RU2006101287A - Усовершенствованный защищенный аутентифицированный канал - Google Patents
Усовершенствованный защищенный аутентифицированный канал Download PDFInfo
- Publication number
- RU2006101287A RU2006101287A RU2006101287/09A RU2006101287A RU2006101287A RU 2006101287 A RU2006101287 A RU 2006101287A RU 2006101287/09 A RU2006101287/09 A RU 2006101287/09A RU 2006101287 A RU2006101287 A RU 2006101287A RU 2006101287 A RU2006101287 A RU 2006101287A
- Authority
- RU
- Russia
- Prior art keywords
- zero
- key
- knowledge protocol
- protocol
- authenticate
- Prior art date
Links
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
-
- G—PHYSICS
- G11—INFORMATION STORAGE
- G11B—INFORMATION STORAGE BASED ON RELATIVE MOVEMENT BETWEEN RECORD CARRIER AND TRANSDUCER
- G11B20/00—Signal processing not specific to the method of recording or reproducing; Circuits therefor
- G11B20/00086—Circuits for prevention of unauthorised reproduction or copying, e.g. piracy
-
- G—PHYSICS
- G06—COMPUTING; CALCULATING OR COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F15/00—Digital computers in general; Data processing equipment in general
- G06F15/16—Combinations of two or more digital computers each having at least an arithmetic unit, a program unit and a register, e.g. for a simultaneous processing of several programs
-
- G—PHYSICS
- G11—INFORMATION STORAGE
- G11B—INFORMATION STORAGE BASED ON RELATIVE MOVEMENT BETWEEN RECORD CARRIER AND TRANSDUCER
- G11B20/00—Signal processing not specific to the method of recording or reproducing; Circuits therefor
- G11B20/00086—Circuits for prevention of unauthorised reproduction or copying, e.g. piracy
- G11B20/0021—Circuits for prevention of unauthorised reproduction or copying, e.g. piracy involving encryption or decryption of contents recorded on or reproduced from a record carrier
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/3218—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials using proof of knowledge, e.g. Fiat-Shamir, GQ, Schnorr, ornon-interactive zero-knowledge proofs
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/3271—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials using challenge-response
- H04L9/3273—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials using challenge-response for mutual authentication
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L2209/00—Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
- H04L2209/60—Digital content management, e.g. content distribution
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Signal Processing (AREA)
- Computer Networks & Wireless Communication (AREA)
- Computer Hardware Design (AREA)
- Theoretical Computer Science (AREA)
- Software Systems (AREA)
- Physics & Mathematics (AREA)
- General Engineering & Computer Science (AREA)
- General Physics & Mathematics (AREA)
- Storage Device Security (AREA)
- Mobile Radio Communication Systems (AREA)
Claims (14)
1. Способ установления защищенного аутентифицированного канала между двумя устройствами, устройством А и устройством В, заключающийся в том, что А аутентифицируют для В с использованием криптографии с открытым ключом в режиме запроса/ответа, и устройство В аутентифицируют для А с использованием протокола нулевого знания.
2. Способ по п.1, в котором протокол нулевого знания является протоколом нулевого знания Гийу-Кискатера.
3. Способ по п.1, в котором протокол нулевого знания является протоколом нулевого знания Фиата-Шамира.
4. Способ по п.1, в котором протокол нулевого знания является протоколом нулевого знания Шнорра.
5. Способ по п.1, в котором устройство В аутентифицируют перед устройством А с использованием протокола нулевого знания в сочетании с системой широковещательной криптографии, причем секрет, используемый в протоколе нулевого знания, скремблируют так, чтобы его могли получить только те, кто может успешно обработать блок ключей широковещательной криптографии.
6. Способ по п.5, в котором секрет, используемый в протоколе нулевого знания, шифруют корневым ключом Kroot блока ключей системы широковещательной криптографии.
7. Способ по п.5, в котором имеется один блок ключей с корневым ключом Kroot,1 для аутентификации и другой блок ключей с корневым ключом Kroot,2 для шифрования контента.
8. Способ по п.1 или 5, в котором пара нулевого знания {J,s} отличается для каждого блока ключей.
9. Способ по п.1 или 5, в котором устройство В генерирует ключ шины и передает ключ шины в устройство А.
10. Способ по п.9, зависимому от п.5, в котором устройство А имеет доступ к ключу шины, только если устройство А может удостовериться, что устройство В может дескремблировать секрет.
