ENCRYPTION COMMUNICATION SYSTEM
    14.
    发明公开
    ENCRYPTION COMMUNICATION SYSTEM 审中-公开
    与加密通信系统

    公开(公告)号:EP1632053A1

    公开(公告)日:2006-03-08

    申请号:EP04746146.2

    申请日:2004-06-14

    IPC分类号: H04L9/08 H04L9/32

    摘要: An encroption transmission apparatus and an encryption reception apparatus avoid attack that takes advantage of re-transmission request. A server apparatus encrypts a content key five times, thereby generating five encrypted content keys, calculates a hash value of the content key, and transmits the five encrypted content keys and the hash value. An image playback apparatus receives the five encrypted content keys and the has value, decrypts the five encrypted content keys thereby generating five content keys, calculates hash values each corresponding to the generated content keys, and compares the calculated hash values with the received hash value respectively. If at least one of the five calculated hash values matches the received hash value, the corresponding content key is considered correct. Conversely, if none of the five calculated hash values matches the received hash value, it is considered a decryption error.

    PUBLIC KEY CERTIFICATE REVOCATION LIST GENERATION APPARATUS, REVOCATION JUDGEMENT APPARATUS, AND AUTHENTICATION SYSTEM
    16.
    发明公开
    PUBLIC KEY CERTIFICATE REVOCATION LIST GENERATION APPARATUS, REVOCATION JUDGEMENT APPARATUS, AND AUTHENTICATION SYSTEM 有权
    制造装置公钥证书吊销列表,停药考核装置及鉴定系统

    公开(公告)号:EP1510036A1

    公开(公告)日:2005-03-02

    申请号:EP03749988.6

    申请日:2003-04-14

    IPC分类号: H04L9/32

    摘要: A revocation list generation apparatus and a revocation judgement apparatus suppress the size of a CRL even if a number of public key certificates to be revoked increases.The revocation list generation apparatus, in which leaves in a tree structure correspond to public key certificates, which are identified by leaf identifiers, and nodes from a leaf that corresponds to a revoked public key certificate to a root are revoked, generates, for each revoked node excluding leaves, revocation information showing whether directly subordinate nodes are revoked, and generates a revocation list that includes a plurality of pieces of revocation information arranged in an particular order.The revocation judgement apparatus obtains the revocation list, attempts to construct a path from the root to the leaf, using the revocation information in the revocation list, and when the leaf is included in the constructed path, judges the obtained public key certificate is revoked.

    KEY SHARING SYSTEM, SHARED KEY CREATION DEVICE, AND SHARED KEY RESTORATION DEVICE
    18.
    发明公开
    KEY SHARING SYSTEM, SHARED KEY CREATION DEVICE, AND SHARED KEY RESTORATION DEVICE 审中-公开
    设备共享的关键器件为一个共同的关键生产和设备恢复一个共同的关键

    公开(公告)号:EP1475920A1

    公开(公告)日:2004-11-10

    申请号:EP03812328.7

    申请日:2003-11-28

    IPC分类号: H04L9/08 G09C1/00

    摘要: Provided is a content distribution system that prevents different keys to be derived between an encryption apparatus and a decryption apparatus. A random-number generating unit 112, in an encryption apparatus 110, generates a random number s. A first function unit 113 generates a functional value G(s) of the random number s, and generates a random-number value u and a shared key K from the functional value G(s). An encryption unit 114 generates a first cipher text c1 of the random number s, using a public-key polynomial h and the random-number value u. A decryption unit 123, in a decryption apparatus 120, decrypts the first cipher text c1 using a secret-key polynomial f, to generate a decryption random number s'. A second function unit 126 generates a functional value G(s') of the decryption random number s', and generates a random-number value u' and a shared key K' from the functional value G(s'). A comparison unit 127 generates a first re-cipher text c1', using the random-number value u' and the shared key K', and outputs the shared key K' if the first cipher text c1 is equal to the first re-cipher text c1'.

