发明授权
US6058188A Method and apparatus for interoperable validation of key recovery
information in a cryptographic system
失效
用于密码系统中关键恢复信息的可互操作验证的方法和装置
- 专利标题: Method and apparatus for interoperable validation of key recovery information in a cryptographic system
- 专利标题(中): 用于密码系统中关键恢复信息的可互操作验证的方法和装置
-
申请号: US899855申请日: 1997-07-24
-
公开(公告)号: US6058188A公开(公告)日: 2000-05-02
- 发明人: Coimbatore S. Chandersekaran , Rosario Gennaro , Sarbari Gupta , Stephen M. Matyas, Jr. , David R. Safford , Nevenko Zunic
- 申请人: Coimbatore S. Chandersekaran , Rosario Gennaro , Sarbari Gupta , Stephen M. Matyas, Jr. , David R. Safford , Nevenko Zunic
- 申请人地址: NY Armonk
- 专利权人: International Business Machines Corporation
- 当前专利权人: International Business Machines Corporation
- 当前专利权人地址: NY Armonk
- 主分类号: H04L9/08
- IPC分类号: H04L9/08 ; H04L9/32
摘要:
In a cryptographic communications system, a method and apparatus for allowing a sender of encrypted data to demonstrate to a receiver its ability to correctly generate key recovery information that is transmitted along with the encrypted data and from which law enforcement agents or others may recover the original encryption key. Initially, the sender generates a key pair comprising a private signature key and a corresponding public verification key and sends the latter to a key recovery validation service (KRVS). Upon a satisfactory demonstration by the sender of its ability to correctly generate key recovery information, the KRVS generates a certificate certifying the public verification key and the ability of the sender to correctly generate key recovery information. The sender uses its private signature key to generate a digital signature on the key recovery information, which is sent along with the key recovery information and encrypted data to the receiver. The receiver verifies the signature on the key recovery information using the certified public verification key and decrypts the encrypted data only if the signature is verified as being a valid signature.
公开/授权文献
信息查询