EP3311341A1 - Procédés d'affiliation, d'émancipation, et de vérification entre un tuteur et un tutoré. - Google Patents
Procédés d'affiliation, d'émancipation, et de vérification entre un tuteur et un tutoré.Info
- Publication number
- EP3311341A1 EP3311341A1 EP16736908.1A EP16736908A EP3311341A1 EP 3311341 A1 EP3311341 A1 EP 3311341A1 EP 16736908 A EP16736908 A EP 16736908A EP 3311341 A1 EP3311341 A1 EP 3311341A1
- Authority
- EP
- European Patent Office
- Prior art keywords
- tutored
- affiliation
- guardian
- certificate
- tutor
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Withdrawn
Links
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/3247—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving digital signatures
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06Q—INFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
- G06Q10/00—Administration; Management
- G06Q10/10—Office automation; Time management
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06Q—INFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
- G06Q50/00—Information and communication technology [ICT] specially adapted for implementation of business processes of specific business sectors, e.g. utilities or tourism
- G06Q50/10—Services
- G06Q50/20—Education
- G06Q50/205—Education administration or guidance
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06Q—INFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
- G06Q2220/00—Business processing using cryptography
Definitions
- the present invention relates to the definition and implementation of relationships that may exist between a tutor and a tutor, advantageously in a secure manner.
- a tutored person means, in the present, a person who can not carry out only a formality.
- the realization of such a formality requires the control of a guardian.
- a guardian means, in the present, a person holding rights for the tutored and able to carry out a formality on behalf of the tutored or authorize the tutored to carry out a formality.
- the present invention overcomes these disadvantages and proposes to achieve an affiliation defining a relationship between a tutor and a tutor, indicative of the tutoring relationship.
- the present invention also proposes to achieve an emancipation for transferring rights of the guardian to the tutored.
- the corresponding verification methods are also proposed.
- the invention relates to a method of affiliation, materializing a tutoring relationship, between a tutor and a tutor, comprising the following steps: creation of an affiliation certificate comprising: a tutor authorization including the rights allocated to the tutor on the tutored, and storage of the affiliation certificate.
- the method further comprises a step of producing an electronic guarantee of integrity and authenticity of the affiliation certificate.
- the electronic guarantee is an affiliation seal produced by electronic signature of the affiliation certificate by means of an authoritative cryptographic material associated with an authority, and the The method further includes a next step of storing the affiliation seal.
- the authoritative cryptographic material includes a public key authority and a private key authority
- the portion of the authoritative cryptographic material used to produce the affiliation seal includes the private key authority
- the affiliation certificate also comprises a guardian attribute and / or a tutored attribute.
- the tutor is associated with a guardian cryptographic material, and the tutor attribute comprises at least part of the tutoring cryptographic material, and / or the tutor is associated with a tutored cryptographic material, and the tutored attribute comprises least part of the tutored cryptographic material.
- the cryptographic material tutor includes a public key tutor and a private key tutor
- the part of the cryptographic material guardian included in the guardian attribute includes the public key tutor
- / or the cryptographic material tutored includes a public key tutored and a tutored private key
- the part of the tutored cryptographic material included in the tutored attribute includes the tutored public key.
- the storage step (s) is (are) performed on a tutor document associated with the tutor, on a tutored document associated with the tutor, on a mass storage medium, on a medium network storage, or distributed over several of the previous media.
- the tutor document and the tutored document are electronic documents, produced by the authority, the electronic tutor document storing the cryptographic material tutor, and the tutored electronic document storing the cryptographic material tutored.
- the subject of the invention is also a process for verifying an affiliation, carried out by the method of affiliation, including the following steps: reading of the affiliation certificate, possible control of the origin and the integrity of the affiliation certificate by checking the electronic guarantee, and exploitation of the authorization guardian .
- control of the origin and integrity of the affiliation certificate still includes the steps of reading the affiliation seal and checking the affiliation seal by means of at least part of the affiliation seal. authoritative cryptographic material.
- the authoritative cryptographic material includes an authoritative public key and an authoritative private key
- the portion of the authoritative cryptographic material used to control the affiliation seal includes the authoritative public key
- the verification method also comprises at least one of the following steps: if a guardian attribute is included in the certificate of affiliation, possible control of the authenticity of the tutor by proving that he knows the guardian attribute included in the certificate of affiliation, if a tutored attribute is included in the certificate of affiliation, possible control of the authenticity of the tutored by proving that he knows the tutored attribute.
- the verification method also comprises at least one of the following steps: if part of the cryptographic material guardian is included in the attestation of affiliation, possible control of the authenticity of the document guardian proving that it holds at least part of the cryptographic material tutor, if a part of the tutored cryptographic material is included in the affiliation certificate, possible control of the authenticity of the tutored document by proving that it holds at least a part of the cryptographic material tutored.
- the verification method also comprises at least one of the following steps: if the cryptographic material tutor includes a public key guardian and a private key guardian, possible control of the authenticity of the electronic document guardian proving that he holds the private key guardian, by means of a challenge-response with the public key guardian, if said key public guardian is included in the affiliation certificate, if the tutored cryptographic material includes a tutored public key and a tutored private key, possible control of the authenticity of the tutored electronic document by proving that it holds the tutored private key, by means of a challenge-response with the tutored public key, if said tutored public key is included in the affiliation certificate.
- the subject of the invention is also a method of emancipation, by a tutor, of a tutor, comprising the following steps: creation of an emancipation certificate comprising: a tutored authorization comprising the rights emancipated to the tutored by the tutor, storage of the certificate of emancipation, storage, if it is not already present, the affiliation certificate produced by the affiliation process.
- the emancipation method also comprises a step of producing an electronic guarantee of integrity and authenticity of the emancipation certificate.
- the electronic guarantee is an emancipation seal produced by electronic signature of the emancipation certificate by means of a guardian cryptographic material, and the method further comprises a step of storing the emancipation seal.
- the emancipation certificate also comprises a guardian attribute and / or a tutored attribute.
- the tutor is associated with a guardian cryptographic material, and the tutor attribute comprises at least part of the tutoring cryptographic material, and / or the tutor is associated with a tutored cryptographic material, and the tutored attribute comprises least part of the tutored cryptographic material.
- the guardian cryptographic material includes a guardian public key and a guardian private key, and the portion of the guardian cryptographic material used to produce the emancipation seal includes the guardian private key.
- the cryptographic material tutor includes a public key tutor and a private key tutor
- the part of the cryptographic material guardian included in the guardian attribute includes the public key tutor
- / or the cryptographic material tutored includes a public key tutored and a tutored private key
- the part of the tutored cryptographic material included in the tutored attribute includes the tutored public key.
