JP7551080B2 - 最適化された公開鍵基盤を備える組み込みシステムのネットワークを保護および管理するための方法ならびにアーキテクチャ - Google Patents
最適化された公開鍵基盤を備える組み込みシステムのネットワークを保護および管理するための方法ならびにアーキテクチャ Download PDFInfo
- Publication number
- JP7551080B2 JP7551080B2 JP2021526464A JP2021526464A JP7551080B2 JP 7551080 B2 JP7551080 B2 JP 7551080B2 JP 2021526464 A JP2021526464 A JP 2021526464A JP 2021526464 A JP2021526464 A JP 2021526464A JP 7551080 B2 JP7551080 B2 JP 7551080B2
- Authority
- JP
- Japan
- Prior art keywords
- micro
- certificate
- public key
- microcertificate
- response
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Active
Links
- 238000000034 method Methods 0.000 title claims description 80
- 238000004891 communication Methods 0.000 claims description 91
- 230000004044 response Effects 0.000 claims description 56
- 230000006835 compression Effects 0.000 claims description 18
- 238000007906 compression Methods 0.000 claims description 18
- 230000000694 effects Effects 0.000 claims description 7
- 238000007726 management method Methods 0.000 description 34
- 238000012545 processing Methods 0.000 description 27
- 238000010586 diagram Methods 0.000 description 21
- 230000005540 biological transmission Effects 0.000 description 14
- 238000005516 engineering process Methods 0.000 description 12
- 230000006870 function Effects 0.000 description 10
- 230000007246 mechanism Effects 0.000 description 8
- 230000008569 process Effects 0.000 description 7
- 230000001010 compromised effect Effects 0.000 description 6
- 238000013461 design Methods 0.000 description 5
- 238000013459 approach Methods 0.000 description 4
- 230000018109 developmental process Effects 0.000 description 4
- 230000010354 integration Effects 0.000 description 4
- 238000012795 verification Methods 0.000 description 4
- QVFWZNCVPCJQOP-UHFFFAOYSA-N chloralodol Chemical compound CC(O)(C)CC(C)OC(O)C(Cl)(Cl)Cl QVFWZNCVPCJQOP-UHFFFAOYSA-N 0.000 description 3
- 230000008520 organization Effects 0.000 description 3
- 230000008929 regeneration Effects 0.000 description 3
- 238000011069 regeneration method Methods 0.000 description 3
- 230000008901 benefit Effects 0.000 description 2
- 230000002093 peripheral effect Effects 0.000 description 2
- 230000003068 static effect Effects 0.000 description 2
- 238000010200 validation analysis Methods 0.000 description 2
- 238000012935 Averaging Methods 0.000 description 1
- 230000002411 adverse Effects 0.000 description 1
- 238000003491 array Methods 0.000 description 1
- 230000002457 bidirectional effect Effects 0.000 description 1
- 238000001193 catalytic steam reforming Methods 0.000 description 1
- 230000008859 change Effects 0.000 description 1
- 238000013480 data collection Methods 0.000 description 1
- 230000001934 delay Effects 0.000 description 1
- 230000003203 everyday effect Effects 0.000 description 1
- 239000000284 extract Substances 0.000 description 1
- 238000013507 mapping Methods 0.000 description 1
- 238000012986 modification Methods 0.000 description 1
- 230000004048 modification Effects 0.000 description 1
- 238000012806 monitoring device Methods 0.000 description 1
- 230000003287 optical effect Effects 0.000 description 1
- 238000005457 optimization Methods 0.000 description 1
- 238000005549 size reduction Methods 0.000 description 1
- 238000012546 transfer Methods 0.000 description 1
Images
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/3263—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving certificates, e.g. public key certificate [PKC] or attribute certificate [AC]; Public key infrastructure [PKI] arrangements
- H04L9/3268—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving certificates, e.g. public key certificate [PKC] or attribute certificate [AC]; Public key infrastructure [PKI] arrangements using certificate validation, registration, distribution or revocation, e.g. certificate revocation list [CRL]
