首页> 外国专利> m of n METHOD FOR PROVIDING CERTIFICATE SERVICE BASED ON M OF N MULTIPLE SIGNATURES IN USE OF MERKLE TREE STRUCTURE AND SERVER USING THE SAME

m of n METHOD FOR PROVIDING CERTIFICATE SERVICE BASED ON M OF N MULTIPLE SIGNATURES IN USE OF MERKLE TREE STRUCTURE AND SERVER USING THE SAME

机译:m的n种基于m的n个多重签名提供证书服务的方法,使用树状结构和使用相同的服务器

摘要

According to the present invention, there is provided a method of providing a certificate registration, approval, and destruction service by using multiple signatures, and an authentication support server using the method. The method according to the present invention is characterized in that in a state in which a public key corresponding to each of n ( 1) user terminals U i (i = 1, ..., n) A server stores a public key corresponding to the user terminal U i , a user ID corresponding to the remaining n-1 user terminals, a value of m, a value of n, and m: n Directly or indirectly, a multi-signature certificate generation request message, which is a message requesting the generation of a certificate by the multi-signature, and if the public key, the user ID, the m and n values, and the multi- Wherein the authentication support server supports to determine or determine the validity of the public keys PubKey i corresponding to the n user terminals, and if it is determined that the public keys PubKey i are valid, Key i , the m and the n, and generates or generates a multiple signature location identifier PrivTxidABC corresponding to the certificate execution condition data, and the authentication support server records the generated multiple signature by sending a location identifier PrivTxidABC to the n user terminals, which causes the user terminal U i each result value by signing the multi-signature location identifier PrivTxidABC as the PrivKey i private key (private key) corresponding to the PubKey i Multisignature location identifier signature value s and supported so as to create a SigPrivKey i (PrivTxidABC), when the generated the multi-signature location identifier signature value SigPrivKey i (PrivTxidABC) is obtained, the authentication support server, the multi-signature location identifier signature value (PrivTxidABC) to determine or determine whether or not the signature SigPrivKey i Group Multisignature location identifier signature value s SigPrivKey i (PrivTxidABC) is when it is determined that the normal signature, the authentication support server, the certificate execution condition data, the multi-signature location identifier signature value and a private block to the multi-signature location identifier Wherein the authentication support server is configured to determine whether the hash value calculated from the certificate execution condition data, the multi-signature location identifier signature values, and the multi- (I) a hash value of a public key PubKey k of the specific user terminal U k or a value obtained by processing the specific user terminal U k , (ii) a hash value of the specific certificate Certificate execution condition data for the specific certificate, multiple signature location identifier signature values for the particular certificate, A hash value calculated from the multi-signature location identifier for the certificate, (iii) the approval target information or destruction request information of each of at least m user terminals U i, or a value obtained by machining it, an approval target information signature value, Value and a hash value of the certificate approval or destroyed record data indicating that the approval or destruction of the certificate has been completed as the certificate approval or destruction completed record data including the multiple signature location identifier A method of acquiring a representative hash value or a value obtained by processing the representative hash value, and registering or registering the obtained value in a public block chain database, and an authentication support server using the method.
机译:根据本发明,提供了一种通过使用多个签名来提供证书注册,批准和销毁服务的方法,以及使用该方法的认证支持服务器。根据本发明的方法的特征在于,在与n个(> 1)用户终端U i 中的每一个相对应的公钥(i = 1,...,n)的状态下。服务器存储对应于用户终端U i 的公钥,对应于其余n-1个用户终端的用户ID,m的值,n的值以及m:n直接或间接地,多签名证书生成请求消息,该消息是请求通过多签名以及公共密钥,用户ID,m和n值以及多认证来生成证书的消息。支持服务器支持确定或确定与n个用户终端相对应的公钥PubKey i 的有效性,如果确定公钥PubKey i 有效,密钥 i ,m和n,并生成或生成与证书执行对应的多个签名位置标识符PrivTxidABC离子条件数据,认证支持服务器通过向n个用户终端发送位置标识符PrivTxidABC来记录生成的多个签名,从而通过对多签名位置进行签名,使用户终端U i 每个结果值标识符PrivTxidABC作为与PubKey i 多重签名位置标识符签名值s对应并支持的PrivKey i 私钥(私钥),以创建SigPrivKey i < / Sub>(PrivTxidABC),当获得生成的多重签名位置标识符签名值SigPrivKey i (PrivTxidABC)时,认证支持服务器将多重签名位置标识符签名值(PrivTxidABC)转换为确定或确定签名SigPrivKey i 组多签名位置标识符签名值s SigPrivKey i (PrivTxidABC)是在确定正常签名,身份验证支持时服务器,证书执行条件数据,多签名位置标识符签名值和对该多签名位置标识符的私有块,其中,认证支持服务器被配置为确定是否从证书执行条件数据计算出的哈希值, -签名位置标识符签名值,以及(-)特定用户终端U k 的公钥PubKey k 的哈希值或通过处理获得的值特定用户终端U k ,(ii)特定证书的证书执行条件数据的哈希值,特定证书的多个签名位置标识符签名值,证书的多签名位置标识符;(iii)至少m个用户终端U i 或值obt中的每个用户的批准目标信息或销毁请求信息通过机械加工,作为包括多个签名的证书批准或销毁完成记录数据,批准目标信息签名值,表示证书的批准或销毁已完成的证书批准或销毁记录数据的值和散列值位置标识符一种获取代表哈希值或通过处理代表哈希值而获得的值,并将获得的值注册或注册在公共区块链数据库中的方法,以及使用该方法的认证支持服务器。

著录项

  • 公开/公告号KR101890587B1

    专利类型

  • 公开/公告日2018-08-23

    原文格式PDF

  • 申请/专利权人 주식회사 코인플러그;

    申请/专利号KR20160132681

  • 发明设计人 송주한;홍재우;어준선;

    申请日2016-10-13

  • 分类号G06Q20/38;G06F21/31;G06Q20/32;H04L9/30;

  • 国家 KR

  • 入库时间 2022-08-21 12:37:19

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号