- the electronic signature step is conditioned on the provision of a guardian document and on the authentication of the bearer of the guardian document, by means of a PIN code associated with the guardian document, and / or an identification biometric, and / or proving that the holder knows a guardian attribute included in the certificate of affiliation or in the certificate of emancipation.
- the storage step (s) is (are) performed on a tutor document associated with the tutor, on a tutored document associated with the tutor, on a mass storage medium, on a medium network storage, or distributed over several of the previous media.
- the tutor document and the tutored document are electronic documents, produced by an authority, the electronic tutor document stores the cryptographic material tutor, and the tutored electronic document stores the tutored cryptographic material.
- the subject of the invention is also a method for verifying an emancipation, carried out by the emancipation method, comprising the following steps: reading the affiliation certificate, possibly checking the origin and the integrity of the certificate of affiliation by control the associated electronic guarantee, reading of the emancipation certificate, possible control of the origin and integrity of the emancipation certificate by controlling the associated electronic guarantee, exploitation of the tutored authorization.
- control of the origin and the integrity of the affiliation certificate also comprises the following steps: reading of the seal of affiliation, checking of the seal of affiliation by means of at least a part authoritative cryptographic material, and the control of the origin and integrity of the emancipation certificate also includes the following steps: extraction of at least part of the cryptographic material guardian from the certificate of affiliation, reading of the emancipation certificate, reading of the emancipation seal, control of the emancipation seal by means of at least part of the cryptographic material guardian.
- the authoritative cryptographic material includes a public key authority and a private key authority
- the portion of the authoritative cryptographic material used to control the affiliation seal includes the public key authority
- the cryptographic material guardian includes a public key guardian and a private key guardian
- the part of the cryptographic material guardian used to control the emancipation seal includes the public key guardian.
- the verification process also comprises a step of: if a tutored attribute is included in the affiliation certificate or in the emancipation certificate, possible control of the authenticity of the tutored person by proving that it knows said tutored attribute.
- the verification method also comprises a step of: if a part of the tutored cryptographic material is included in the affiliation certificate or in the emancipation certificate, possible control of the authenticity of the document tutored in proving that he holds at least some tutored cryptographic material.
- the verification method also comprises a step of: if the tutored cryptographic material comprises a tutored public key and a tutored private key and if said tutored public key is included in the affiliation certificate or in the attestation emancipation, possible control of the authenticity of the tutored electronic document by proving that it holds the tutored private key, by means of a defi-response with said tutored public key.
- the invention also relates to an electronic document comprising an affiliation certificate and / or an electronic guarantee, and / or an emancipation certificate and / or an electronic guarantee.
- the electronic document comprises a guardian attribute, respectively a tutored attribute, in order to form an electronic tutor document, respectively a tutored electronic document.
- FIG. 1 illustrates an affiliation between an electronic tutor document and a tutored electronic document
- FIG. 2 illustrates an emancipation benefiting a tutored electronic document, produced by an electronic document tutor.
- the definition of the terms used in this letter should be clarified.
- the tutored person is a person, whose prerogatives are limited, in that it can not carry out certain formalities alone, but can perform them under the supervision of a tutor.
- the tutored person is, for example, a person with limited legal capacity. It may be a minor, a person under guardianship or a person under guardianship.
- the tutored is, for example, a subordinate, whose access / authorizations / rights on a system are defined under the control of a superior.
- the term tutored means in the present indifferently for all these terms.
- tutored is used in this to describe elements attached to the tutored person. This is the case of a tutored document, a tutored electronic document, a tutored cryptographic pair, or a tutored public / private key.
- the tutor is a person, having authority over the tutored, to allow the tutored to achieve, under the supervision of the tutor, operations that the tutored could not achieve alone.
- the guardian is, for example, a person with the capacity to represent the tutel, in the legal sense. It may be a parent or guardian in the case of a minor, a tutor in the case of a person under guardianship or a curator in the case of a person under guardianship.
- the tutor is, for example, a superior.
- guardian means in the present indifferently for all these terms.
- guardian is used in the present to qualify elements attached to the guardian person. This is the case of a tutor document, an electronic tutor document, a cryptographic guardian pair, or a public / private key guardian.
- a document is a medium capable of recording information. It may be a sheet, a card, a booklet, a plastic card, a badge, a magnetic tape, capable of receiving a written, drawn, printed, engraved, embossed inscription, visible or hidden, a bar code, a QR code, etc ....
- a document is advantageously issued by an authority.
- a document advantageously comprises an authentication and / or security device: a buffer, an ampliation, a hologram, or any means of signature emanating from the authorization authority. issue in order to offer a guarantee of origin and integrity.
- An electronic document 11, 21 is a means of storing information, such as a memory, secured by a microcircuit or chip. Its shape can be variable and includes a microcircuit card, such as a credit card or a SIM card, a USB key, a mobile phone, a memory card, such as an SD card, an RFID tag, etc.
- An electronic document thus comprises a storage area accessible only by means of a dialogue with the microcircuit, which makes it possible to apply any type of access control to the stored data.
- An electronic document 11, 21 is thus able to store cryptographic material.
- the microcircuit gives the electronic document a processing capacity, making it possible to carry out calculations, comparisons and thus tests of coherence, authentication or encryption or an electronic signature.
- Such an electronic document 11, 21 can be used as a phone card, social insurance card, bank card, driver's license, identity document, such as an electronic identity card, or travel document, such as an electronic passport.
- identity document such as an electronic identity card
- travel document such as an electronic passport.
- Such an electronic document is most often attached to a person or carrier, and allows him to transport personal data securely, typically by cryptographic and / or biometric material. These data and materials may allow the holder of the electronic document to state his rights.
- an identity document enables a person to prove his identity by giving a certain indication of his marital status.
- a social insurance card may contain a person's medical file as well as the state of his rights to care.
- a credit card allows a person to perform transactions, transfer, withdrawal, etc. on his bank account (s).
- a travel document allows a person to prove his identity and allows him to travel by allowing him to carry out a formality of control at the crossing of a border.
- a cryptographic pair 12, 22, 42 comprising for example a cryptographic pair 12, 22, 42.
- This cryptographic pair is personal and attached to a speaker (authority, tutor, tutored, ...) and is stored securely, for example in an electronic document attached to the speaker.
- a cryptographic pair 12, 22, 42 may, for example, be of the RSA type, two-key on elliptic curves, ECC or equivalent.
