KR100582546B1 - 암호화/복호화 키를 이용한 메시지 송수신 방법 - Google Patents
암호화/복호화 키를 이용한 메시지 송수신 방법 Download PDFInfo
- Publication number
- KR100582546B1 KR100582546B1 KR1020030097154A KR20030097154A KR100582546B1 KR 100582546 B1 KR100582546 B1 KR 100582546B1 KR 1020030097154 A KR1020030097154 A KR 1020030097154A KR 20030097154 A KR20030097154 A KR 20030097154A KR 100582546 B1 KR100582546 B1 KR 100582546B1
- Authority
- KR
- South Korea
- Prior art keywords
- key
- user
- recovery
- kek
- session key
- Prior art date
Links
- 238000000034 method Methods 0.000 title claims abstract description 37
- 238000011084 recovery Methods 0.000 claims abstract description 70
- 230000006854 communication Effects 0.000 claims abstract description 27
- 238000004891 communication Methods 0.000 claims abstract description 23
- 230000005540 biological transmission Effects 0.000 abstract description 9
- 239000003795 chemical substances by application Substances 0.000 description 10
- 238000010586 diagram Methods 0.000 description 5
- 239000012634 fragment Substances 0.000 description 4
- 238000010200 validation analysis Methods 0.000 description 3
- 238000005538 encapsulation Methods 0.000 description 2
- 238000005516 engineering process Methods 0.000 description 2
- 230000008520 organization Effects 0.000 description 2
- 238000013459 approach Methods 0.000 description 1
- 238000007796 conventional method Methods 0.000 description 1
- 238000013500 data storage Methods 0.000 description 1
- 230000000694 effects Effects 0.000 description 1
- 230000003287 optical effect Effects 0.000 description 1
- 238000012360 testing method Methods 0.000 description 1
Images
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/08—Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/08—Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
- H04L9/0894—Escrow, recovery or storing of secret information, e.g. secret key escrow or cryptographic key storage
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Storage Device Security (AREA)
Abstract
Description
Claims (7)
- (a)송신 사용자가 암호문과 상기 암호문의 복호화에 요구되는 세션 키의 복구를 위해 필요한 정보인 DRF(Data Recovery Field)를 생성하여 수신 사용자에게 전송하는 단계; 및(b)상기 수신 사용자가 상기 복구에 필요한 정보로부터 상기 복호화에 필요한 세션 키를 직접 생성하여, 상기 암호문을 복호화하는 암호 통신 단계를 포함함을 특징으로 하는 암호화/복호화 키를 이용한 메시지 송수신 방법.
- 제 1 항에 있어서,(c)상기 사용자가, 상기 세션 키의 복구를 별도로 필요로 하는 경우, 키 복구 대행기관(KRA)에 상기 세션 키의 복구를 요청하는 키 복구 요청 단계를 더 포함함을 특징으로 하는 암호화/복호화 키를 이용한 메시지 송수신 방법.
- 제 2 항에 있어서, 상기 (b)단계는상기 수신 사용자가 상기 암호문을 복호화하기 전에 상기 세션 키가 상기 KRA에 의해 복구될 수 있음을 확인하기 위해, 상기 송신 사용자로부터 수신된 상기 DRF의 유효성을 검사하여 이루어지는 것을 특징으로 하는 암호화/복호화 키를 이용한 메시지 송수신 방법.
- 제 2 항 내지 제 3 항 중 어느 한 항에 있어서, 상기 (c)단계는(c1)상기 요청 사용자가 상기 복구 요청한 세션 키의 복구를 가능하게 하기 위해 상기 암호문과 상기 암호문에 대한 DRF를 획득하는 단계;(c2)상기 요청 사용자가 상기 DRF와 자신의 식별자(IDA)를 상기 KRA로 전송하여 상기 세션 키의 복구를 요청하는 단계; 및(c3)상기 KRA가 상기 IDA 에 해당하는 상기 사용자의 비밀값 KTAi, 상기 송신 사용자의 공개키 및 상기 수신 사용자의 인증서에서 얻어낸 상기 수신 사용자의 공개정보 vBi를 이용하여 KEK(Key Encryption Key)의 조각들인 KEKi를 계산하여 상기 요청 사용자에게 전송하는 단계를 포함하고, 상기 요청 사용자가 상기 KEKi로부터 상기 KEK를 구하여 상기 KEK를 상기 세션 키로 직접 지정하는 것을 특징으로 하는 암호화/복호화 키를 이용한 메시지 송수신 방법.
