首页> 外国专利> Data processing system with verification of authenticity of cryptographic algorithms according to the challenge/response principle

Data processing system with verification of authenticity of cryptographic algorithms according to the challenge/response principle

机译:根据质询/响应原理验证密码算法真实性的数据处理系统

摘要

A data processing system has a security infrastructure, including a first cryptographic support facility, a security service for user data, including a further cryptographic support facility, and a number of cryptographic algorithms, usable by said cryptographic support facilities. In order to protect against a user replacing weak algorithms intended for the protection of data with strong algorithms intended for use by the security infrastructure, a challenge/response mechanism is provided, which enables the cryptographic support facilities to verify authenticity of the algorithms. The challenge/response mechanism is as follows. First, the cryptographic support facility sends a challenge to the algorithm. The algorithm then generates a response by applying a cryptographic function to the challenge, and returns the response to the cryptographic support facility. The cryptographic support facility then checks whether the response has an expected value. Only upon successful authentication does the algorithm reveal a pointer to a function table. The pointer is encrypted under a shared secret key to prevent an "attacker in the middle" attack.
机译:数据处理系统具有安全基础设施,包括第一密码支持设施,用于用户数据的安全服务(包括另一密码支持设施)以及可由所述密码支持设施使用的许多密码算法。为了防止用户用旨在由安全基础结构使用的强算法替换旨在保护数据的弱算法,提供了质询/响应机制,该机制使密码支持工具能够验证算法的真实性。质询/响应机制如下。首先,密码支持工具向算法发送挑战。然后,该算法通过将密码函数应用于质询来生成响应,并将该响应返回给密码支持工具。然后,密码支持工具检查响应是否具有期望值。仅在成功通过身份验证后,算法才会显示指向功能表的指针。指针在共享密钥下加密,以防止“中间攻击者”攻击。

著录项

  • 公开/公告号EP0711051B1

    专利类型

  • 公开/公告日2004-02-11

    原文格式PDF

  • 申请/专利权人 FUJITSU SERV LTD;

    申请/专利号EP19950306821

  • 发明设计人 PRESS JAMES;

    申请日1995-09-27

  • 分类号H04L9/32;

  • 国家 EP

  • 入库时间 2022-08-21 22:58:36

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号