- Such a cryptographic pair 12, 22, 42 allows several treatments.
- a basic property is that a signature by means of the private key PrKxx can be verified by means of the associated public key PuKxx, without however revealing or making it possible to deduce the private key PrKxx.
- the public key PuKxx can be broadcast to the recipients, who are then able to check, using the public key PuKxx, a signature made with the private key PrKxx, but without being able to perform a signature.
- An electronic document advantageously makes it possible to store a private key PrKxx, and to make a signature by means of this private key, without disclosing or externalizing said private key PrKxx, which remains specific to its holder and under its exclusive control.
- a controller in possession of a person's PuKxx public key, challenges a suitor by submitting a random test data to him. The suitor signs the test data by means of its private key PrKxx and returns the signed data to the controller. The controller verifies the signed data returned by means of the public key PuKxx. If the received signature and the initial test data match, in that the received signature can be correctly verified from the test data by means of the associated public key, the claimant has the private key PrKxx and can reasonably be deemed to be the person. This makes it possible to authenticate a person.
- the first need relates to the definition of the tutoring relationship, linking a tutor 10, and a tutored 20, and associated rights, to materialize said tutoring.
- Such affiliation is materialized by a certificate of affiliation 51 which includes at least a guardian authorization 13 including the list of rights allocated to the guardian 10 on the tutored.
- Such affiliation certificate 51 may include any durable medium or means of registration. It can be a handwritten or printed letter, a microfilm, a sound recording listing these rights.
- Such an affiliation certificate 51 is, after its creation, registered or stored so that it can be subsequently consulted for use and allow a tutor or tutored to assert at least one of his rights.
- an affiliation certificate is advantageously digital in order to be stored and processed by computer.
- an affiliation certificate 51 it is advantageously produced a guarantee of integrity and authenticity.
- a guarantee is advantageously affixed to or associated with the affiliation certificate 51 in that it incorporates at least one element of the affiliation certificate 51 in order to be linked thereto.
- Such a guarantee is advantageously difficult to reproduce and resistance to any modification in order to constitute a secure guarantee.
- the guarantee is advantageously provided by the authority 40 which issues the affiliation certificate 51 in order to authenticate the origin of the affiliation certificate 51 and its integrity.
- a guarantee can take various forms, from the simplest to the most complex, depending on the desired security.
- a guarantee may be a right of access to writing, held by the authority 40, on the medium or part of the medium in which the affiliation certificate is stored.
- a sharing of access rights with an organization performing the verification may help to guarantee the authenticity and integrity of the affiliation certificate 51.
- a guarantee may still be any security device capable of being controlled by a verifier .
- An electronic guarantee of integrity can still, for example, be a checksum.
- Other embodiments of such a guarantee and the associated methods of verification are possible and only limited by the imagination of those skilled in the art.
- the guarantee is electronic.
- the electronic guarantee is an affiliation seal 44 produced by electronic signature of the affiliation certificate 51 by means of an authoritative cryptographic material 42 associated with an authority 40.
- This authority 40 may be a trusted third party and in a particular case, the authority 40 issuing the certificate of affiliation 51.
- this affiliation seal 44 is advantageously stored. It may be stored anywhere, together or separately from the certificate of affiliation 51. It may, according to a particular embodiment, be incorporated in the affiliation certificate 51. The only constraint and that seal of Affiliation 44 may be re-read if necessary, for example to carry out an audit of the affiliation certificate 51.
- the affiliation certificate 51 also includes an attribute of the tutor and / or an attribute of the tutor.
- An attribute here refers to an element, record, datum, possession, etc. relative or associated with the respective person of the guardian and / or tutored, and allowing to establish a link with the person. For example, this may include the person's name, social security number, photo ID, preferred color, PIN code, biometric data, cryptographic means, etc.
- the tutor 10 is associated with a tutoring cryptographic material 12.
- the tutor attribute may be composed of at least part of the tutoring cryptographic material 12.
- the tutor may be associated with tutored cryptographic material 22.
- the tutored attribute comprises at least a portion of the tutored cryptographic material 22.
- both the affiliation certificate 51, and a possible affiliation seal 44 could be stored.
- This storage can be performed on any medium, as long as it can be replayed for a subsequent use.
- this storage can be performed on a tutorial document 11 associated with the tutor 10, on a tutored document 21 associated with the tutored tutorial 20, but more generally on any mass storage medium, such as a local hard disk, a memory card, a USB key , a microcircuit card, a phone, etc. or on such a mass storage medium accessible via a communication network, and which is designated network storage medium.
- Each of the stored items can be in extenso on only one of these supports or be divided into several parts, each part being stored on a storage medium, among the previous supports.
- the tutor 10 is associated with an electronic document tutor 11 and the tutor 20 is associated with a tutored electronic document 21.
- an affiliation is realized, in an electronic manner, between tutor 10 represented by the tutorial electronic document 11 and the tutor 20 represented by the tutored electronic document 21, by means of an affiliation method.
- the cryptographic guardian material comprises a guardian cryptographic pair 12 comprising a public key tutor PuKTu and a private key tutor PrKTu.
- the tutored cryptographic material includes a tutored cryptographic pair 22 comprising a tutored public key PuKTe and a private key tutored PrKTe.
- the cryptographic guardian pair 12, respectively tutored 22, is typically stored on the tutorial electronic document 11, respectively tutored 21.
- the electronic tutor 11 and tutored 21 documents are produced by an authority 40.
- This authority 40 has an authoritative cryptographic material 42 comprising an authoritative cryptographic pair 42 comprising an authoritative public key PuKAu and a private key authority PrKAu.
- This authoritative cryptographic pair 42 is typically stored in a very secure "super" electronic document 41, also called a hardware security module MMS (or hardware security module HSM) serving as a cryptographic safe. All the security of the system the invention is based on the preservation of the secrecy of the authoritative cryptographic material and particularly of the private key authority PrkAu.
- Authority 40 refers here to the body in charge of issuing electronic documents 11, 21.
- a travel document it is typically a government, or in the practice of a certifying industrialist of document (document sign or DS in English) working for the account and under the control of the government and to which the government technically subcontracts the manufacture of electronic documents.
- the affiliation process comprises a first step of creating an affiliation certificate 51.
- This affiliation certificate which materializes the tutoring relationship, includes a guardian authorization 13. It can still include a guardian attribute, for example in the form of the public key tutor PuKTu.
- the tutor authorization 13 is a file including the rights of the tutor 10, the tutor 20.