11. Система, содержащая первое устройство A и второе устройство B, в которой устройство А выполнено с возможностью аутентифицироваться для устройства В с использованием криптографии с открытым ключом в режиме запроса/ответа, и устройство В выполнено с возможностью аутентифицироваться для устройства А с использованием протокола нулевого знания.
12. Первое устройство A, выполненное с возможностью аутентифицироваться для второго устройства В с использованием криптографии с открытым ключом в режиме запроса/ответа и выполненное с возможностью аутентифицировать второе устройство B с использованием протокола нулевого знания.
13. Второе устройство B, выполненное с возможностью аутентифицироваться для первого устройства A с использованием протокола нулевого знания и выполненное с возможностью аутентифицировать первое устройство A с использованием криптографии с открытым ключом в режиме запроса/ответа.
14. Компьютерный программный продукт, содержащий код, позволяющий программируемому устройству функционировать в качестве первого устройства по п.12 и/или второго устройства по п.13.
Applications Claiming Priority (2)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
EP03101764 | 2003-06-17 | ||
EP03101764.3 | 2003-06-17 |
Publications (1)
Publication Number | Publication Date |
---|---|
RU2006101287A true RU2006101287A (ru) | 2006-07-27 |
Family
ID=33547726
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
RU2006101287/09A RU2006101287A (ru) | 2003-06-17 | 2004-06-11 | Усовершенствованный защищенный аутентифицированный канал |
Country Status (8)
Country | Link |
---|---|
US (1) | US20060161772A1 (ru) |
EP (1) | EP1639744A1 (ru) |
JP (1) | JP2006527955A (ru) |
KR (1) | KR20060020688A (ru) |
CN (1) | CN1809984A (ru) |
AU (1) | AU2004248746A1 (ru) |
RU (1) | RU2006101287A (ru) |
WO (1) | WO2004112311A1 (ru) |
Families Citing this family (50)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
BRPI0507006A (pt) * | 2004-01-22 | 2007-06-05 | Koninkl Philips Electronics Nv | método para autorizar acesso a conteúdo por um dispositivo coletor, dispositivo fonte arranjado para autorizar acesso a conteúdo por um dispositivo coletor, e, produto de programa de computador |
JP4576853B2 (ja) * | 2004-03-05 | 2010-11-10 | ソニー株式会社 | 情報処理装置、および認証処理方法、並びにコンピュータ・プログラム |
US8117651B2 (en) * | 2004-04-27 | 2012-02-14 | Apple Inc. | Method and system for authenticating an accessory |
US7529870B1 (en) | 2004-04-27 | 2009-05-05 | Apple Inc. | Communication between an accessory and a media player with multiple lingoes |
US7895378B2 (en) | 2004-04-27 | 2011-02-22 | Apple Inc. | Method and system for allowing a media player to transfer digital audio to an accessory |
US7529872B1 (en) | 2004-04-27 | 2009-05-05 | Apple Inc. | Communication between an accessory and a media player using a protocol with multiple lingoes |
US7526588B1 (en) | 2004-04-27 | 2009-04-28 | Apple Inc. | Communication between an accessory and a media player using a protocol with multiple lingoes |
US7441062B2 (en) | 2004-04-27 | 2008-10-21 | Apple Inc. | Connector interface system for enabling data communication with a multi-communication device |
US7480803B1 (en) * | 2004-07-23 | 2009-01-20 | Sprint Communications Company L.P. | System and method for securing system content by automated device authentication |
US7823214B2 (en) | 2005-01-07 | 2010-10-26 | Apple Inc. | Accessory authentication for electronic devices |
US20080189794A1 (en) * | 2005-01-18 | 2008-08-07 | Koninklijke Philips Electronics, N.V. | Secure Host Interface |
JP4795727B2 (ja) | 2005-06-14 | 2011-10-19 | ヒタチグローバルストレージテクノロジーズネザーランドビーブイ | コンテンツの利用端末を制限する方法、記憶装置およびシステム |
US20070124584A1 (en) * | 2005-11-30 | 2007-05-31 | Microsoft Corporation | Proving ownership of shared information to a third party |
KR101014849B1 (ko) | 2005-12-02 | 2011-02-15 | 고려대학교 산학협력단 | 제 3의 신뢰기관의 도움 없이 공개키에 대한 상호 인증 및키 교환 방법 및 그 장치 |
