JP2010510702A - 第1装置と第2装置とを関連付ける方法及び装置 - Google Patents
第1装置と第2装置とを関連付ける方法及び装置 Download PDFInfo
- Publication number
- JP2010510702A JP2010510702A JP2009536686A JP2009536686A JP2010510702A JP 2010510702 A JP2010510702 A JP 2010510702A JP 2009536686 A JP2009536686 A JP 2009536686A JP 2009536686 A JP2009536686 A JP 2009536686A JP 2010510702 A JP2010510702 A JP 2010510702A
- Authority
- JP
- Japan
- Prior art keywords
- user
- login
- password
- knows
- srp
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Granted
Links
- 238000000034 method Methods 0.000 title claims abstract description 11
- 150000003839 salts Chemical class 0.000 claims abstract description 12
- 230000004044 response Effects 0.000 claims description 16
- 238000004891 communication Methods 0.000 claims description 12
- 238000005516 engineering process Methods 0.000 description 2
- 230000000670 limiting effect Effects 0.000 description 2
- 238000012795 verification Methods 0.000 description 2
- 230000006870 function Effects 0.000 description 1
- 238000003780 insertion Methods 0.000 description 1
- 230000037431 insertion Effects 0.000 description 1
- 238000004519 manufacturing process Methods 0.000 description 1
Images
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W4/00—Services specially adapted for wireless communication networks; Facilities therefor
- H04W4/06—Selective distribution of broadcast services, e.g. multimedia broadcast multicast service [MBMS]; Services to user groups; One-way selective calling services
- H04W4/08—User group management
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
- H04L63/0869—Network architectures or network communication protocols for network security for authentication of entities for achieving mutual authentication
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
- H04L63/083—Network architectures or network communication protocols for network security for authentication of entities using passwords
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/14—Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
- H04L63/1441—Countermeasures against malicious traffic
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/3226—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials using a predetermined code, e.g. password, passphrase or PIN
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/3271—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials using challenge-response
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/06—Authentication
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/50—Secure pairing of devices
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L2209/00—Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
- H04L2209/80—Wireless
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W92/00—Interfaces specially adapted for wireless communication networks
- H04W92/16—Interfaces between hierarchically similar devices
- H04W92/18—Interfaces between hierarchically similar devices between terminal devices
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Computer Hardware Design (AREA)
- Computing Systems (AREA)
- General Engineering & Computer Science (AREA)
- Multimedia (AREA)
- Mobile Radio Communication Systems (AREA)
- Telephonic Communication Services (AREA)
- Computer And Data Communications (AREA)
- Storage Device Security (AREA)
Abstract
Description
Claims (8)
- ユーザのログイン及びパスワードベリファイアを知っている少なくとも1つの装置のコミュニティに第1装置を挿入する方法であって、
前記第1装置において、
前記ユーザのログイン及びパスワードを受信するステップと、
到達可能な装置を検索するステップと、
少なくとも1つの到達可能な装置に前記ユーザのログインを知っているか問い合わせるステップと、
少なくとも1つのレスポンスを受信するステップと、
前記レスポンスが肯定的である場合、前記応答した装置に対して前記第1装置が前記ユーザのパスワードを知っていることを証明し、前記第1装置に対して前記応答した装置が前記ユーザのパスワードベリファイアを知っていることを証明する、前記応答した装置とのSRP(Secure Remote Password)認証を実行するステップと、
