Digital work protection system, key management apparatus, and user apparatus
    31.
    发明授权
    Digital work protection system, key management apparatus, and user apparatus 有权
    数字工作保护系统,密钥管理装置和用户装置

    公开(公告)号:US07272229B2

    公开(公告)日:2007-09-18

    申请号:US10278082

    申请日:2002-10-23

    IPC分类号: H04L9/00

    摘要: In a system composed of a recording apparatus that records digitized content such as a movie, or a reproduction apparatus that reproduces the digitized content, and a recording medium, a media key for use in recording or reproduction is encrypted by a plurality of device keys and recorded on the recording medium. Here, the recording apparatus or the reproduction apparatus specifies the encrypted media key that it is to decrypt, from amongst the plurality of encrypted media keys. A key management apparatus records node revocation patterns assigned to nodes in a tree structure to the recording medium in a particular order, as header information of key information, together with the encrypted media keys. The recording apparatus or the reproduction apparatus specifies the encrypted media key to be decrypted, by analyzing the node revocation patterns sequentially.

    摘要翻译: 在记录诸如电影的数字化内容的记录装置或再现数字化内容的再现装置以及记录介质的系统中,用于记录或再现的媒体密钥由多个设备密钥加密, 记录在记录介质上。 这里,记录装置或再现装置从多个加密媒体密钥中指定要解密的加密媒体密钥。 密钥管理装置将分配给树结构中的节点的节点撤销模式以特定顺序记录到记录介质上,作为密钥信息的头信息以及加​​密的媒体密钥。 记录装置或再现装置通过依次分析节点撤销模式来指定要解密的加密媒体密钥。

    Reception terminal, key management apparatus, and key updating method for public key cryptosystem
    32.
    发明授权
    Reception terminal, key management apparatus, and key updating method for public key cryptosystem 有权
    接收终端,密钥管理装置,以及密钥密码系统的密钥更新方法

    公开(公告)号:US07206412B2

    公开(公告)日:2007-04-17

    申请号:US10119766

    申请日:2002-04-11

    IPC分类号: H04L9/00

    摘要: A method for use in a distribution system having a key management center, a distribution station and a reception terminal. The method updates a pair of distribution keys unique to the reception terminal, where the distribution public key is used to encrypt distribution data, and the distribution secret key is used to decrypt encrypted data. In the key updating method, the reception terminal acquires an update secret key prior to data distribution, and the key management center acquires an update public key making a pair with the update secret key, generates a new pair of distribution keys, encrypts a new distribution secret key by using the update public key, transmits an encrypted secret key to the reception terminal and updates to the new distribution public key. The reception terminal receives the encrypted secret key and restores the new distribution secret key by decrypting it using the update secret key and updates to the new distribution secret key.

    摘要翻译: 一种在具有密钥管理中心,分发站和接收终端的分发系统中使用的方法。 该方法更新了分配公钥用于加密分发数据的接收终端唯一的一对分发密钥,并且分发密钥用于解密加密的数据。 在密钥更新方法中,接收终端在数据分发之前获取更新秘密密钥,密钥管理中心获取与更新秘密密钥进行配对的更新公钥,生成新的一对分发密钥,加密新的分发 通过使用更新公钥进行秘密密钥,将加密的秘密密钥发送到接收终端,并更新到新的分发公钥。 接收终端接收加密的秘密密钥,并通过使用更新秘密密钥对其进行解密来恢复新的分配密钥,并更新新的分配密钥。

    Parameter generation apparatus, encryption system, decryption system, encryption apparatus, decryption apparatus, encryption method, decryption method, and program thereof
    33.
    发明申请
    Parameter generation apparatus, encryption system, decryption system, encryption apparatus, decryption apparatus, encryption method, decryption method, and program thereof 有权
    参数生成装置,加密系统,解密系统,加密装置,解密装置,加密方法,解密方法及程序

    公开(公告)号:US20060239459A1

    公开(公告)日:2006-10-26

    申请号:US10552586

    申请日:2004-04-14

    IPC分类号: H04K1/00

    CPC分类号: H04L9/3093

    摘要: A parameter generation apparatus for generating parameters causing no decryption error for an NTRU cryptosystem so that an encrypted communication can be carried out between an encryption apparatus and a decryption apparatus in a secure and reliable manner, is comprised of: a provisional parameter generation unit operable to generate a set of provisional parameters that do not cause any decryption errors, based on error condition information that is provided in advance, said error condition information indicating a condition for causing no decryption error; and an output parameter generation unit operable to generate an output parameter that does not cause any decryption errors, using said set of provisional parameters, based on a lattice constant that is calculated from said set of provisional parameters.