    摘要翻译: 加密装置和解密装置之间进行衍生本发明提供一种内容分发系统确实可以防止不同的密钥。 随机数发生部112,在加密装置110生成随机数s。 甲了firstFunction单元113基因率随机数s和基因速率的函数值G(S)随机数值u和从函数值G(S)的共享密钥K。 加密单元114基因率的随机数s的第一密文C1,使用公开密钥多项式h和随机数值u。 解密单元123,在解密装置120解密第一密文C1使用秘密密钥多项式f,以产生解密的随机数S'。 第二功能单元126基因率“的解密随机数s和基因率随机数值u“和共享密钥K”从函数值G(S')的函数值G(秒)”。 比较单元127基因率第一再密文C1“使用随机数值u”和共享密钥K“并输出该共享密钥K”,如果第一密文C1等于第一再密 文C1”。

    ENCRYPTED DATA DELIVERY SYSTEM
    19.
    发明公开
    ENCRYPTED DATA DELIVERY SYSTEM 有权
    加密数据传送系统

    公开(公告)号:EP1414183A1

    公开(公告)日:2004-04-28

    申请号:EP02738672.1

    申请日:2002-06-13

    IPC分类号: H04L9/32 G06F15/00

    CPC分类号: G06F21/606 G06F21/10

    摘要: Technology for suppressing the data volume of a TRL (terminal revocation list), which is information specifying terminals to be invalidated, in a system structured from a plurality of terminals, a distribution device for acquiring the TRL and distributing data to only those terminals that are not to be invalidated, and a management device for generating the TRL. This object is realized by a system structured from a management device, a content key distribution device and a plurality of terminals. The management device generates and transmits a TRL formed from data that expresses terminal IDs of all terminals to be invalidated (i.e. terminals whose IDs have a common bit string), by only a value and a position of the common bit string in the IDs, to the content key distribution device. Each terminal holds a terminal ID that includes a manufacturer ID, a serial number and the like, and requests the distribution of a content key by sending the terminal ID to the content key distribution device. The content key distribution device refers to the TRL, judges whether the terminal ID transmitted from the terminal is that of an invalidated terminal, and if negative, encrypts and transmits the content key to the terminal.

    摘要翻译: 用于在由多个终端构成的系统中抑制作为指定要失效的终端的信息的TRL(终端撤消列表)的数据量的技术,用于获取TRL并将数据仅分发给那些终端 不被失效,以及用于生成TRL的管理设备。 该目的通过由管理装置,内容密钥分发装置和多个终端构成的系统来实现。 管理设备生成并发送由表示要失效的所有终端的终端ID的数据(即,具有公共比特串的ID的终端)形成的TRL仅通过ID中的公共比特串的值和位置 内容密钥分发设备。 每个终端保存包括制造商ID,序列号等的终端ID,并且通过将终端ID发送到内容密钥分发设备来请求分发内容密钥。 内容密钥分发设备参照TRL,判断从终端发送的终端ID是否是无效终端的终端ID,如果是否,则加密并发送该内容密钥给终端。

    PUBLIC KEY CERTIFICATE REVOCATION LIST GENERATION APPARATUS, REVOCATION JUDGEMENT APPARATUS, AND AUTHENTICATION SYSTEM
    20.
    发明授权
    PUBLIC KEY CERTIFICATE REVOCATION LIST GENERATION APPARATUS, REVOCATION JUDGEMENT APPARATUS, AND AUTHENTICATION SYSTEM 有权
    制造装置公钥证书吊销列表,停药考核装置及鉴定系统

    公开(公告)号:EP1510036B1

    公开(公告)日:2006-12-13

    申请号:EP03749988.6

    申请日:2003-04-14

    IPC分类号: H04L9/32

    摘要: A revocation list generation apparatus and a revocation judgement apparatus suppress the size of a CRL even if a number of public key certificates to be revoked increases.The revocation list generation apparatus, in which leaves in a tree structure correspond to public key certificates, which are identified by leaf identifiers, and nodes from a leaf that corresponds to a revoked public key certificate to a root are revoked, generates, for each revoked node excluding leaves, revocation information showing whether directly subordinate nodes are revoked, and generates a revocation list that includes a plurality of pieces of revocation information arranged in an particular order.The revocation judgement apparatus obtains the revocation list, attempts to construct a path from the root to the leaf, using the revocation information in the revocation list, and when the leaf is included in the constructed path, judges the obtained public key certificate is revoked.