首页>
外国专利>
Method and system for key distribution comprising a step of authentication and a step of key distribution using a KEK (key encryption key)
Method and system for key distribution comprising a step of authentication and a step of key distribution using a KEK (key encryption key)
展开▼
机译:用于密钥分发的方法和系统,包括认证步骤和使用KEK(密钥加密密钥)的密钥分发步骤
展开▼
页面导航
摘要
著录项
相似文献
摘要
A method for protecting the transfer and storage of data by encryption using a private key encrypted with a first key encrypting key, which is encrypted using a second key encrypting key. This latter key is encrypted using a hashed passphrase value, obtained by hashing a passphrase known only to the authorized user. Upon receipt of a request initiated by the user by entering a passphrase, a first hashed passphrase is transferred to a first data processing system, where it is compared with a predefined hash string. If they match, the first data processing system transfers to a second data processing system the encrypted second key encrypting key. A candidate key is obtained by decrypting the encrypted second key encrypting key using a second hashed passphrase. Upon successful validation of the candidate key, the passphrase is verified and the user is authenticated. After the user has been authenticated, the first data processing system transmits to the second data processing system the encrypted private key and the encrypted data. The second processing system then decrypts the encrypted first key encrypting key using the second key encrypting key, decrypts the encrypted private key using the first key encrypting key and finally decrypts the data using the private key.
展开▼