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/3263—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving certificates, e.g. public key certificate [PKC] or attribute certificate [AC]; Public key infrastructure [PKI] arrangements
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/006—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols involving public key infrastructure [PKI] trust models
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/3247—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving digital signatures
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Mobile Radio Communication Systems (AREA)
- Data Exchanges In Wide-Area Networks (AREA)
Applications Claiming Priority (3)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| SG10201810250P | 2018-11-16 | ||
| SG10201810250P | 2018-11-16 | ||
| PCT/SG2019/050382 WO2020101567A1 (en) | 2018-11-16 | 2019-07-31 | Method and architecture for securing and managing networks of embedded systems with optimised public key infrastructure |
Publications (4)
| Publication Number | Publication Date |
|---|---|
| JP2022507488A JP2022507488A (ja) | 2022-01-18 |
| JPWO2020101567A5 JPWO2020101567A5 (https=) | 2022-08-08 |
| JP2022507488A5 JP2022507488A5 (https=) | 2022-08-08 |
| JP7551080B2 true JP7551080B2 (ja) | 2024-09-17 |
Family
ID=70733044
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| JP2021526464A Active JP7551080B2 (ja) | 2018-11-16 | 2019-07-31 | 最適化された公開鍵基盤を備える組み込みシステムのネットワークを保護および管理するための方法ならびにアーキテクチャ |
Country Status (6)
| Country | Link |
|---|---|
| US (1) | US12250325B2 (https=) |
| EP (1) | EP3881492A4 (https=) |
| JP (1) | JP7551080B2 (https=) |
| AU (1) | AU2019379062B2 (https=) |
| SG (1) | SG11202105077UA (https=) |
| WO (1) | WO2020101567A1 (https=) |
Families Citing this family (8)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| EP3989483A1 (en) * | 2020-10-26 | 2022-04-27 | Viakoo, Inc | Systems and methods of remotely updating a multitude of ip connected devices |
| US12494900B2 (en) * | 2022-02-01 | 2025-12-09 | Juniper Networks, Inc. | Public key infrastructure based session authentication |
| CN114710289B (zh) * | 2022-06-02 | 2022-09-02 | 确信信息股份有限公司 | 物联网终端安全注册和接入方法及系统 |
| US11811752B1 (en) * | 2022-08-03 | 2023-11-07 | 1080 Network, Inc. | Systems, methods, and computing platforms for executing credential-less network-based communication exchanges |
| US12132846B2 (en) | 2023-03-24 | 2024-10-29 | Symmera Inc. | System and method for extended attributes in certificates for dynamic authorization |
| US11968302B1 (en) | 2023-03-24 | 2024-04-23 | Srinivas Kumar | Method and system for pre-shared key (PSK) based secure communications with domain name system (DNS) authenticator |
| US12476793B2 (en) | 2023-03-24 | 2025-11-18 | Symmera Inc. | System and method to securely distribute authenticated and trusted data streams to AI systems |
| US12015721B1 (en) | 2023-03-24 | 2024-06-18 | Srinivas Kumar | System and method for dynamic retrieval of certificates with remote lifecycle management |
Citations (6)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| JP2001069137A (ja) | 1999-08-25 | 2001-03-16 | Nippon Telegr & Teleph Corp <Ntt> | 公開鍵証明証の発行方法並びに利用者の端末装置及び認証センタ並びにこれらのプログラムを記録した媒体 |
| JP2004173286A (ja) | 2002-11-20 | 2004-06-17 | Microsoft Corp | 暗号化演算を実行するために証明書の縮約情報を送信するシステムおよび方法 |
| JP2009169171A (ja) | 2008-01-17 | 2009-07-30 | Nippon Telegr & Teleph Corp <Ntt> | 楕円曲線の点圧縮装置、楕円曲線の点展開装置、それらの方法及びプログラム |
| US20100202616A1 (en) | 2009-02-12 | 2010-08-12 | General Motors Corporation | Method of securing and authenticating data using micro-certificates |
| US20160105289A1 (en) | 2014-10-08 | 2016-04-14 | Google Inc. | Certificates for low-power or low-memory devices |
| JP2018038036A (ja) | 2016-08-30 | 2018-03-08 | 株式会社ワコム | トランスポート層セキュリティを用いたサインタブレットとホストコンピュータとの間における認証及び安全なデータ送信 |
Family Cites Families (19)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US4405829A (en) | 1977-12-14 | 1983-09-20 | Massachusetts Institute Of Technology | Cryptographic communications system and method |
