发明申请
US20060013402A1 Method of delivering Direct Proof private keys to devices using an on-line service
失效
使用在线服务将Direct Proof私钥交付给设备的方法
- 专利标题: Method of delivering Direct Proof private keys to devices using an on-line service
- 专利标题(中): 使用在线服务将Direct Proof私钥交付给设备的方法
-
申请号: US10892256申请日: 2004-07-14
-
公开(公告)号: US20060013402A1公开(公告)日: 2006-01-19
- 发明人: James Sutton , Ernie Brickell , Clifford Hall , David Grawrock
- 申请人: James Sutton , Ernie Brickell , Clifford Hall , David Grawrock
- 主分类号: H04L9/00
- IPC分类号: H04L9/00
摘要:
Delivering a Direct Proof private key to a device installed in a client computer system in the field may be accomplished in a secure manner without requiring significant non-volatile storage in the device. A unique pseudo-random value is generated and stored in the device at manufacturing time. The pseudo-random value is used to generate a symmetric key for encrypting a data structure holding a Direct Proof private key and a private key digest associated with the device. The resulting encrypted data structure is stored on a protected on-liner server accessible by the client computer system. When the device is initialized on the client computer system, the system checks if a localized encrypted data structure is present in the system. If not, the system obtains the associated encrypted data structure from the protected on-line server using a secure protocol. The device decrypts the encrypted data structure using a symmetric key regenerated from its stored pseudo-random value to obtain the Direct Proof private key. If the private key is valid, it may be used for subsequent authentication processing by the device in the client computer system.
公开/授权文献
信息查询