前記SRP認証が成功した場合、前記ユーザのパスワードベリファイアを計算及び格納し、秘密コミュニティキーを受信及び格納するステップと、
を有する方法。 - 前記SRP認証を実行するステップと前記ユーザのパスワードベリファイアを計算及び格納するステップとの間に、前記応答した装置とのセキュアチャネルを確立するステップをさらに有する、請求項1記載の方法。
- SRP認証は、少なくとも1つのSRP認証が成功するまで、肯定的なレスポンスを提供した各装置により順次実行される、請求項1記載の方法。
- 前記問い合わせるステップは、前記ユーザのログインのセキュアソルトハッシュを有するメッセージを送信するステップを有する、請求項1記載の方法。
- 前記問い合わせるステップは、メッセージを配信することによって実行される、請求項1記載の方法。
- ユーザのログイン及びパスワードベリファイアを知っている少なくとも1つの装置のコミュニティに挿入されるよう構成される第1装置であって、
前記ユーザのログイン及びパスワードを受信するよう構成されるユーザインタフェースと、
到達可能な装置を検索し、少なくとも1つの到達可能な装置に前記ユーザのログインを知っているか問い合わせ、少なくとも1つのレスポンスを受信するよう構成される通信ユニットと、
前記受信したレスポンスが肯定的である場合、前記応答した装置に対して前記第1装置が前記ユーザのパスワードを知っていることを証明し、前記第1装置に対して前記応答した装置が前記ユーザのパスワードベリファイアを知っていることを証明する、前記応答した装置とのSRP(Secure Remote Password)認証を前記通信ユニットを介し実行し、前記ユーザのパスワードベリファイアを計算及び格納するよう構成されるプロセッサと、
を有し、
前記通信ユニットはさらに、前記応答した装置から秘密コミュニティキーを受信するよう構成される第1装置。 - 前記プロセッサはさらに、前記ユーザのログインのセキュアソルトハッシュを計算するよう構成され、
前記通信ユニットは、前記セキュアソルトハッシュを利用して、前記少なくとも1つの到達可能な装置に前記ユーザのログインを知っているか問い合わせるよう構成される、請求項6記載の第1装置。 - 前記プロセッサはさらに、少なくとも1つのSRP認証が成功するまで、肯定的なレスポンスを提供した各装置についてSRP認証を繰り返すよう構成される、請求項6記載の第1装置。
Applications Claiming Priority (3)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
EP06301160A EP1926279A1 (en) | 2006-11-21 | 2006-11-21 | Method and a first device for associating the first device with a second device |
EP06301160.5 | 2006-11-21 | ||
PCT/EP2007/060845 WO2008061848A2 (en) | 2006-11-21 | 2007-10-11 | Method and a first device for associating the first device with a second device |
Publications (2)
Publication Number | Publication Date |
---|---|
JP2010510702A true JP2010510702A (ja) | 2010-04-02 |
JP5171837B2 JP5171837B2 (ja) | 2013-03-27 |
Family
ID=38219026
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
JP2009536686A Expired - Fee Related JP5171837B2 (ja) | 2006-11-21 | 2007-10-11 | 第1装置と第2装置とを関連付ける方法及び装置 |
Country Status (6)
Country | Link |
---|---|
US (1) | US8219812B2 (ja) |
EP (2) | EP1926279A1 (ja) |
JP (1) | JP5171837B2 (ja) |
KR (1) | KR101454736B1 (ja) |
CN (1) | CN101554029B (ja) |
WO (1) | WO2008061848A2 (ja) |
Cited By (1)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
JP2016512662A (ja) * | 2013-01-25 | 2016-04-28 | コニンクリーケ・ケイピーエヌ・ナムローゼ・フェンノートシャップ | 3gpplteにおける通信移動体デバイス間の近接発見、認証、およびリンク確立 |
Families Citing this family (6)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US8959350B2 (en) | 2009-03-25 | 2015-02-17 | Pacid Technologies, Llc | Token for securing communication |
US8934625B2 (en) | 2009-03-25 | 2015-01-13 | Pacid Technologies, Llc | Method and system for securing communication |
WO2010111448A1 (en) | 2009-03-25 | 2010-09-30 | Pacid Technologies, Llc | Method and system for securing communication |
TW201103298A (en) | 2009-03-25 | 2011-01-16 | Pacid Technologies Llc | Method and system for securing communication |
WO2010111438A2 (en) | 2009-03-25 | 2010-09-30 | Pacid Technologies, Llc | System and method for protecting a secrets file |
US8479021B2 (en) | 2011-09-29 | 2013-07-02 | Pacid Technologies, Llc | Secure island computing system and method |
Citations (5)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
JP2001313634A (ja) * | 2000-03-17 | 2001-11-09 | Lucent Technol Inc | 通信方法 |
US6539479B1 (en) * | 1997-07-15 | 2003-03-25 | The Board Of Trustees Of The Leland Stanford Junior University | System and method for securely logging onto a remotely located computer |
JP2003513513A (ja) * | 1999-10-27 | 2003-04-08 | テレフォンアクチーボラゲット エル エム エリクソン(パブル) | 通信ネットワークにおける配列と方式 |
JP2004140655A (ja) * | 2002-10-18 | 2004-05-13 | Oki Electric Ind Co Ltd | 無線通信端末装置及び無線通信システム |
JP2004153438A (ja) * | 2002-10-29 | 2004-05-27 | Fujitsu Ltd | 通信装置、その情報処理方法及び情報処理プログラム |