US8006019B2 (en) | 2006-05-22 | 2011-08-23 | Apple, Inc. | Method and system for transferring stored data between a media player and an accessory |
US7415563B1 (en) | 2006-06-27 | 2008-08-19 | Apple Inc. | Method and system for allowing a media player to determine if it supports the capabilities of an accessory |
US7558894B1 (en) | 2006-09-11 | 2009-07-07 | Apple Inc. | Method and system for controlling power provided to an accessory |
US8047966B2 (en) * | 2008-02-29 | 2011-11-01 | Apple Inc. | Interfacing portable media devices and sports equipment |
US8208853B2 (en) | 2008-09-08 | 2012-06-26 | Apple Inc. | Accessory device authentication |
US8238811B2 (en) | 2008-09-08 | 2012-08-07 | Apple Inc. | Cross-transport authentication |
US9135424B2 (en) | 2009-05-29 | 2015-09-15 | Paypal, Inc. | Secure identity binding (SIB) |
US8650614B2 (en) * | 2009-05-29 | 2014-02-11 | Ebay Inc. | Interactive phishing detection (IPD) |
US20100306531A1 (en) | 2009-05-29 | 2010-12-02 | Ebay Inc. | Hardware-Based Zero-Knowledge Strong Authentication (H0KSA) |
US9734496B2 (en) | 2009-05-29 | 2017-08-15 | Paypal, Inc. | Trusted remote attestation agent (TRAA) |
US20120128154A1 (en) * | 2010-11-23 | 2012-05-24 | Intuit Inc. | Establishing a secure proximity pairing between electronic devices |
US10318936B2 (en) | 2012-03-07 | 2019-06-11 | Early Warning Services, Llc | System and method for transferring funds |
US11593800B2 (en) | 2012-03-07 | 2023-02-28 | Early Warning Services, Llc | System and method for transferring funds |
US10395223B2 (en) | 2012-03-07 | 2019-08-27 | Early Warning Services, Llc | System and method for transferring funds |
US10970688B2 (en) | 2012-03-07 | 2021-04-06 | Early Warning Services, Llc | System and method for transferring funds |
US10395247B2 (en) | 2012-03-07 | 2019-08-27 | Early Warning Services, Llc | Systems and methods for facilitating a secure transaction at a non-financial institution system |
US20130238488A1 (en) | 2012-03-07 | 2013-09-12 | Clearxchange, Llc | System and method for transferring funds |
US10832246B2 (en) | 2015-03-23 | 2020-11-10 | Early Warning Services, Llc | Payment real-time funds availability |
US10878387B2 (en) | 2015-03-23 | 2020-12-29 | Early Warning Services, Llc | Real-time determination of funds availability for checks and ACH items |
US10769606B2 (en) | 2015-03-23 | 2020-09-08 | Early Warning Services, Llc | Payment real-time funds availability |
US10748127B2 (en) | 2015-03-23 | 2020-08-18 | Early Warning Services, Llc | Payment real-time funds availability |
US10839359B2 (en) | 2015-03-23 | 2020-11-17 | Early Warning Services, Llc | Payment real-time funds availability |
US10970695B2 (en) | 2015-07-21 | 2021-04-06 | Early Warning Services, Llc | Secure real-time transactions |
US10438175B2 (en) | 2015-07-21 | 2019-10-08 | Early Warning Services, Llc | Secure real-time payment transactions |
US11037122B2 (en) | 2015-07-21 | 2021-06-15 | Early Warning Services, Llc | Secure real-time transactions |
US10963856B2 (en) | 2015-07-21 | 2021-03-30 | Early Warning Services, Llc | Secure real-time transactions |
US11151523B2 (en) | 2015-07-21 | 2021-10-19 | Early Warning Services, Llc | Secure transactions with offline device |
US11157884B2 (en) | 2015-07-21 | 2021-10-26 | Early Warning Services, Llc | Secure transactions with offline device |
US10956888B2 (en) | 2015-07-21 | 2021-03-23 | Early Warning Services, Llc | Secure real-time transactions |
US11151522B2 (en) | 2015-07-21 | 2021-10-19 | Early Warning Services, Llc | Secure transactions with offline device |
US11037121B2 (en) | 2015-07-21 | 2021-06-15 | Early Warning Services, Llc | Secure real-time transactions |
US11062290B2 (en) | 2015-07-21 | 2021-07-13 | Early Warning Services, Llc | Secure real-time transactions |
US11386410B2 (en) | 2015-07-21 | 2022-07-12 | Early Warning Services, Llc | Secure transactions with offline device |
US11144928B2 (en) | 2016-09-19 | 2021-10-12 | Early Warning Services, Llc | Authentication and fraud prevention in provisioning a mobile wallet |
