KR101271464B1 - 이중 인증 시스템의 비밀키 암호화 방법 - Google Patents
이중 인증 시스템의 비밀키 암호화 방법 Download PDFInfo
- Publication number
- KR101271464B1 KR101271464B1 KR1020120055732A KR20120055732A KR101271464B1 KR 101271464 B1 KR101271464 B1 KR 101271464B1 KR 1020120055732 A KR1020120055732 A KR 1020120055732A KR 20120055732 A KR20120055732 A KR 20120055732A KR 101271464 B1 KR101271464 B1 KR 101271464B1
- Authority
- KR
- South Korea
- Prior art keywords
- key
- terminal
- secret key
- user
- encryption
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Active
Links
Images
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/3263—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving certificates, e.g. public key certificate [PKC] or attribute certificate [AC]; Public key infrastructure [PKI] arrangements
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/06—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols the encryption apparatus using shift registers or memories for block-wise or stream coding, e.g. DES systems or RC4; Hash functions; Pseudorandom sequence generators
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/08—Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
- H04L9/0816—Key establishment, i.e. cryptographic processes or cryptographic protocols whereby a shared secret becomes available to two or more parties, for subsequent use
- H04L9/0819—Key transport or distribution, i.e. key establishment techniques where one party creates or otherwise obtains a secret value, and securely transfers it to the other(s)
- H04L9/0825—Key transport or distribution, i.e. key establishment techniques where one party creates or otherwise obtains a secret value, and securely transfers it to the other(s) using asymmetric-key encryption or public key infrastructure [PKI], e.g. key signature or public key certificates
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/08—Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
- H04L9/0861—Generation of secret information including derivation or calculation of cryptographic keys or passwords
- H04L9/0866—Generation of secret information including derivation or calculation of cryptographic keys or passwords involving user or device identifiers, e.g. serial number, physical or biometrical information, DNA, hand-signature or measurable physical characteristics
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/14—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols using a plurality of keys or algorithms
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/3247—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving digital signatures
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Storage Device Security (AREA)
Abstract
Description
20 : 비밀키 암호화모듈
30 : 단말 운영체제
40 : 암호키
Claims (4)
- 단말 상에 공개키 방식의 두 개의 인증서(21, 23) 및 이에 대응하는 두 개의 대칭키 방식으로 암호화된 상태의 비밀키(22, 24)를 이용하는 이중 인증 시스템에서, 상기 단말 상에 저장되어 있는 두 개의 암호화된 상태의 비밀키(22, 24)를 복호화된 상태로 전환하는, 비밀키 암호화 방법에 있어서:
전자서명을 위해 사용자(10)로부터 상기 두 개의 인증서 중 어느 하나의 인증서(23)에 대응하는 하나의 사용자 암호가 입력되도록 대기하는 단계;
입력된 사용자 암호를 이용하여 상기 두 개의 인증서 중 다른 하나의 인증서(21)에 대응하는 암호화된 상태의 비밀키(22)를 복호화하기 위한 암호키(40)를 생성하는 단계; 및
생성된 암호키(40)를 이용하여 상기 암호화된 상태의 비밀키(22)를 복호화된 상태의 비밀키(26)로서 복호화하는 단계를
포함하는 것을 특징으로 하는, 이중 인증 시스템의 비밀키 암호화 방법. - 청구항 1에 있어서, 상기 두 개의 인증서(21, 23)는 사용자 인증을 위한 공인인증서(23) 및 단말 인증을 위한 기기인증서(21)이며, 상기 입력되는 사용자 암호는 상기 공인인증서(23)의 암호이고, 상기 생성되는 암호키(40)는 상기 기기인증서의 비밀키(22, 26)를 위한 것임을 특징으로 하는, 이중 인증 시스템의 비밀키 암호화 방법.
- 청구항 2에 있어서, 상기 암호키(40)를 생성하는 단계는: 단말 운영체제(30)로부터 단말의 고유한 일련번호 및 맥 주소를 포함하는 단말 고유정보를 획득하고, 획득된 단말의 고유정보를 더 가합하는 과정을 더 포함하는 것을 특징으로 하는, 이중 인증 시스템의 비밀키 암호화 방법.