    摘要翻译: 一种参数生成装置,其特征在于,包括:生成对于NTRU密码系统不产生解密错误的参数,使得能够以安全可靠的方式在加密装置和解密装置之间执行加密通信的参数生成装置,其包括:临时参数生成单元, 基于预先提供的错误条件信息生成不引起任何解密错误的一组临时参数,所述错误条件信息指示不导致解密错误的条件; 以及输出参数生成单元,用于基于从所述一组临时参数计算的晶格常数,使用所述一组临时参数来生成不引起任何解密错误的输出参数。

    Cryptographic apparatus for performing cryptography on a specified area of content data
    35.
    发明授权
    Cryptographic apparatus for performing cryptography on a specified area of content data 失效
    用于在指定的内容数据区域上执行加密的加密装置

    公开(公告)号:US06971022B1

    公开(公告)日:2005-11-29

    申请号:US09593677

    申请日:2000-06-14

    CPC分类号: G06F21/602

    摘要: A cryptographic apparatus reads, from a portable storage medium, content data and cryptographic information specifying a certain part of the content data on which cryptographic processing is to be performed, specifies the certain part in the read content data based on the read cryptographic information, and performs one of encryption and decryption on the certain part. When, for example, the content data is formed from alternating headers and variable-length data sections, the cryptographic information is a program formed from an instruction sequence. The instruction sequence has the cryptographic apparatus detect a header in the content data, read the length of the variable-length data, and perform cryptographic processing on a part of the content data between a start point and an end point, the start point being a position relative to the header position, and the end point being a value resulting from adding the length to the start point.

    摘要翻译: 密码装置从便携式存储介质读取指定要进行加密处理的内容数据的特定部分的内容数据和密码信息,基于读取的密码信息指定读取的内容数据中的某一部分,以及 在某一部分执行加密和解密。 当例如内容数据由交替的头部和可变长度数据部分形成时,密码信息是由指令序列形成的程序。 指令序列具有密码装置检测内容数据中的标题,读取可变长度数据的长度,并对起始点和结束点之间的内容数据的一部分执行加密处理,起始点为 相对于头部位置的位置,并且终点是通过将长度添加到起始点而得到的值。

    Encryption system for distributing a common crypt key
    37.
    发明授权
    Encryption system for distributing a common crypt key 有权
    用于分发公共密钥的加密系统

    公开(公告)号:US06550009B1

    公开(公告)日:2003-04-15

    申请号:US09182241

    申请日:1998-10-30

    IPC分类号: H04L900

    摘要: The present invention provides an encryption system, by which it is possible to safely distribute a common crypt key for decrypting data on an encrypted DVD-ROM by simple devices and procedure. A terminal equipment 1 comprises a DVD-ROM drive, means for sending a key data request to a center device via communication line, and means for decrypting the encrypted common crypt key using a combination of a part of BCA data and a membership number. A center device 2 comprises means for authenticate a user by searching a user data base 23 in response to the key data request, means for obtaining BCA data of the user by searching a BCA data base 21, means for obtaining a common crypt key by searching a key data base 22, and means for encrypting and transmitting the common crypt key using a combination of a part of BCA data and a membership number. Because a combination of a part of BCA data already distributed and the membership number is used as a key for encrypting the common crypt key, it is possible to safely encrypt and transmit the common crypt key by simple devices and procedure.

