首页> 外国专利> Unified end-to-end security methods and systems for operating on insecure networks

Unified end-to-end security methods and systems for operating on insecure networks

机译:在不安全网络上运行的统一端到端安全方法和系统

摘要

Secure transmission of a message is achieved by using a one-time encryption key derived at the receiver and the sender from information present at both the sender and the receiver, but wherein the information from which the encryption key is derived is not transmitted between the sender and the receiver. A plurality of bytes, known as a master signature, is randomly generated and stored at the sender, wherein each byte is uniquely identified by an address. A first random subset of this plurality of bytes, called an access signature, and the addresses in the master signature of the bytes in this access signature, are stored at the receiver. To generate an encryption key, the receiver selects a second random subset of bytes, known as a session signature, from the access signature and sends the addresses in the master signature of the bytes in this session signature to the sender. The sender uses these addresses to identify the bytes in this session signature which bytes are used at both the sender and the receiver to derive the encryption key. If desired, these bytes can be used directly as the encryption key but preferably, these bytes are passed through a session signature-to-session key converter using an irreversible algorithm to generate a one-time encryption key to be used to encrypt the message to be sent between the sender and the receiver. The master signature can also be derived from the digitized video image of the user, which allows a card containing the master signature to be used as described above but also with a video monitor to visually identify the user.
机译:通过使用在接收者和发送者处从一次在发送者和接收者处都存在的信息中导出的一次性加密密钥来实现消息的安全传输,但是其中不从其导出加密密钥的信息在发送者之间进行传输和接收器。随机生成多个字节(称为主签名)并将其存储在发送方,其中每个字节由一个地址唯一标识。该多个字节的第一随机子集被称为访问签名,并且该访问签名中的字节的主签名中的地址被存储在接收器处。为了生成加密密钥,接收方从访问签名中选择第二个随机字节子集,称为会话签名,并将该会话签名中字节的主签名中的地址发送给发送者。发送方使用这些地址来标识此会话签名中的字节,这些字节在发送方和接收方都用于导出加密密钥。如果需要,可以将这些字节直接用作加密密钥,但最好将这些字节使用不可逆算法通过会话签名到会话密钥转换器,以生成一次性加密密钥,以用于将消息加密为在发送方和接收方之间发送。主签名也可以从用户的数字化视频图像中获得,该数字化的视频图像允许如上所述使用包含主签名的卡,并且还可以通过视频监视器可视地识别用户。

著录项

  • 公开/公告号NZ323140A

    专利类型

  • 公开/公告日2000-02-28

    原文格式PDF

  • 申请/专利权人 TRI-STRATA SECURITY INCORPORATED;

    申请/专利号NZ19960323140

  • 发明设计人 ATALLA MARTIN M;

    申请日1996-11-01

  • 分类号H04L9/08;

  • 国家 NZ

  • 入库时间 2022-08-22 01:55:27

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号