Family Cites Families (7)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US5948064A (en) * | 1997-07-07 | 1999-09-07 | International Business Machines Corporation | Discovery of authentication server domains in a computer network |
US6788938B1 (en) * | 1999-05-31 | 2004-09-07 | Sony Corporation | Construction method of radio network system and radio transmission device |
DK1411674T3 (da) * | 2002-10-18 | 2006-04-18 | Buffalo Inc | System og fremgangsmåde til indstilling af krypteringsnögler, adgangspunkt, og system til indstilling af en autentificeringskode |
US7640324B2 (en) * | 2003-04-15 | 2009-12-29 | Microsoft Corporation | Small-scale secured computer network group without centralized management |
KR100581590B1 (ko) * | 2003-06-27 | 2006-05-22 | 주식회사 케이티 | 이중 요소 인증된 키 교환 방법 및 이를 이용한 인증방법과 그 방법을 포함하는 프로그램이 저장된 기록매체 |
CN1599316A (zh) * | 2004-09-17 | 2005-03-23 | 叶润国 | 一种非对称认证方案及远程接入安全协议 |
US20060293028A1 (en) * | 2005-06-27 | 2006-12-28 | Gadamsetty Uma M | Techniques to manage network authentication |
-
2006
- 2006-11-21 EP EP06301160A patent/EP1926279A1/en not_active Withdrawn
-
2007
- 2007-10-11 US US12/312,442 patent/US8219812B2/en not_active Expired - Fee Related
- 2007-10-11 EP EP07821212.3A patent/EP2084880B1/en not_active Not-in-force
- 2007-10-11 KR KR1020097010309A patent/KR101454736B1/ko active IP Right Grant
- 2007-10-11 JP JP2009536686A patent/JP5171837B2/ja not_active Expired - Fee Related
- 2007-10-11 CN CN2007800428347A patent/CN101554029B/zh not_active Expired - Fee Related
- 2007-10-11 WO PCT/EP2007/060845 patent/WO2008061848A2/en active Application Filing
Patent Citations (5)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US6539479B1 (en) * | 1997-07-15 | 2003-03-25 | The Board Of Trustees Of The Leland Stanford Junior University | System and method for securely logging onto a remotely located computer |
JP2003513513A (ja) * | 1999-10-27 | 2003-04-08 | テレフォンアクチーボラゲット エル エム エリクソン(パブル) | 通信ネットワークにおける配列と方式 |
JP2001313634A (ja) * | 2000-03-17 | 2001-11-09 | Lucent Technol Inc | 通信方法 |
JP2004140655A (ja) * | 2002-10-18 | 2004-05-13 | Oki Electric Ind Co Ltd | 無線通信端末装置及び無線通信システム |
JP2004153438A (ja) * | 2002-10-29 | 2004-05-27 | Fujitsu Ltd | 通信装置、その情報処理方法及び情報処理プログラム |
Non-Patent Citations (4)
Title |
---|
JPN6012064765; Gicheol Wang, Gihwan Cho, and Sangwon Bang: '"A Pair-wise Key Establishment Scheme without Predistributing Keys for Ad-hoc Networks"' 2005 IEEE International Conference on Communications (ICC 2005) Vol.5, 20050516, p.3520-3524, [online] * |
JPN6012064766; Thmas Wu: '"The Secure Remote Password Protocol"' 1998 Internet Society Symposium on Network and Distributed System Security Symposium , 19971111, p.1-17, [online] * |
JPN6012064767; T. Wu: '"The SRP Authentication and Key Exchange System"' Network Working Group Request for Comments: 2945 , 200009, [online] * |
JPN6012064769; Jeong Ok Kwon, Kouichi Sakurai, and Dong Hoon Lee: '"One-Round Protocol for Two-Party Verifier-Based Password-Authenticated Key Exchange"' LNCS, Communications and Multimedia Security Vol.4237, 200610, p.87-96 * |
Cited By (2)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
JP2016512662A (ja) * | 2013-01-25 | 2016-04-28 | コニンクリーケ・ケイピーエヌ・ナムローゼ・フェンノートシャップ | 3gpplteにおける通信移動体デバイス間の近接発見、認証、およびリンク確立 |
JP2017195606A (ja) * | 2013-01-25 | 2017-10-26 | コニンクリーケ・ケイピーエヌ・ナムローゼ・フェンノートシャップ | 3gpp lteにおける通信移動体デバイス間の近接発見、認証、およびリンク確立 |
Also Published As
Publication number | Publication date |
---|---|
US20100058452A1 (en) | 2010-03-04 |
US8219812B2 (en) | 2012-07-10 |
CN101554029A (zh) | 2009-10-07 |
EP2084880B1 (en) | 2019-09-04 |
KR20090095567A (ko) | 2009-09-09 |
JP5171837B2 (ja) | 2013-03-27 |
EP1926279A1 (en) | 2008-05-28 |
EP2084880A2 (en) | 2009-08-05 |
