首页> 外国专利> DYNAMIC IDENTITY VERIFICATION AND AUTHENTICATION CONTINUOUS, DYNAMIC ONE-TIME-PAD/ONE-TIME PASSWORDS AND DYNAMIC DISTRIBUTED KEY INFRASTRUCTURE FOR SECURE COMMUNICATIONS WITH A SINGLE KEY FOR ANY KEY-BASED NETWORK SECURITY CONTROLS

DYNAMIC IDENTITY VERIFICATION AND AUTHENTICATION CONTINUOUS, DYNAMIC ONE-TIME-PAD/ONE-TIME PASSWORDS AND DYNAMIC DISTRIBUTED KEY INFRASTRUCTURE FOR SECURE COMMUNICATIONS WITH A SINGLE KEY FOR ANY KEY-BASED NETWORK SECURITY CONTROLS

机译:动态身份验证和认证连续的,一次性的一次/一次密码,动态的分布式密钥基础结构,用于任何基于密钥的网络安全控制的单密钥安全通信

摘要

A method of using a single, one-time pre-distributed and pre-authenticated symmetric Whitenoise key structure or other exponential key or deterministic random number generator to establish secure key-based communications between a first source computer and a second destination computer (endpoint, sensor or smart component) to provide continuous, dynamic, one-time-pad authentication throughout a session (not just at sign-in or login). By polling ahead in an exponential key stream with specific indexes, pointers or dynamic offsets the method creates an infinite number of identifiable one-time-pad tokens that have never been created or used before and deterministic, random key streams of functionally limitless length that will easily outlive the life of the person or device deploying it. The source and destination computers each with an identical copy of a unique pre-distributed symmetric stream cipher key and a first valid offset. The offset is a pointer or index into the unique key stream to an unused and never created portion of key stream for dynamic-one-time-pad authentication or to a specific static portion of key stream as a constant identifier like the portion of the key stream to encrypt or decrypt a specific file or the secure session. The distributed key structure is a unique, deterministic random number generator that creates exponentially long, deterministic, random key streams that can have an unlimited number of offsets into the same key stream to provide any key-based network security control. The provision of this key is a one-time, non-pki key distribution generally using Identity Proofing 3 or 4 levels for pre-provisioning and pre-authentication purposes. There is never key (complete key or key structure) distribution again. The destination computer sends the source computer a random, previously unused token of variable length from the pre-distributed key beginning at the destination computer's last valid current offset. The source computer generates the corresponding token from the last valid offset for the corresponding key in respect of the destination computer. It compares the tokens bit by bit and if they are identical the source computer authenticates the destination computer. After each authentication call that is successful, the source and destination computers update there current dynamic offsets independently without any key or offset transfer by the length of the token plus 1 or some arithmetic function that moves the offset forward to an unused portion of the key stream. Communications can be sent encrypted using the same distributed key and using a similar technique to the primary authentication function.
机译:一种使用单一的一次性预分配和预先认证的对称Whitenoise密钥结构或其他指数密钥或确定性随机数生成器在第一源计算机和第二目标计算机之间建立基于安全密钥的通信的方法(端点,传感器或智能组件),以在整个会话期间(不仅在登录或登录时)提供连续,动态的一次性身份验证。通过在具有特定索引,指针或动态偏移量的指数密钥流中预先轮询,该方法将创建无限数量的,从未创建过或使用过的可识别一次性密码,以及确定性的,功能无限的,随机的密钥流。很容易超过部署它的人员或设备的寿命。源计算机和目标计算机均具有唯一的预分配对称流密码密钥的相同副本和第一有效偏移量。偏移量是指向唯一密钥流的指针或索引,该指针或索引指向密钥流的未使用和从未创建的部分(用于进行动态一次一次性身份验证),或指向密钥流的特定静态部分作为常量标识符(如密钥的一部分)流以加密或解密特定文件或安全会话。分布式密钥结构是唯一的确定性随机数生成器,它生成指数长的确定性随机密钥流,该密钥流可以在​​同一密钥流中具有无限数量的偏移量,以提供任何基于密钥的网络安全控制。此密钥的提供是一次性的非pki密钥分发,通常使用3或4级身份验证来进行预配置和预认证。再也没有密钥(完整的密钥或密钥结构)分发了。目标计算机从源计算机的最后一个有效当前偏移量开始,从预分配密钥向源计算机发送一个随机的,以前未使用的,长度可变的令牌。源计算机从相对于目标计算机的相应密钥的最后一个有效偏移生成相应的令牌。它逐位比较令牌,如果令牌相同,则源计算机对目标计算机进行身份验证。每次成功进行身份验证调用之后,源计算机和目标计算机将独立地更新当前的动态偏移量,而无需任何令牌或偏移量传输令牌的长度加1或一些将偏移量向前移动到密钥流的未使用部分的算术函数。可以使用相同的分布式密钥并使用与主要身份验证功能类似的技术来加密发送通信。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号