos et al. | Toward a secure kerberos key exchange with smart cards | |
CN108847943A (zh) | Np问题的处理方法、装置、电子设备及存储介质 | |
JP3178537B2 (ja) | ディジタル署名方法 |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
PB01 | Publication | ||
PB01 | Publication | ||
SE01 | Entry into force of request for substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
EE01 | Entry into force of recordation of patent licensing contract | ||
EE01 | Entry into force of recordation of patent licensing contract |
Application publication date: 20170419 Assignee: Shenzhen mingwah Aohan Smart Card Co. Ltd. Assignor: Anxi Dianjietong Wireless Network Communications Co.,Ltd. Contract record no.: 2018610000008 Denomination of invention: Method and apparatus for verifying entity identity validity with multiple TTPs License type: Common License Record date: 20180319 |
|
EE01 | Entry into force of recordation of patent licensing contract | ||
EE01 | Entry into force of recordation of patent licensing contract |
Application publication date: 20170419 Assignee: Shenzhen mingwah Aohan Smart Card Co. Ltd. Assignor: Anxi Dianjietong Wireless Network Communications Co.,Ltd. Contract record no.: 2018610000009 Denomination of invention: Method and apparatus for verifying entity identity validity with multiple TTPs License type: Common License Record date: 20180320 Application publication date: 20170419 Assignee: Shenzhen mingwah Aohan Smart Card Co. Ltd. Assignor: Anxi Dianjietong Wireless Network Communications Co.,Ltd. Contract record no.: 2018610000010 Denomination of invention: Method and apparatus for verifying entity identity validity with multiple TTPs License type: Common License Record date: 20180322 |
|
GR01 | Patent grant | ||
GR01 | Patent grant |