KR101454736B1 (ko) | 2014-10-27 |
CN101554029B (zh) | 2013-08-14 |
WO2008061848B1 (en) | 2008-09-18 |
WO2008061848A3 (en) | 2008-07-24 |
WO2008061848A2 (en) | 2008-05-29 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
US7257836B1 (en) | Security link management in dynamic networks | |
Li et al. | A secure chaotic maps and smart cards based password authentication and key agreement scheme with user anonymity for telecare medicine information systems | |
JP4847322B2 (ja) | 二重要素認証されたキー交換方法及びこれを利用した認証方法とその方法を含むプログラムが貯蔵された記録媒体 | |
CN107360571B (zh) | 在移动网络中的匿名相互认证和密钥协商协议的方法 | |
JP5171837B2 (ja) | 第1装置と第2装置とを関連付ける方法及び装置 | |
CN109639426B (zh) | 一种基于标识密码的双向自认证方法 | |
JP2010503323A (ja) | 公衆ネットワークにおいて、リアルタイムに認証および保証された通信チャネルを確立するための方法およびシステム | |
US20110179478A1 (en) | Method for secure transmission of sensitive data utilizing network communications and for one time passcode and multi-factor authentication | |
WO2016188053A1 (zh) | 一种无线网络接入方法、装置及计算机存储介质 | |
CN111490968A (zh) | 一种基于区块链技术的联盟多节点网络身份认证方法 | |
Krishnasrija et al. | A lightweight mutual and transitive authentication mechanism for IoT network | |
Hsu et al. | A privacy-preserved E2E authenticated key exchange protocol for multi-server architecture in edge computing networks | |
Kumar et al. | A secure and efficient computation based multifactor authentication scheme for Intelligent IoT-enabled WSNs | |
KR100901279B1 (ko) | 챕 챌린지 메시지를 이용한 네트워크 액세스 인증 방법 및시스템. | |
EP1622333A1 (en) | Method and apparatus for minimally onerous and rapid authentification | |
Nystroem | The EAP protected one-time password protocol (EAP-POTP) | |
Yuan et al. | A Robust ECC-Based Authentication and Key Agreement Protocol for 6G-Based Smart Home Environments | |
CN116614809B (zh) | 基于物理不可克隆函数的无线传感器网络认证方法 | |
Ordean et al. | Towards securing client-server connections against man-in-the-middle attacks | |
TWI625643B (zh) | 無線感測網路的匿名認證方法 | |
Liu et al. | A password based authentication protocol for access control in WLAN | |
CN118487769A (zh) | 基于puf的轻量级多网关的身份认证与密钥协商方法 | |
Mostefa et al. | User-Authentication Protocol to Secure Wireless Sensor Network Access in the Internet of Things Context | |
Chen et al. | A novel multi-server authentication protocol | |
Garg et al. | Design of secure authentication protocol in SOCKS V5 for VPN using mobile phone |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
A621 | Written request for application examination |
Free format text: JAPANESE INTERMEDIATE CODE: A621 Effective date: 20101001 |
|
TRDD | Decision of grant or rejection written | ||
A01 | Written decision to grant a patent or to grant a registration (utility model) |
Free format text: JAPANESE INTERMEDIATE CODE: A01 Effective date: 20121211 |
|
A61 | First payment of annual fees (during grant procedure) |
Free format text: JAPANESE INTERMEDIATE CODE: A61 Effective date: 20121225 |
|
R150 | Certificate of patent or registration of utility model |
Ref document number: 5171837 Country of ref document: JP Free format text: JAPANESE INTERMEDIATE CODE: R150 |
|
R250 | Receipt of annual fees |
Free format text: JAPANESE INTERMEDIATE CODE: R250 |
|
S111 | Request for change of ownership or part of ownership |
Free format text: JAPANESE INTERMEDIATE CODE: R313113 |
|
S531 | Written request for registration of change of domicile |
Free format text: JAPANESE INTERMEDIATE CODE: R313531 |
|
R350 | Written notification of registration of transfer |
Free format text: JAPANESE INTERMEDIATE CODE: R350 |
|
R250 | Receipt of annual fees |
Free format text: JAPANESE INTERMEDIATE CODE: R250 |
|
R250 | Receipt of annual fees |
Free format text: JAPANESE INTERMEDIATE CODE: R250 |
|
LAPS | Cancellation because of no payment of annual fees |