- 청구항 3에 있어서, 상기 암호키(40)를 생성하는 단계는: 상기 단말 상에 이 단계에서 사용하기 위하여 미리 저장되어 있는 정적 키를 더 가합하는 과정을 더 포함하는 것을 특징으로 하는, 이중 인증 시스템의 비밀키 암호화 방법.
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
KR1020120055732A KR101271464B1 (ko) | 2012-05-25 | 2012-05-25 | 이중 인증 시스템의 비밀키 암호화 방법 |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
KR1020120055732A KR101271464B1 (ko) | 2012-05-25 | 2012-05-25 | 이중 인증 시스템의 비밀키 암호화 방법 |
Publications (1)
Publication Number | Publication Date |
---|---|
KR101271464B1 true KR101271464B1 (ko) | 2013-06-05 |
Family
ID=48866276
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
KR1020120055732A Active KR101271464B1 (ko) | 2012-05-25 | 2012-05-25 | 이중 인증 시스템의 비밀키 암호화 방법 |
Country Status (1)
Country | Link |
---|---|
KR (1) | KR101271464B1 (ko) |
Cited By (2)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
KR20170056562A (ko) * | 2014-09-05 | 2017-05-23 | 쿠앙치 인텔리전트 포토닉 테크놀로지 리미티드 | 지불 시스템 |
US10708777B2 (en) | 2016-10-14 | 2020-07-07 | Samsung Electronics Co., Ltd. | Method and apparatus for connection between electronic devices |
Citations (4)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
KR100850506B1 (ko) | 2006-05-09 | 2008-08-05 | 인하대학교 산학협력단 | 사용자 인증의 이중 강화를 위한 보안 관리 웹 서비스시스템 및 방법 |
JP2008287686A (ja) | 2007-04-18 | 2008-11-27 | National Institute Of Advanced Industrial & Technology | 暗号化及び復号化方法及びシステム、並びにプログラム |
KR20110110964A (ko) * | 2010-04-02 | 2011-10-10 | (주)네오위즈게임즈 | 서비스 잠금 기능을 제공하는 방법 및 그 서버 |
KR101232860B1 (ko) | 2012-04-27 | 2013-02-14 | ㈜ 엘케이컴즈 | 하이브리드 인증 시스템 및 그 제공방법 |
-
2012
- 2012-05-25 KR KR1020120055732A patent/KR101271464B1/ko active Active
Patent Citations (4)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
KR100850506B1 (ko) | 2006-05-09 | 2008-08-05 | 인하대학교 산학협력단 | 사용자 인증의 이중 강화를 위한 보안 관리 웹 서비스시스템 및 방법 |
JP2008287686A (ja) | 2007-04-18 | 2008-11-27 | National Institute Of Advanced Industrial & Technology | 暗号化及び復号化方法及びシステム、並びにプログラム |
KR20110110964A (ko) * | 2010-04-02 | 2011-10-10 | (주)네오위즈게임즈 | 서비스 잠금 기능을 제공하는 방법 및 그 서버 |
KR101232860B1 (ko) | 2012-04-27 | 2013-02-14 | ㈜ 엘케이컴즈 | 하이브리드 인증 시스템 및 그 제공방법 |
Cited By (3)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
KR20170056562A (ko) * | 2014-09-05 | 2017-05-23 | 쿠앙치 인텔리전트 포토닉 테크놀로지 리미티드 | 지불 시스템 |
KR101897593B1 (ko) * | 2014-09-05 | 2018-09-12 | 쿠앙치 인텔리전트 포토닉 테크놀로지 리미티드 | 지불 시스템 |
US10708777B2 (en) | 2016-10-14 | 2020-07-07 | Samsung Electronics Co., Ltd. | Method and apparatus for connection between electronic devices |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
US12244739B2 (en) | Confidential authentication and provisioning | |
Jiang et al. | On the security of a privacy-aware authentication scheme for distributed mobile cloud computing services | |
US9838205B2 (en) | Network authentication method for secure electronic transactions | |
US9338163B2 (en) | Method using a single authentication device to authenticate a user to a service provider among a plurality of service providers and device for performing such a method | |
US9231925B1 (en) | Network authentication method for secure electronic transactions | |
US8112787B2 (en) | System and method for securing a credential via user and server verification | |
CN102075522B (zh) | 一种结合数字证书和动态密码的安全认证与交易方法 | |
CN103929306B (zh) | 智能密钥设备和智能密钥设备的信息管理方法 | |
Nyang et al. | Keylogging-resistant visual authentication protocols | |