| US5093860A (en) | 1990-09-27 | 1992-03-03 | Motorola, Inc. | Key management system |
| US5231668A (en) | 1991-07-26 | 1993-07-27 | The United States Of America, As Represented By The Secretary Of Commerce | Digital signature algorithm |
| US6252960B1 (en) | 1998-08-04 | 2001-06-26 | Hewlett-Packard Company | Compression and decompression of elliptic curve data points |
| US8327146B2 (en) * | 2008-03-31 | 2012-12-04 | General Motors Llc | Wireless communication using compact certificates |
| KR20090104421A (ko) | 2008-03-31 | 2009-10-06 | 고려대학교 산학협력단 | 무선센서네트워크에서의 타원곡선암호 기반 키 설정 방법과이를 이용한 무선센서네트워크 시스템 및 기록매체 |
| EP2334008A1 (en) | 2009-12-10 | 2011-06-15 | Tata Consultancy Services Limited | A system and method for designing secure client-server communication protocols based on certificateless public key infrastructure |
| US9832026B2 (en) | 2010-04-30 | 2017-11-28 | T-Central, Inc. | System and method from Internet of Things (IoT) security and management |
| KR101135841B1 (ko) | 2010-11-25 | 2012-04-19 | 한국전력공사 | 원격검침 프로토콜을 활용한 보안시스템 및 그 방법 |
| US20120302265A1 (en) * | 2011-05-24 | 2012-11-29 | General Motors Llc | Vehicle telematics communication for providing vehicle telematics services |
| KR101357074B1 (ko) | 2011-12-12 | 2014-02-05 | 고려대학교 산학협력단 | 공개키 기반의 키 공유 메커니즘을 이용한 보안 키 설정 방법 |
| US10164966B2 (en) | 2013-02-25 | 2018-12-25 | Lockstep Technologies Pty Ltd | Decoupling identity from devices in the internet of things |
| US9215075B1 (en) | 2013-03-15 | 2015-12-15 | Poltorak Technologies Llc | System and method for secure relayed communications from an implantable medical device |
| US9706372B2 (en) * | 2014-04-03 | 2017-07-11 | General Motors Llc | Secure SMS messaging |
| US20160156614A1 (en) | 2014-11-28 | 2016-06-02 | Hcl Technologies Limited | Provisioning a device over an internet of things |
| US9838390B2 (en) * | 2015-03-31 | 2017-12-05 | Afero, Inc. | System and method for automatic wireless network authentication |
| WO2017053048A1 (en) | 2015-09-25 | 2017-03-30 | Pcms Holdings, Inc. | Domain based iot authorization and authentication |
| US10164963B2 (en) | 2015-10-23 | 2018-12-25 | Oracle International Corporation | Enforcing server authentication based on a hardware token |
| US10523437B2 (en) | 2016-01-27 | 2019-12-31 | Lg Electronics Inc. | System and method for authentication of things |
-
2019
- 2019-07-31 EP EP19885191.7A patent/EP3881492A4/en active Pending
- 2019-07-31 US US17/293,928 patent/US12250325B2/en active Active
- 2019-07-31 JP JP2021526464A patent/JP7551080B2/ja active Active
- 2019-07-31 WO PCT/SG2019/050382 patent/WO2020101567A1/en not_active Ceased
- 2019-07-31 AU AU2019379062A patent/AU2019379062B2/en active Active
- 2019-07-31 SG SG11202105077UA patent/SG11202105077UA/en unknown
Patent Citations (6)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| JP2001069137A (ja) | 1999-08-25 | 2001-03-16 | Nippon Telegr & Teleph Corp <Ntt> | 公開鍵証明証の発行方法並びに利用者の端末装置及び認証センタ並びにこれらのプログラムを記録した媒体 |
| JP2004173286A (ja) | 2002-11-20 | 2004-06-17 | Microsoft Corp | 暗号化演算を実行するために証明書の縮約情報を送信するシステムおよび方法 |
| JP2009169171A (ja) | 2008-01-17 | 2009-07-30 | Nippon Telegr & Teleph Corp <Ntt> | 楕円曲線の点圧縮装置、楕円曲線の点展開装置、それらの方法及びプログラム |
| US20100202616A1 (en) | 2009-02-12 | 2010-08-12 | General Motors Corporation | Method of securing and authenticating data using micro-certificates |
| US20160105289A1 (en) | 2014-10-08 | 2016-04-14 | Google Inc. | Certificates for low-power or low-memory devices |
| JP2018038036A (ja) | 2016-08-30 | 2018-03-08 | 株式会社ワコム | トランスポート層セキュリティを用いたサインタブレットとホストコンピュータとの間における認証及び安全なデータ送信 |
Also Published As
| Publication number | Publication date |
|---|---|
| SG11202105077UA (en) | 2021-06-29 |
| US20220006652A1 (en) | 2022-01-06 |
| JP2022507488A (ja) | 2022-01-18 |
| US12250325B2 (en) | 2025-03-11 |
| EP3881492A4 (en) | 2022-07-27 |
| AU2019379062B2 (en) | 2025-04-24 |
| WO2020101567A1 (en) | 2020-05-22 |
| AU2019379062A1 (en) | 2021-06-10 |
