首页> 外国专利> Method and system for securely enrolling cryptographic keys on physical media for cryptographic keys, and physical media product

Method and system for securely enrolling cryptographic keys on physical media for cryptographic keys, and physical media product

机译:在物理介质上安全地注册加密密钥以用于加密密钥的方法和系统以及物理介质产品

摘要

The present invention relates to a method and system for registering and securely storing cryptographic keys on a physical medium, and an associated physical medium, the method comprising the following steps: from a first management entity (31) generating (1) a first pair of asymmetric cryptographic keys comprising a first public user key (pub1) and a first private user key (priv1), I registering (2) the first private user key (priv1) on a physical medium, and the apposition (4) of a first control blanking element (hol1) on the physical medium to conceal the first private key user (priv1) and seal it, said first private key user (priv1) not being accessible only by visible rupture of said first control blanking element (hol1); from the second management entity (32), the generation (6) of a second asymmetric cryptographic key pair comprising a second public user key (pub2) and a second private user key (priv2), -the registration (7) of the second private user key (priv2) on the physical medium, the apposition (9) of a second blanking control element (hol2) on the physical medium to conceal the second private key user (priv2) and seal it said second private user key (priv2) being accessible only by visible breaking of said second control blanking element (hol2); the generation (10) of at least one last public user key (pubO) and / or at least one cryptographic address (adr, adr-mult) from the first public user key (pub1) and the second public key user (pub2), - the registration (11) of said at least one last public user key (pubO) and / or of said at least one cryptographic address (adr, adr-mult) on the physical medium, and the verification (12,13) thereof, and - the final recovery of private keys (priv1, priv2) comprising the generation of a last private key user (privO) corresponding to the last public key user (pubO) and / or at said at least one cryptographic address (adr, adr-mult).
机译:本发明涉及一种用于在物理介质上注册和安全地存储密码密钥的方法和系统,以及相关联的物理介质,该方法包括以下步骤:从第一管理实体(31)生成(1)第一对非对称密码,包括第一公共用户密钥(pub1)和第一私有用户密钥(priv1),我在物理介质上注册(2)第一私有用户密钥(priv1)和第一控件的位置(4)物理介质上的消隐元件(hol1),以隐藏第一私钥用户(priv1)并对其进行密封,所述第一私钥用户(priv1)只能通过所述第一控制消隐元件(hol1)的可见破坏才能访问;来自第二管理实体(32)的第二非对称加密密钥对的生成(6),包括第二公共用户密钥(pub2)和第二私有用户密钥(priv2),第二私有密钥的注册(7)用户密钥(priv2)在物理介质上,第二消隐控制元素(hol2)在物理介质上的并置(9),以隐藏第二私钥用户(priv2)并将其密封,所述第二私钥(priv2)是仅可通过可见破坏所述第二控制消隐元件(hol2)来访问;从第一公共用户密钥(pub1)和第二公共密钥用户(pub2)生成至少一个最后一个公共用户密钥(pubO)和/或至少一个加密地址(adr,adr-mult)(10), -所述至少一个最后公共用户密钥(pubO)和/或所述至少一个密码地址(adr,adr-mult)在物理介质上的注册(11),以及其验证(12,13), -私钥(priv1,priv2)的最终恢复,包括生成与最后一个公钥用户(pubO)相对应的最后一个私钥用户(privO)和/或在所述至少一个加密地址(adr,adr-多声)。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号