- 삭제
- 삭제
- 삭제
Priority Applications (2)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
KR1020030097154A KR100582546B1 (ko) | 2003-12-26 | 2003-12-26 | 암호화/복호화 키를 이용한 메시지 송수신 방법 |
US10/860,970 US20050141718A1 (en) | 2003-12-26 | 2004-06-03 | Method of transmitting and receiving message using encryption/decryption key |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
KR1020030097154A KR100582546B1 (ko) | 2003-12-26 | 2003-12-26 | 암호화/복호화 키를 이용한 메시지 송수신 방법 |
Publications (2)
Publication Number | Publication Date |
---|---|
KR20050065978A KR20050065978A (ko) | 2005-06-30 |
KR100582546B1 true KR100582546B1 (ko) | 2006-05-22 |
Family
ID=34698505
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
KR1020030097154A KR100582546B1 (ko) | 2003-12-26 | 2003-12-26 | 암호화/복호화 키를 이용한 메시지 송수신 방법 |
Country Status (2)
Country | Link |
---|---|
US (1) | US20050141718A1 (ko) |
KR (1) | KR100582546B1 (ko) |
Families Citing this family (18)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US6826407B1 (en) | 1999-03-29 | 2004-11-30 | Richard J. Helferich | System and method for integrating audio and visual messaging |
US6636733B1 (en) | 1997-09-19 | 2003-10-21 | Thompson Trust | Wireless messaging method |
US7003304B1 (en) | 1997-09-19 | 2006-02-21 | Thompson Investment Group, Llc | Paging transceivers and methods for selectively retrieving messages |
US6253061B1 (en) | 1997-09-19 | 2001-06-26 | Richard J. Helferich | Systems and methods for delivering information to a transmitting and receiving device |
US6983138B1 (en) | 1997-12-12 | 2006-01-03 | Richard J. Helferich | User interface for message access |
WO2007017882A1 (en) * | 2005-08-05 | 2007-02-15 | Hewlett-Packard Development Company L.P. | System, method and apparatus for cryptography key management for mobile devices |
US20070071243A1 (en) * | 2005-09-23 | 2007-03-29 | Microsoft Corporation | Key validation service |
US8189544B2 (en) * | 2006-06-26 | 2012-05-29 | Alcatel Lucent | Method of creating security associations in mobile IP networks |
US20080183623A1 (en) * | 2007-01-29 | 2008-07-31 | Zhangwei Xu | Secure Provisioning with Time Synchronization |
US8479020B2 (en) * | 2007-07-25 | 2013-07-02 | Motorola Mobility Llc | Method and apparatus for providing an asymmetric encrypted cookie for product data storage |
KR101351110B1 (ko) * | 2007-08-24 | 2014-01-16 | 한국과학기술원 | 통신 시스템에서 암호화된 데이터 송수신 장치 및 방법 |
US20090257593A1 (en) * | 2008-04-10 | 2009-10-15 | Comverse Ltd. | Method and apparatus for secure messaging |
CN101286840B (zh) * | 2008-05-29 | 2014-07-30 | 西安西电捷通无线网络通信股份有限公司 | 一种利用公钥密码技术的密钥分配方法及其系统 |
KR101027118B1 (ko) * | 2008-12-22 | 2011-04-05 | 한국전자통신연구원 | 데이터 감청 시스템의 서버, 감청 장치 및 그것의 데이터 감청 방법 |
US9106411B2 (en) * | 2012-09-30 | 2015-08-11 | Apple Inc. | Secure escrow service |
US9071429B1 (en) * | 2013-04-29 | 2015-06-30 | Amazon Technologies, Inc. | Revocable shredding of security credentials |
US9137011B2 (en) * | 2013-05-07 | 2015-09-15 | Empire Technology Development Llc | Rapid data encryption and decryption for secure communication over open channels with plausible deniability |
US10951406B2 (en) * | 2018-01-24 | 2021-03-16 | Salesforce.Com, Inc. | Preventing encryption key recovery by a cloud provider |
Family Cites Families (7)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US5852665A (en) * | 1995-04-13 | 1998-12-22 | Fortress U & T Ltd. | Internationally regulated system for one to one cryptographic communications with national sovereignty without key escrow |
US6249585B1 (en) * | 1998-04-08 | 2001-06-19 | Network Associates, Inc | Publicly verifiable key recovery |
US6278782B1 (en) * | 1997-09-16 | 2001-08-21 | Safenet, Inc. | Method of implementing a key recovery system |
US6246771B1 (en) * | 1997-11-26 | 2001-06-12 | V-One Corporation | Session key recovery system and method |
JP2000165373A (ja) * | 1998-11-25 | 2000-06-16 | Toshiba Corp | 暗号装置、暗号通信システム及び鍵復元システム並びに記憶媒体 |
US6473508B1 (en) * | 1998-12-22 | 2002-10-29 | Adam Lucas Young | Auto-recoverable auto-certifiable cryptosystems with unescrowed signature-only keys |