WO2019094611A1 (en) | Identity-linked authentication through a user certificate system | |
RU2584500C2 (ru) | Криптографический способ аутентификации и идентификации с шифрованием в реальном времени | |
CN106452764B (zh) | 一种标识私钥自动更新的方法及密码系统 | |
US8397281B2 (en) | Service assisted secret provisioning | |
CN104038486A (zh) | 一种基于标识型密码实现用户登录鉴别的系统及方法 | |
JP6627043B2 (ja) | Ssl通信システム、クライアント、サーバ、ssl通信方法、コンピュータプログラム | |
US20120124378A1 (en) | Method for personal identity authentication utilizing a personal cryptographic device | |
JP5324813B2 (ja) | 鍵生成装置、証明書生成装置、サービス提供システム、鍵生成方法、証明書生成方法、サービス提供方法およびプログラム | |
JP2021111925A (ja) | 電子署名システム | |
CN106789977A (zh) | 一种基于密钥分割实现手机令牌的方法及系统 | |
KR101271464B1 (ko) | 이중 인증 시스템의 비밀키 암호화 방법 | |
KR101616795B1 (ko) | Pki 기반의 개인키 파일 관리 방법 및 그 시스템 | |
KR20130100032A (ko) | 코드 서명 기법을 이용한 스마트폰 어플리케이션 배포 방법 | |
KR101146509B1 (ko) | 모바일 보안카드를 이용한 인터넷 뱅킹 거래 시스템 및 그 방법 | |
KR20120093594A (ko) | 공인인증서와 키수열발생기로 생성되는 opt를 이용한 트렌젝션보호 시스템 및 방법 | |
KR101298216B1 (ko) | 복수 카테고리 인증 시스템 및 방법 |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
A201 | Request for examination | ||
PA0109 | Patent application |
Patent event code: PA01091R01D Comment text: Patent Application Patent event date: 20120525 |
|
PA0201 | Request for examination | ||
N231 | Notification of change of applicant | ||
PN2301 | Change of applicant |
Patent event date: 20130319 Comment text: Notification of Change of Applicant Patent event code: PN23011R01D |
|
E701 | Decision to grant or registration of patent right | ||
PE0701 | Decision of registration |
Patent event code: PE07011S01D Comment text: Decision to Grant Registration Patent event date: 20130529 |
|
GRNT | Written decision to grant | ||
PR0701 | Registration of establishment |
Comment text: Registration of Establishment Patent event date: 20130530 Patent event code: PR07011E01D |
|
PR1002 | Payment of registration fee |
Payment date: 20130531 End annual number: 3 Start annual number: 1 |
|
PG1601 | Publication of registration | ||
FPAY | Annual fee payment |
Payment date: 20160725 Year of fee payment: 4 |
|
PR1001 | Payment of annual fee |
Payment date: 20160725 Start annual number: 4 End annual number: 4 |
|
FPAY | Annual fee payment |
Payment date: 20170525 Year of fee payment: 5 |
|
PR1001 | Payment of annual fee |
Payment date: 20170525 Start annual number: 5 End annual number: 5 |
|
FPAY | Annual fee payment |
Payment date: 20180525 Year of fee payment: 6 |
|
PR1001 | Payment of annual fee |
Payment date: 20180525 Start annual number: 6 End annual number: 6 |
|
FPAY | Annual fee payment |
Payment date: 20190625 Year of fee payment: 7 |
|
PR1001 | Payment of annual fee |
Payment date: 20190625 Start annual number: 7 End annual number: 7 |
|
PR1001 | Payment of annual fee |
Payment date: 20200525 Start annual number: 8 End annual number: 8 |
|
PR1001 | Payment of annual fee |
Payment date: 20210426 Start annual number: 9 End annual number: 9 |
|
PR1001 | Payment of annual fee |
Payment date: 20220310 Start annual number: 10 End annual number: 10 |
|
PR1001 | Payment of annual fee |
Payment date: 20230327 Start annual number: 11 End annual number: 11 |
|
PR1001 | Payment of annual fee |
Payment date: 20240425 Start annual number: 12 End annual number: 12 |
|
PR1001 | Payment of annual fee |
Payment date: 20250225 Start annual number: 13 End annual number: 13 |