- This tutor authorization 13 defines the tutor (s), the tutor (s), and the tutor's rights on the tutor: what the tutor can do for and / or instead of the tutor, what the tutor 10 can allow the tutored 20 with or without the presence of the tutor 10, what the tutor 10 can possibly delegate to a third party, the possible conditions the exercise of these rights and the possible limits, both in space and time, of these rights.
- the rights may include the areas of the base accessible or not tutored 20 via its electronic document if appropriate, the terms: read only, write, delete, and possible modifications of these zones and modalities that the guardian 10 can achieve.
- the rights of the parent are defined by law and may be modified by court order.
- the whole, via at least one part or condensate from each of the constituents, of the content of the affiliation certificate 51 is the subject of an electronic signature by means of the authoritative private key PrKAu. This produces an affiliation seal 44, guaranteeing the origin (authority) and integrity of the affiliation certificate 51.
- the affiliation certificate 51 and the affiliation seal 44 are stored, together or separately, for example, in the tutor electronic document 11, in the tutored electronic document 21, or in both.
- the affiliation certificate 51 and the affiliation seal 44 it is still possible to store the affiliation certificate 51 and the affiliation seal 44 partly in the electronic tutor document 11 and partly in the electronic tutored document 21.
- the recovery of the two elements, for example for verification requires the electronic tutor document 11 and the tutored electronic document 21.
- This is applicable in cases where a formality, requiring the affiliation certificate 51 and the affiliation seal 44, requires the presence conjoint of the tutor electronic document 11 and the tutored electronic document 21.
- the affiliation certificate 51 and / or the affiliation seal 44 may still be stored, if necessary partially, in at least one other medium.
- said support can be present or at least accessible remotely to allow said reading.
- FIG. 1 illustrates an embodiment of the affiliation method.
- An affiliation certificate 51 is created including a guardian authorization 13 containing the rights of the guardian 10.
- the electronic guardian document 11 provides (indicated by a thin arrow) systematically (indicated by a solid line) the public guardian key PuKTu.
- the tutored electronic document 21 provides (indicated by a thin arrow) optionally (indicated by a dashed line) the key public tutored PuKTe.
- the electronic safe authority 41 signs (indicated by a thick arrow) the certificate of affiliation 51 by means of the private key authority PrKAu and produces an affiliation seal 44.
- the affiliation certificate signed 51 and the seal of affiliation affiliation 44 are stored (indicated by a large white arrow), for example, in the tutored electronic document 21 and / or in the electronic document tutor 11.
- the public key tutor PuKTu is useful, as described later, for verification operations. As such, the public key guardian PuKTu is included in the certificate of affiliation 51.
- the tutored electronic document 21, respectively of the electronic tutor document 11 it may be useful to have the tutored public key PuKTe, respectively of the public key tutor PuKTu.
- the affiliation certificate 51 may further include the PuKTe tutored public key.
- Attestation of Affiliation 51 is the highest level certificate, which most other operations will depend on. It is signed by the authority 40, can only be carried out by the authority and requires the presence of the electronic document (s) 11,21 or medium (s) on which the certificate (s) affiliate 51 is stored.
- the affiliation process is performed at the same time as the production, during the initial issue, of the electronic document 11,21 on which the affiliation certificate 51 is stored. This advantageously makes it possible to limit the number of round trips of the electronic document 11,21 to the authority 40.
- the majority of a minor by attaining the legal age, does not necessarily require modification of a certificate of affiliation 51.
- An age requirement may typically be included in the time limits of authorization author 13, causing automatic lapse of all or part of the authorization guardian 13 contained in the certificate of affiliation 51, the majority of the minor.
- an affiliation can be verified, typically prior to the completion of a formality.
- a verification process depends on the form and content of the affiliation. Thus an affiliation with no associated guarantee, can only be difficult to verify, except to achieve an aspect control.
- An affiliation including a guarantee, electronic or not, can be verified.
- the verification mode is dependent on the form of the guarantee.
- An affiliation verification method performed by the aforementioned affiliation method comprises the following steps.
- a first step is to read the affiliation certificate 51 from the medium where it is stored. Then a check is made by checking the associated guarantee.
- another step consists in reading the affiliation seal 44 from the support (s) on which it has been stored.
- the origin and the integrity of the affiliation certificate 51 are verified by means of the affiliation seal 44. This verification is carried out using the authoritative cryptographic material 42.
- the affiliation certificate 51 is deemed to be authentic and intact, and its contents, including the guardian authorization 13, can be used safely.
- the material Cryptographic authority 42 includes a public key authority PuKAu and a private key authority PrKAu, and the seal of affiliation 44 has been achieved by means of the private key authority PrKAu. Also, the public key authority PuKAu, corresponding to the private key authority PrKAu used for the signature of the affiliation certificate 51 is necessary and allows to verify the seal of affiliation 44.
- Verification of the seal of affiliation 44 by means of the public key authority PuKAu makes it possible to ascertain the origin of the attestation of affiliation 51, that it was created under the control of the authority 40 , and that its content is integrity, unchanged since its emission.
- the content of the affiliation certificate 51 and in particular the content of the tutor authorization 13 can be trusted, which can then be exploited to exercise the tutor's rights over the tutor.
- the public key authority PuKAu can be transmitted by the electronic document tutor 11 or tutored 21 itself.
- the public key authority PuKAu is previously signed by means of a higher level key, itself previously shared between the authority 40 and the verifier.
- the affiliation method and the affiliation verification method under the control of the authoritative cryptographic pair 42, ensure that the affiliation certificate 51 has a high level of legitimacy, since it is guaranteed by the authority 40.
- a guardian attribute such as for example a cryptographic material tutor 12, such for example the public key tutor PuKTu, whose integrity has verified and that its origin is attested by the authority 40, it is possible to check the authenticity of the guardian 10 and, where appropriate, the electronic guardian document 11.
- control may change form.
- the authenticity of the guardian 10 can be controlled by offering the guardian the possibility, for example by means of a dialogue via a man-machine interface, to prove that he knows the guardian attribute. included in the certificate of affiliation 51.
- This proof can be done in different ways and this knowledge must be understood in a very broad way.
- This knowledge can be by knowledge proper or by possession. It can be direct or indirect. It can still be partial or complete.
- Direct knowledge refers to a knowledge that the holder directly holds. So a wearer knows his name or date of birth directly. He is a natural bearer of his facial image comparable to a photo ID or a biometric print of which he can give or give back a sample or an image. Direct knowledge is still a password or a PIN.
- An indirect knowledge or possession / possession is understood by means of a visual, magnetic, storage medium, which can then be presented during the inspection. This is the case of a bar code, a photo or graphic representation, a password, a cryptographic material.