| EP3881492A1 (en) | 2021-09-22 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| JP7551080B2 (ja) | 最適化された公開鍵基盤を備える組み込みシステムのネットワークを保護および管理するための方法ならびにアーキテクチャ | |
| US12261835B2 (en) | Authentication of networked devices having low computational capacity | |
| US11265709B2 (en) | Efficient internet-of-things (IoT) data encryption/decryption | |
| US10601594B2 (en) | End-to-end service layer authentication | |
| US20220141004A1 (en) | Efficient Internet-Of-Things (IoT) Data Encryption/Decryption | |
| Rizzardi et al. | Analysis on functionalities and security features of Internet of Things related protocols | |
| KR101704540B1 (ko) | M2m 환경의 다중 디바이스 데이터 공유를 위한 그룹키 관리 방법 | |
| CN116938441A (zh) | 互联网密钥交换过程中的量子密码学 | |
| Schmitt et al. | TinyTO: Two-way authentication for constrained devices in the Internet of Things | |
| Sciancalepore et al. | On securing IEEE 802.15. 4 networks through a standard compliant framework | |
| Li | IoT node authentication | |
| Yang et al. | Enhancing Cryptographic Security in Smart Consumer Electronics with a Hybrid Classical–Post-Quantum Framework | |
| Migwi et al. | Lightweight and scalable security for wireless IoT systems: challenges and research directions | |
| Noack | Optimization of two-way authentication protocol in internet of things | |
| Shafagh | Leveraging Public-key-based Authentication for the Internet of Things | |
| WO2023130970A1 (zh) | 集成可信度量的通信方法和装置 | |
| US8356175B2 (en) | Methods and apparatus to perform associated security protocol extensions | |
| Basic et al. | Establishing Dynamic Secure Sessions for ECQV Implicit Certificates in Embedded Systems | |
| Fischer et al. | Security for building automation with hardware-based node authentication | |
| Mahmoud | Optimal Selection of IPsec-Based Security Mechanisms in Resource Constrained IoT Environment | |
| Leu et al. | Dynamic Session Key Allocation with Time-Indexed Ascon for Low-Latency Cloud-Edge-End Communication | |
| Gauhar Fatima et al. | A security protocol for wireless sensor networks | |
| Boudguiga et al. | Server assisted key establishment for WSN: A MIKEY-Ticket approach | |
| Dhanasekaran | Hierarchical Hash-based Mutual Trust Authentication Framework for Secure and Scalable Vehicular Cloud Communication in Dynamic Environments. | |
| Adibi | A multilayer non‐repudiation system: a Suite‐B approach |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| A521 | Request for written amendment filed |
Free format text: JAPANESE INTERMEDIATE CODE: A523 Effective date: 20220728 |
|
| A621 | Written request for application examination |
Free format text: JAPANESE INTERMEDIATE CODE: A621 Effective date: 20220728 |
|
| A977 | Report on retrieval |
Free format text: JAPANESE INTERMEDIATE CODE: A971007 Effective date: 20230727 |
|
| A131 | Notification of reasons for refusal |
Free format text: JAPANESE INTERMEDIATE CODE: A131 Effective date: 20230829 |
|
| A521 | Request for written amendment filed |
Free format text: JAPANESE INTERMEDIATE CODE: A523 Effective date: 20231129 |
|
| A131 | Notification of reasons for refusal |
Free format text: JAPANESE INTERMEDIATE CODE: A131 Effective date: 20240227 |
|
| A601 | Written request for extension of time |
Free format text: JAPANESE INTERMEDIATE CODE: A601 Effective date: 20240524 |
|
| A521 | Request for written amendment filed |
Free format text: JAPANESE INTERMEDIATE CODE: A523 Effective date: 20240726 |
|
| TRDD | Decision of grant or rejection written | ||
| A01 | Written decision to grant a patent or to grant a registration (utility model) |
Free format text: JAPANESE INTERMEDIATE CODE: A01 Effective date: 20240806 |
|
| A61 | First payment of annual fees (during grant procedure) |
Free format text: JAPANESE INTERMEDIATE CODE: A61 Effective date: 20240826 |
|
| R150 | Certificate of patent or registration of utility model |
Ref document number: 7551080 Country of ref document: JP Free format text: JAPANESE INTERMEDIATE CODE: R150 |