US11122033B2 (en) * | 2017-12-19 | 2021-09-14 | International Business Machines Corporation | Multi factor authentication |
US11012435B2 (en) | 2017-12-19 | 2021-05-18 | International Business Machines Corporation | Multi factor authentication |
Family Cites Families (5)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US5140634A (en) * | 1987-09-07 | 1992-08-18 | U.S Philips Corporation | Method and apparatus for authenticating accreditations and for authenticating and signing messages |
US6263446B1 (en) * | 1997-12-23 | 2001-07-17 | Arcot Systems, Inc. | Method and apparatus for secure distribution of authentication credentials to roaming users |
US6118873A (en) * | 1998-04-24 | 2000-09-12 | International Business Machines Corporation | System for encrypting broadcast programs in the presence of compromised receiver devices |
US6102287A (en) * | 1998-05-15 | 2000-08-15 | International Business Machines Corporation | Method and apparatus for providing product survey information in an electronic payment system |
US7200752B2 (en) * | 2000-11-13 | 2007-04-03 | Thomson Licensing | Threshold cryptography scheme for message authentication systems |
-
2004
- 2004-06-11 WO PCT/IB2004/050888 patent/WO2004112311A1/en not_active Application Discontinuation
- 2004-06-11 AU AU2004248746A patent/AU2004248746A1/en not_active Abandoned
- 2004-06-11 RU RU2006101287/09A patent/RU2006101287A/ru not_active Application Discontinuation
- 2004-06-11 EP EP04736685A patent/EP1639744A1/en not_active Withdrawn
- 2004-06-11 KR KR1020057024280A patent/KR20060020688A/ko not_active Application Discontinuation
- 2004-06-11 JP JP2006516679A patent/JP2006527955A/ja not_active Withdrawn
- 2004-06-11 US US10/560,641 patent/US20060161772A1/en not_active Abandoned
- 2004-06-11 CN CNA2004800169334A patent/CN1809984A/zh active Pending
Also Published As
Publication number | Publication date |
---|---|
JP2006527955A (ja) | 2006-12-07 |
CN1809984A (zh) | 2006-07-26 |
US20060161772A1 (en) | 2006-07-20 |
KR20060020688A (ko) | 2006-03-06 |
WO2004112311A1 (en) | 2004-12-23 |
EP1639744A1 (en) | 2006-03-29 |
AU2004248746A1 (en) | 2004-12-23 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
RU2006101287A (ru) | Усовершенствованный защищенный аутентифицированный канал | |
US9819666B2 (en) | Pass-thru for client authentication | |
CN108769023B (zh) | 一种应用于群智感知的隐私保护方法及系统 | |
JP4620248B2 (ja) | メッセージ交換ネットワーク内でスマートカードを認証するための方法 | |
KR101237632B1 (ko) | 토큰과 검증자 사이의 인증을 위한 네크워크 헬퍼 | |
US6535980B1 (en) | Keyless encryption of messages using challenge response | |
CA2446304A1 (en) | Use and generation of a session key in a secure socket layer connection | |
CN101005361B (zh) | 一种服务器端软件保护方法及系统 | |
RU2004101416A (ru) | Устройство, сконфигурированное для обмена данными и способ аутентификации | |
CN105162599B (zh) | 一种数据传输系统及其传输方法 | |
CN109728909A (zh) | 基于USBKey的身份认证方法和系统 | |
WO2005006629A3 (en) | Terminal authentication in a wireless network | |
HK1072134A1 (en) | Method for secure data exchange between two devices | |
AU2002212345A1 (en) | Method and system for web-based cross-domain single-sign-on authentication | |
CA2551113A1 (en) | Authentication system for networked computer applications | |
RU97118596A (ru) | Способ для использующего эвм обмена криптографических ключей между компьютерным блоком пользователя u и сетевым компьютерным блоком n | |
WO2002093824A3 (en) | Authentication method | |
CN108494811A (zh) | 数据传输安全认证方法及装置 | |
CN103634265B (zh) | 安全认证的方法、设备及系统 | |
SI2414983T1 (en) | Secure data system | |
CN114650173A (zh) | 一种加密通讯方法及系统 | |
WO2003027800A3 (en) | Method and apparatus for secure mobile transaction | |
CN114826659A (zh) | 一种加密通讯方法及系统 | |
JPH10340255A (ja) | ネットワーク利用者認証方式 | |
CN110572257A (zh) | 基于身份的抗量子计算数据来源鉴别方法和系统 |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
FA92 | Acknowledgement of application withdrawn (lack of supplementary materials submitted) |
Effective date: 20081104 |