- control is then validated if the carrier claiming to be the guardian 10 is able to respond to the request for guardian attribute evidence made to him by presenting directly or indirectly a satisfactory response in terms of expected guardian attribute.
- the control of the authenticity of the guardian document 11 can be done by proving that the guardian document 11 holds at least a part of the material cryptographic tutor 12.
- the cryptographic material guardian 12 includes a public key guardian PuKTu and a private key tutor PrKTu
- the verification of the authenticity of the electronic document guardian 11 is performed by proving that it holds the private key tutor PrKTu. This is typically done by challenge-response, as previously described, with the public key tutor PuKTu, if said public key tutor PuKTu is available, for example included, in the certificate of affiliation 51.
- Guardian 10 and with him his. electronic document tutor 11, is thus able to prove that he holds the private key guardian PrKTu corresponding to the public key tutor PuKTu extracted from the certificate of affiliation 51 and thus to authenticate.
- a tutored attribute such as for example a tutored cryptographic material 22, such as for example the tutored public key PuKTe, the integrity of which has been it has been verified and that its origin is attested by the authority 40, it is possible to check the authenticity of the tutored 20 and, where appropriate, the tutored electronic document 21.
- the control can change form.
- the authenticity of the tutored can be controlled by offering the tutored the possibility, for example by a dialogue by means of a man-machine interface, to prove that he knows the tutored attribute. included in the certificate of affiliation 51.
- control is then validated if the bearer who claims to be the tutored one is able to respond to the tutored attribute proof request made to him by directly or indirectly presenting a satisfactory answer in terms of the expected tutored attribute.
- the authenticity check of the tutored document 21 can be done by proving that the tutored document 21 holds at least part of the tutored cryptographic material 22.
- the tutored cryptographic material 22 comprises a tutored public key PuKTe and a private key tutored PrKTe
- the verification of the authenticity of the tutored electronic document 21 is achieved by proving that it holds the tutored private key PrKTe. This is typically done by challenge-response, as previously described, with the public tutored PuKTe key, if said tutored public key PuKTe is available, for example included, in the affiliation certificate 51.
- the tutored 20, and with him his tutored electronic document 21, is thus able to prove that he holds the private key tutored PrKTe corresponding to the tutored public key PuKTe extracted from the certificate of affiliation 51 and so s' authenticate.
- An illustrative example with a travel document system depicts a minor child (tutored), allowed to cross a border only with one of his or her parents (guardian).
- the tutored electronic document 21 and / or the electronic tutor document 11 stores an affiliation certificate 51, confirming that the tutor is the parent of the tutor. Border control of the electronic document 21 of the child alone would indicate that he can not cross the border.
- the certificate of affiliation 51 read by the controller to the electronic document 21 of the child and / or the electronic document 11 of the parent, establishes with certainty a parentage between the parent and the child, and then authorizes the child to crossing the border, since he is accompanied by one of his parents.
- Affiliation is the first brick, essential, of the building. It can be used for different operations: emancipation and delegation.
- An emancipation allows a tutor 10 to emancipate a tutored 20 by transferring directly to the tutored 20 with, where appropriate, for example its tutored electronic document 21 as a support, at least one right, typically to allow the tutored 20 to achieve a formality, normally only possible in the presence of guardian 10, even in the absence of the guardian.
- the effective presence of the guardian 10 is replaced by an emancipation certificate 61 indicating what rights the guardian 10 authorizes to the tutored 20 and within what time and space limits.
- an emancipation method comprises a step of creating an emancipation certificate 61.
- Such an emancipation certificate 61 includes a tutored authorization 23 comprising the rights emancipated to the tutored 20 by the tutor 10.
- the emancipation certificate 61 is advantageously stored, so that it can later be found to be controlled and operated.
- the emancipation certificate 61 in order to be exploited and / or controlled, requires a certificate of affiliation 51 in order to define the link between the tutor 10 and the tutor 20. It is supposed that such a certificate of affiliation 51 pre-exists and is already stored. Otherwise, it can be created on the occasion of emancipation, and / or be stored.
- a guarantee of integrity and authenticity may be produced associated with the emancipation certificate 61.
- This guarantee may be electronic.
- the electronic guarantee is an emancipation seal 16 produced by electronic signature of the emancipation certificate 61 by means of a guardian cryptographic material 12 associated with the tutor 10.
- this emancipation seal 16 is advantageously stored. It may be stored anywhere, together or separately from the emancipation certificate 61. It may, according to a particular embodiment, be incorporated in the certificate of emancipation 61. The only constraint and that said seal of emancipation 16 can be read again when necessary, for example to carry out a verification process of the emancipation certificate 61.
- 61 further includes an attribute of the tutor and / or an attribute of the tutor.
- An attribute here refers to an element, record, datum, possession, etc. relative or associated with the respective person of the guardian and / or tutored, and allowing to establish a link with the person.
- the tutor 10 is associated with a tutoring cryptographic material 12.
- the tutor attribute may be composed of at least a portion of the tutoring cryptographic material 12.
- the tutor may be associated with tutored cryptographic material 22.
- the tutored attribute comprises at least a portion of the tutored cryptographic material 22.
- both the emancipation certificate 61, and any emancipation seal 16 could be stored.
- This storage can be performed on any medium, as long as it can be read for future use.
- this storage can be performed on a tutorial document 11 associated with the tutor 10, on a tutored document 21 associated with the tutored 20, but more generally on any mass storage medium or on such a mass storage medium accessible via a network. of communication, and that is designated network storage medium.
- Each of the stored items can be in extenso on only one of these supports or be divided into several parts, each part being stored on a storage medium, among the previous supports.
- the tutor 10 is associated with an electronic document tutor 11 and the tutor 20 is associated with a tutored electronic document 21.
- an emancipation operation is performed and implemented electronically by an emancipation method.
- the emancipation process comprises a first step of creating an emancipation certificate 61 which includes a tutored authorization 23.
- the tutored authorization 23 is, like the tutor authorization 13, a file comprising the rights emancipated to the tutored 20 by the tutor 10. It defines, what the tutored 20 can do in the absence of the guardian 10, derogatory to what the tutored 20 could only do in presence of the guardian 10.
- the tutored authorization 23 also includes the possible conditions for the exercise of these rights and the possible limits, both in space and in time, of these rights.
- the tutored authorization 23 is advantageously a subset of the authorization guardian 13. This necessary relationship can be verified at the time of the creation of the tutored authorization 23 during the emancipation process. Alternatively, this relationship can be verified at any time by one of the verification methods, for example prior to the exercise of one of the rights.
