首页> 外国专利> METHOD FOR PERFORMING ANALOG-DIGITAL SIGNATURE IN A TRUSTED ENVIRONMENT AND ITS IMPLEMENTING DEVICE

METHOD FOR PERFORMING ANALOG-DIGITAL SIGNATURE IN A TRUSTED ENVIRONMENT AND ITS IMPLEMENTING DEVICE

机译:在可信环境中执行模拟数字签名的方法及其实现装置

摘要

A method of providing a trusted environment for performing an analog-digital signature and a device for the implementation thereof are intended to enhance the security of converting source documents into electronic form. Unlike known prior art, the present method and device do not require that the procedure for signing electronic documents be carried out on special certified computers which provide a trusted environment. A trusted environment should guarantee that a digital signature is created in a secure and tested system comprising hardware and software. A violation of these conditions gives rise to potential threats, for example the substitution of an electronic document, i.e. the user sees one document on the screen, while the hacked system signs a different document using the user's name. In the present invention, a trusted environment is formed in a signing device in the form of a stylus, and any non-certified computer can be used. The trusted environment is provided in the invention by a set of technical solutions. A device for signing documents, in the form of a stylus, comprises a security compartment, containing a microcontroller with a software code, a memory with a digital signature secret key, and also inertia sensors, which are connected to the microcontroller, and a loudspeaker, which is likewise connected to the microcontroller and is provided with a voice synthesis program. A wireless interface is used for communication with a computer. The inertia sensors serve to verify the user's manual signature. The loudspeaker and the voice synthesis program serve to voice the text of an electronic document directly from the trusted environment. This guarantees that verified information enters the trusted environment of the stylus.
机译:提供用于执行模拟数字签名的可信环境的方法及其实现的装置旨在增强将源文档转换成电子形式的安全性。与已知的现有技术不同,本方法和设备不需要在提供受信环境的经过特殊认证的计算机上执行用于对电子文档进行签名的过程。受信任的环境应保证在包含硬件和软件的安全且经过测试的系统中创建数字签名。违反这些条件会引起潜在的威胁,例如替换电子文档,即用户在屏幕上看到一个文档,而被黑客入侵的系统则使用用户名签名另一个文档。在本发明中,可信赖的环境以手写笔的形式形成在签名设备中,并且可以使用任何未认证的计算机。在本发明中,通过一组技术解决方案来提供可信环境。用于以手写笔形式签署文件的设备包括:安全隔间,其包含具有软件代码的微控制器,具有数字签名密钥的存储器以及与微控制器连接的惯性传感器和扬声器,它同样连接到微控制器,并配有语音合成程序。无线接口用于与计算机通信。惯性传感器用于验证用户的手动签名。扬声器和语音合成程序用于直接从可信环境中发出电子文档的文本语音。这样可以确保已验证的信息进入手写笔的受信任环境。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号