KR100406754B1 (ko) * | 2001-04-11 | 2003-11-21 | 한국정보보호진흥원 | 피케이아이 기반의 상업용 키위탁 방법 및 시스템 |
-
2003
- 2003-12-26 KR KR1020030097154A patent/KR100582546B1/ko not_active IP Right Cessation
-
2004
- 2004-06-03 US US10/860,970 patent/US20050141718A1/en not_active Abandoned
Also Published As
Publication number | Publication date |
---|---|
KR20050065978A (ko) | 2005-06-30 |
US20050141718A1 (en) | 2005-06-30 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
KR100734162B1 (ko) | 공중/개인키 쌍들의 안전한 분배 방법 및 장치 | |
US5535276A (en) | Yaksha, an improved system and method for securing communications using split private key asymmetric cryptography | |
KR100582546B1 (ko) | 암호화/복호화 키를 이용한 메시지 송수신 방법 | |
US20030012386A1 (en) | Forward-secure commercial key escrow systems and escrowing methods thereof | |
US20030115452A1 (en) | One time password entry to access multiple network sites | |
US20100195824A1 (en) | Method and Apparatus for Dynamic Generation of Symmetric Encryption Keys and Exchange of Dynamic Symmetric Key Infrastructure | |
US8433066B2 (en) | Method for generating an encryption/decryption key | |
EP1605625A2 (en) | A method and system for authorizing generation of asymmetric crypto-keys | |
WO2006078572A2 (en) | Asymmetric crypto-graphy with rolling key security | |
WO2002033884A2 (en) | Method and apparatus for providing a key distribution center | |
JP2003536320A (ja) | 複数のサーバを使用した遠隔パスワード認証のためのシステム、方法およびソフトウェア | |
JPH10511471A (ja) | フェイルセイフキィ捺印システム | |
EP1079565A2 (en) | Method of securely establishing a secure communication link via an unsecured communication network | |
Press | Secure transfer of identity and privilege attributes in an open systems environment | |
CN114826702B (zh) | 数据库访问密码加密方法、装置和计算机设备 | |
US11917056B1 (en) | System and method of securing a server using elliptic curve cryptography | |
US20020184501A1 (en) | Method and system for establishing secure data transmission in a data communications network notably using an optical media key encrypted environment (omkee) | |
Jan et al. | Two integrated schemes of user authentication and access control in a distributed computer network | |
KR100377196B1 (ko) | 다중 에이전트를 이용한 키 복구 시스템 및 그 방법 | |
US20240214187A1 (en) | System and Method of Creating Symmetric Keys Using Elliptic Curve Cryptography | |
JPH09130376A (ja) | 利用者パスワード認証方法 | |
JPH1155247A (ja) | 送信者匿名性確保秘密情報伝達方法、その装置及びそのプログラム記録媒体 | |
KR100337637B1 (ko) | 암호화된전자문서복구방법 | |
Yoon et al. | An optimized two factor authenticated key exchange protocol in PWLANs | |
Cillero et al. | Implementation of a User Anonymity Application Using a Privacy-Preserving Entropy-as-a-Service with Quantum Security |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
A201 | Request for examination | ||
PA0109 | Patent application |
Patent event code: PA01091R01D Comment text: Patent Application Patent event date: 20031226 |
|
PA0201 | Request for examination | ||
PG1501 | Laying open of application | ||
E902 | Notification of reason for refusal | ||
PE0902 | Notice of grounds for rejection |
Comment text: Notification of reason for refusal Patent event date: 20051101 Patent event code: PE09021S01D |
|
E701 | Decision to grant or registration of patent right | ||
PE0701 | Decision of registration |
Patent event code: PE07011S01D Comment text: Decision to Grant Registration Patent event date: 20060421 |
|
GRNT | Written decision to grant | ||
PR0701 | Registration of establishment |
Comment text: Registration of Establishment Patent event date: 20060516 Patent event code: PR07011E01D |
|
PR1002 | Payment of registration fee |
Payment date: 20060517 End annual number: 3 Start annual number: 1 |
|
PG1601 | Publication of registration | ||
PR1001 | Payment of annual fee |
Payment date: 20090504 Start annual number: 4 End annual number: 4 |
|
PR1001 | Payment of annual fee |
Payment date: 20100430 Start annual number: 5 End annual number: 5 |
|
FPAY | Annual fee payment |
Payment date: 20110511 Year of fee payment: 6 |
|
PR1001 | Payment of annual fee |
Payment date: 20110511 Start annual number: 6 End annual number: 6 |
|
LAPS | Lapse due to unpaid annual fee | ||
PC1903 | Unpaid annual fee |