- At least part or condensate of the content of the emancipation certificate 61 is the subject of an electronic signature by means of the private key tutor PrKTu. This produces an emancipation seal 16, guaranteeing the origin (the guardian 10) and the integrity of the emancipation certificate 61.
- the emancipation certificate 61 and the emancipation seal 16 are stored, together or separately, advantageously in the tutored electronic document 21.
- a storage in the electronic document tutor 11 (or in another document electronics) would also be possible, but in practice proves to be ineffective since the purpose of an emancipation is to allow the tutored 20, if necessary equipped with its tutored electronic document 21, to perform only a formality, in the absence of the guardian 10.
- the use of a network support to perform the storage is advantageous, insofar as said network is accessible during the use, verification or exploitation of the emancipation certificate 61.
- the affiliation certificate 51 and associated affiliation seal 44 are advantageously stored in the tutored electronic document 21.
- any alternative storage medium is here possible to the extent that it is accessible when needed.
- the tutored electronic document 21, in that it usually accompanies the tutored 20 is a support advantageously available and present.
- Emancipation can be likened to a delegation of rights directly from the guardian 10 to the tutored one.
- FIG 2 illustrates an embodiment of the emancipation method.
- An emancipation certificate 61 is created including a tutored authorization 23 containing the emancipated rights to the tutor 20.
- the tutored electronic document 21 provides (indicated by a thin arrow) optionally (indicated by a dashed line) the tutored public key PuKTe.
- the electronic document tutor 11 signs (indicated by a thick arrow) the emancipation certificate 61 by means of the private key tutor PrKTu and produces an emancipation seal 16.
- the emancipation certificate 61 and the emancipation seal 16 are stored (indicated by a large white arrow) in the tutored electronic document 21.
- the affiliation certificate 51 and the affiliation seal 44, made during the affiliation process, are still stored in the tutored electronic document 21.
- the tutor 10 via his tutor electronic document 11, acts during the process of emancipation, as an authority. However, its level of security and its legitimacy are conferred on it by the authority 40. Also the presence of the certificate of affiliation 51, in addition to the emancipation certificate 61 is required. We are thus in the presence of a stack of certificates 51, 61 which complement each other and confer a security coming from the highest level: the authority 40.
- the emancipation uses a signature by the tutor 10.
- the creation of an emancipation certificate 61 requires the electronic document tutor 11 for the signature step by means of the private key tutor PrKTu. It still requires the tutored electronic document 21 for the storage step of the emancipation certificate 61 and the emancipation seal 16 and if necessary for the copy / storage step of the affiliation certificate 51 and of the seal of affiliation 44.
- these electronic documents 11, 21 are portable and autonomous.
- the electronic document tutor 11 can autonomously perform the signature step.
- the emancipation process can be achieved by means of a very light infrastructure.
- a person equipped with an electronic document reader as the case may be: SD card reader, USB reader, microcircuit card reader, etc., available on a personal computer or equivalent and a software application adapted simple and standard, can achieve, for example from home, the emancipation process provided it has the electronic document tutor 11 and the electronic document tutored 21. It is thus not necessary for a connection to a secure network, neither through a trusted third party nor an authority authorized by the authority 40.
- the emancipation certificate 61 may further include the public key tutored PuKTe.
- the signature by the tutor 10 becomes an important step in the emancipation process and makes it possible to transmit rights vested in the tutor 10 by the authority 40 itself.
- the signature step is preferably performed in the presence, but at least with the agreement, of the tutor 10 and not only in the presence of the tutor electronic document 11, which could be accessible, for example tutored 20.
- the electronic signature step of the emancipation process is conditioned to an authentication of the holder of the electronic document guardian 11. This authentication is intended to ensure the presence, but especially the consent of the guardian 10 to emancipation, in principle and in its content.
- This authentication of the holder of the electronic document guardian 11 can be achieved by any means.
- the entry of a secret code, type PIN code associated with the electronic document tutor 11, may be required.
- a biometric identification check may alternatively or additionally authenticate the guardian.
- the collection of the consent of the tutored 20, is a priori required for emancipation that benefits him.
- the tutored 20 is not necessarily able to give such consent.
- a step of collecting such a consent can easily be included in an emancipation process, for example by means of a step of authentication of the tutoré 20, by verification of a PIN code and / or by a test biometric.
- an emancipation can be verified, typically prior to the completion of a formality requiring a right normally not possessed by the tutored 20 but can be emancipated. Before any use of an emancipated right, it is better to check the emancipation.
- a method of verifying an emancipation depends on the form and the content of emancipation.
- An emancipation including a guarantee, electronic or not, can be verified.
- the verification mode is dependent on the form of the guarantee.
- a method of verifying an emancipation performed by the previously described emancipation method comprises the following steps.
- a first step is to read the affiliation certificate 51 from the medium on which it was stored.
- the origin and integrity of the affiliation certificate 51 is verified by means of a check of the associated electronic guarantee.
- a third step is to read the emancipation certificate 61 from the medium on which it was stored.
- the origin and integrity of the emancipation certificate 61 is verified by means of a control of the associated electronic guarantee.
- the guarantee of affiliation is an affiliation seal 44
- another step is to read the affiliation seal 44 from the medium (s) on which it was stored.
- the origin and integrity of the affiliation certificate 51 are verified by means of the affiliation seal 44. This verification is carried out by means of the material authority cryptographic 42.
- another step consists in reading the emancipation seal 16 from the support (s) on which it has been stored.
- the origin and integrity of the emancipation certificate 61 are verified by means of the emancipation seal 16. This verification is carried out using the cryptographic material tutor 12.
- the emancipation certificate 61 is deemed to be authentic and intact, and its content, including the tutored authorization 23, can be used safely.
- the authoritative cryptographic material 42 comprises a public key authority PuKAu and a private key authority PrKAu, and the seal of affiliation 44 was realized by means of the private key authority PrKAu.
- the public key authority PuKAu corresponding to the private key authority PrKAu used for the signature of the affiliation certificate 51, is necessary and makes it possible to verify the seal of affiliation 44.
- These first two stages substantially repeat the steps of the process of verification of membership because the legitimacy of the emancipation is certified by the certificate of affiliation 51. This step also allows to extract the public key PuKTu guardian of the 'certificate of affiliation with a 51 insurance its origin and integrity.
- the guardian cryptographic material 12 comprises a public guardian key PuKTu and a private key tutor PrKTu, and the emancipation seal 16 has been created by means of the private key tutor PrKTu. Also, the origin and the integrity of the emancipation certificate 61 is verified by means of the emancipation seal 16. For this, the public key tutor PuKTu, corresponding to the private key tutor PrKTu used for the signature of the emancipation certificate 61, is necessary and makes it possible to check the emancipation seal 16.
- the verification of the emancipation seal 16 by means of the public key tutor PuKTu makes it possible to ascertain the origin of the emancipation certificate 61, which has been created under the supervision of the tutor 10, and that his Content is integrity, unchanged since its broadcast.
- the content of the emancipation certificate 61 and in particular the content of the tutored authorization 23 can thus be trusted, which can then be exploited to apply the emancipated rights to the tutored tutor.
- the emancipation process and the emancipation verification process under the control of the cryptographic pair tutor 12, provide the certificate of emancipation 61 high-level legitimacy, since guaranteed by the guardian 10, the legitimacy of the tutor 10 is itself guaranteed, through the affiliation, under the control of the authoritative cryptographic pair 42 , by the authority 40.
- guardian attribute for example a tutoring cryptographic material 12, such as for example the public key tutor PuKTu
- the electronic guardian document 11 it is possibly possible to verify the authenticity of the guardian 10 and thus, if applicable, the electronic guardian document 11.
- the term "possibly” refers to the case where the guardian 10 and / or the guardian electronic document 11 are actually present during the formality. Indeed the emancipation may have the purpose that the tutored 20 can achieve only a formality.
- control may change form.
- the authenticity of the guardian 10 can be controlled by offering the guardian the possibility, for example by means of a dialogue via a man-machine interface, to prove that he knows the guardian attribute. included in the certificate of affiliation 51.
- control is then validated if the carrier claiming to be the guardian 10 is able to respond to the request for guardian attribute evidence made to him by presenting directly or indirectly a satisfactory response in terms of expected guardian attribute.
- the guardian attribute consists of a portion of the guardian cryptographic material 12
- the authenticity check of the guardian 10 and the guardian document 11 can be done by proving that the guardian document 11 holds at least a part of the guardian cryptographic material 12.
- the cryptographic material tutor 12 includes a public key tutor PuKTu and a private key tutor PrKTu
- the verification of the authenticity of the tutor 10 and the electronic tutor document 11 is achieved by proving that he holds the private key tutor PrKTu. This is typically done by challenge-response, as previously described, with the public key tutor PuKTu, if said public key tutor PuKTu is available, for example included, in the certificate of affiliation 51 or in the certificate of emancipation 61 .
- the tutor 10, and with him his electronic tutor document 11, is thus able to prove that he holds the private key tutor PrKTu corresponding to the public key tutor PuKTu extracted from the certificate of affiliation 51 and so s' authenticate.
- a tutored attribute such as a tutored cryptographic material 22, such as for example the tutored public key PuKTe is available, in that it is, for example, included in the attestation. 51 and / or in the certificate of emancipation 61 and / or on any accessible medium during the verification, it is possible to proceed, in a similar way, to the control of the authenticity of the tutored 20 and thus, where applicable, the tutored electronic document 21.
- control may change form.
- the authenticity of the tutored can be controlled by offering the tutored the possibility, for example by a dialogue by means of a man-machine interface, to prove that he knows the tutored attribute. .
- control is then validated if the holder who claims to be the tutored person 20 is able to respond to the tutored attribute proof request made to him by directly or indirectly presenting a satisfactory answer in terms of the expected tutored attribute.
- the control of the authenticity of the tutored 20 and the tutored document 21 can be done by proving that the tutored document 21 holds at least some of the tutored cryptographic material 22.
- the tutored cryptographic material 22 comprises a tutored public key PuKTe and a tutored private key PrKTe
- the verification of the authenticity of the tutored 20 and the tutored electronic document 21 is achieved by proving that it holds the tutored private key PrKTe. This is typically done by challenge-response, as previously described, with the public key tutored PuKTe, if said tutored public key PuKTe is available, for example included, in the affiliation certificate 51 or in the certificate of emancipation 61 .
- the tutored 20, and with him his tutored electronic document 21, is thus able to prove that he holds the private key tutored PrKTe corresponding to the tutored public key PuKTe extracted from the certificate of affiliation 51 or the certificate emancipation 61 and thus to authenticate.
- An illustrative example with a travel document system depicts a minor child (tutored), who receives, by emancipation, an authorization to leave the territory.
- This authorization allows the child to cross a border even in the absence of a parent (guardian).
- the tutored electronic document 21 stores an affiliation certificate 51 associated with the parent who has achieved the emancipation and a certificate of emancipation 61 mentioning in the tutored authorization 23 that the child is authorized to travel alone. Border control of the electronic document 21 of the child alone would indicate that he can not cross the border.
- Tutored authorization 23 establishes the right of the child to travel alone.
- the emancipation certificate 61 read by the controller to the electronic document 21 of the child, makes it possible to determine that a parent has achieved an emancipation, and the affiliation certificate 51 proves that this parent is himself authorized by authority 40 to emancipate this right.
- the invention also relates to an electronic document comprising an affiliation certificate 51 and / or an affiliation seal 44 according to any one of the preceding embodiments, and / or an emancipation certificate. 61 and / or an emancipation seal 16 according to any one of the preceding embodiments.
- Such an electronic document may further comprise a tutor attribute, respectively a tutored attribute, as described above, in order to form an electronic tutor document, respectively a tutored electronic document.
Landscapes
- Engineering & Computer Science (AREA)
- Business, Economics & Management (AREA)
- Strategic Management (AREA)
- Tourism & Hospitality (AREA)
- Human Resources & Organizations (AREA)
- Educational Technology (AREA)
- Educational Administration (AREA)
- Computer Security & Cryptography (AREA)
- Economics (AREA)
- Theoretical Computer Science (AREA)
- Marketing (AREA)
- Physics & Mathematics (AREA)
- General Business, Economics & Management (AREA)
- General Physics & Mathematics (AREA)
- Entrepreneurship & Innovation (AREA)
- Health & Medical Sciences (AREA)
- Primary Health Care (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- General Health & Medical Sciences (AREA)
- Data Mining & Analysis (AREA)
- Operations Research (AREA)
- Quality & Reliability (AREA)
- Storage Device Security (AREA)
- Mobile Radio Communication Systems (AREA)
Abstract
Description
Claims
Applications Claiming Priority (2)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| FR1555719A FR3037699A1 (fr) | 2015-06-22 | 2015-06-22 | Procedes d'affiliation, d'emancipation, et de verification entre un tuteur et un tutore. |
| PCT/FR2016/051511 WO2016207536A1 (fr) | 2015-06-22 | 2016-06-21 | Procédés d'affiliation, d'émancipation, et de vérification entre un tuteur et un tutoré. |
Publications (1)
| Publication Number | Publication Date |
|---|---|
| EP3311341A1 true EP3311341A1 (fr) | 2018-04-25 |
Family
ID=55361564
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| EP16736908.1A Withdrawn EP3311341A1 (fr) | 2015-06-22 | 2016-06-21 | Procédés d'affiliation, d'émancipation, et de vérification entre un tuteur et un tutoré. |
Country Status (4)
| Country | Link |
|---|---|
| US (1) | US20180294970A1 (fr) |
| EP (1) | EP3311341A1 (fr) |
| FR (1) | FR3037699A1 (fr) |
| WO (1) | WO2016207536A1 (fr) |
Families Citing this family (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US11741239B2 (en) * | 2018-10-17 | 2023-08-29 | Omnitracs, Llc | Blockchain-based hours-of-service system |
Family Cites Families (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US8887297B2 (en) * | 2007-07-13 | 2014-11-11 | Microsoft Corporation | Creating and validating cryptographically secured documents |
-
2015
- 2015-06-22 FR FR1555719A patent/FR3037699A1/fr not_active Withdrawn
-
2016
- 2016-06-21 US US15/738,556 patent/US20180294970A1/en not_active Abandoned
- 2016-06-21 EP EP16736908.1A patent/EP3311341A1/fr not_active Withdrawn
- 2016-06-21 WO PCT/FR2016/051511 patent/WO2016207536A1/fr not_active Ceased
Also Published As
| Publication number | Publication date |
|---|---|
| FR3037699A1 (fr) | 2016-12-23 |
| US20180294970A1 (en) | 2018-10-11 |
| WO2016207536A1 (fr) | 2016-12-29 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| EP2071798B1 (fr) | Procédé et serveur de coffres-forts électroniques avec mutualisation d'informations | |
| CN113472521B (zh) | 基于区块链的实名数字身份管理方法、签名设备和验证设备 | |
| US20180108024A1 (en) | Open registry for provenance and tracking of goods in the supply chain | |
| KR20210024992A (ko) | 블록체인 내에서 코드와 이미지를 사용하는 시스템과 방법 | |
| US20180032759A1 (en) | Open registry for human identification | |
| EP1964077A1 (fr) | Procede de certification et d'authentification ulterieure de documents originaux papier ou numeriques pour constitution de preuves | |
| EP0619660A1 (fr) | Procédé de signature d'un fichier informatique et dispositif pour la mise en oeuvre | |
| US12432195B2 (en) | Using globally-unique numbers for all secure unique transactions, authentications, verifications, and messaging identities | |
| EP3701462A1 (fr) | Méthode et système d'inscription sécurisé de clés cryptographiques sur un support physique pour clés cryptographiques, et support physique produit | |
| US12494907B2 (en) | Delivering random number keys securely for one-time pad symmetric key encryption | |
| WO2018075403A1 (fr) | Registre ouvert pour la provenance et le suivi de marchandises dans la chaîne d'approvisionnement | |
| WO2010100064A1 (fr) | Procédé d'établissement sécurisé d'un contrat multipartite virtuel matérialisable | |
| WO2018067974A1 (fr) | Registre ouvert pour identification humaine | |
| EP3488390B1 (fr) | Procédé de communication rfid sécurisée | |
| WO2010007479A2 (fr) | Appareil et procédé de génération d'un titre sécurisé à partir d'un titre officiel | |
| EP3311341A1 (fr) | Procédés d'affiliation, d'émancipation, et de vérification entre un tuteur et un tutoré. | |
| EP2954449B1 (fr) | Authentification de signature manuscrite numérisée | |
| EP3311342A1 (fr) | Procédé de délégation et de vérification de droits sur un tutoré entre un tuteur et un tiers. | |
| EP4193283B1 (fr) | Procédé pour générer un document numérique sécurisé stocké sur un terminal mobile et associé à une identité numérique | |
| EP3032450B1 (fr) | Procédé de contrôle d'une authenticité d'un terminal de paiement et terminal ainsi sécurisé | |
| BE1015988A6 (fr) | Carte plastique produites en 3 couches format carte de credit, individualise par deux pistes memoire non reproductible sur la partie optique digitale, integration d'une antenne et puce et d'un procede de paiement et d'authentification remplacant la certification sur internet, le serveur d'authentification et la methode de realisation. | |
| FR3150016A3 (fr) | Ensemble de données sécurisé et procédure d’émission et de lecture d’un tel ensemble | |
| FR2996660A1 (fr) | Support d'identification et procede de realisation d'un support d'identification et procede de verification d'authenticite | |
| FR3150017A3 (fr) | Ensemble de données sécurisé et procédure d’émission et de lecture d’un tel ensemble | |
| WO1994010660A1 (fr) | Procede et systeme d'inscription d'une information sur un support permettant de certifier ulterieurement l'originalite de cette information |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| STAA | Information on the status of an ep patent application or granted ep patent |
Free format text: STATUS: THE INTERNATIONAL PUBLICATION HAS BEEN MADE |
|
| PUAI | Public reference made under article 153(3) epc to a published international application that has entered the european phase |
Free format text: ORIGINAL CODE: 0009012 |
|
| STAA | Information on the status of an ep patent application or granted ep patent |
Free format text: STATUS: REQUEST FOR EXAMINATION WAS MADE |
|
| 17P | Request for examination filed |
Effective date: 20180118 |
|
| AK | Designated contracting states |
Kind code of ref document: A1 Designated state(s): AL AT BE BG CH CY CZ DE DK EE ES FI FR GB GR HR HU IE IS IT LI LT LU LV MC MK MT NL NO PL PT RO RS SE SI SK SM TR |
|
| AX | Request for extension of the european patent |
Extension state: BA ME |
|
| DAV | Request for validation of the european patent (deleted) | ||
| DAX | Request for extension of the european patent (deleted) | ||
| STAA | Information on the status of an ep patent application or granted ep patent |
Free format text: STATUS: EXAMINATION IS IN PROGRESS |
|
| 17Q | First examination report despatched |
Effective date: 20200207 |
|
| STAA | Information on the status of an ep patent application or granted ep patent |
Free format text: STATUS: THE APPLICATION IS DEEMED TO BE WITHDRAWN |
|
| 18D | Application deemed to be withdrawn |
Effective date: 20200818 |