    摘要翻译: 本发明提供了一种加密系统,通过这种加密系统,通过简单的装置和程序,可以安全地分发用于对加密的DVD-ROM上的数据进行解密的公共密钥。 终端设备1包括DVD-ROM驱动器,用于经由通信线路向中心设备发送密钥数据请求的装置,以及用于使用BCA数据和成员号码的组合来组合加密的公共密钥的装置。 中心设备2包括用于通过搜索用户数据库23以响应于密钥数据请求来认证用户的装置,用于通过搜索BCA数据库21来获取用户的BCA数据的装置,用于通过搜索来获得公共密钥的装置 密钥数据库22,以及用于使用BCA数据的一部分和成员号码的组合来加密和发送公共密钥的装置。 由于已经分配的BCA数据的一部分和成员编号的组合被用作加密公共密钥的密钥,因此可以通过简单的装置和过程安全地加密和发送公共密钥。

    Message receiving apparatus and message transmitting apparatus
    38.
    发明授权
    Message receiving apparatus and message transmitting apparatus 失效
    消息接收装置和消息发送装置

    公开(公告)号:US06496930B1

    公开(公告)日:2002-12-17

    申请号:US09215533

    申请日:1998-12-18

    IPC分类号: G06F124

    摘要: A message receiving apparatus for receiving messages from a message transmitting apparatus generates first data for producing a display which urges a user of the message transmitting apparatus to input a message, and generates second data within the first data for specifying a conversion type for secret communication of the message. The message receiving apparatus sends the first data including the second data to the message transmitting apparatus and subsequently receives the message from the message transmitting apparatus. The message transmitting apparatus for transmitting messages to the message receiving apparatus receives the first data for producing the display and the accompanying second data for specifying the conversion type and produces the display according to the first data. On receiving the message inputted by the user in response to the display, the message transmitting apparatus converts the input message according to the second data and transmits the converted message to the message receiving apparatus.

    摘要翻译: 一种用于从消息发送装置接收消息的消息接收装置产生用于产生显示的第一数据,该数据促使消息发送装置的用户输入消息,并且在第一数据内产生用于指定用于秘密通信的转换类型的第二数据 消息。 消息接收装置将包括第二数据的第一数据发送到消息发送装置,随后从消息发送装置接收消息。 用于向消息接收装置发送消息的消息发送装置接收用于产生显示的第一数据和用于指定转换类型的伴随的第二数据,并根据第一数据产生显示。 在接收到响应于显示的用户输入的消息时,消息发送装置根据第二数据转换输入消息,并将转换的消息发送到消息接收装置。

    Encrypted communication system that limits the damage caused when a
secret key has been leaked
    39.
    发明授权
    Encrypted communication system that limits the damage caused when a secret key has been leaked 失效
    加密通信系统,限制秘密密钥泄露时造成的损坏

    公开(公告)号:US6151394A

    公开(公告)日:2000-11-21

    申请号:US940052

    申请日:1997-09-30

    IPC分类号: H04L9/08 H04L9/00

    CPC分类号: H04L9/0833 H04L9/0822

    摘要: In an encrypted transmission system composed of one transmission apparatus 10 and twenty-eight reception apparatuses A1-G4 that are classified into seven groups A-G, two secret key exclusively selected out of a total of fourteen secret keys are distributed beforehand to each group. The transmission apparatus 10 encrypts the same message M using one of the two secret keys distributed to each group and sends each group a message M encrypted with one of the group's secret keys. The reception apparatuses each decrypt the received cryptogram separately using each of the secret keys assigned to the of group to which each reception apparatus belongs, judge whether either of the two decryption results conforms to a predetermined rule, and specify the correct decryption result.

    摘要翻译: 在由分组为七组A-G的一个发送装置10和二十八个接收装置A1-G4组成的加密传输系统中,预先向每个组分发从总共14个秘密密钥中唯一选择的两个秘密密钥。 发送装置10使用分配给每个组的两个秘密密钥中的一个对相同的消息M进行加密,并且向每个组发送用该组的秘密密钥之一加密的消息M. 接收装置分别使用分配给每个接收装置所属的组的每个秘密密钥来分别接收密码,判断两个解密结果是否符合预定规则,并指定正确的解密结果。

    Bit agitator
    40.
    发明授权
    Bit agitator 失效
    搅拌器

    公开(公告)号:US5751810A

    公开(公告)日:1998-05-12

    申请号:US511851

    申请日:1995-08-07

    摘要: A 6-digit decimal input value A and a previously prepared 6-digit decimal extension fixed value L are substituted in an extension function f, thereby extending the input value A to a 12-digit decimal value f(A,L). This extended value f(A,L) is bit-agitated with a bit agitation key R. Further, a value C obtained by the bit agitation processing is substituted in a reduction function g, thereby obtaining a 6-digit decimal output value B. Thus, the input value A is extended by the extension processing to be thereafter subjected to the bit agitation processing, whereby safety of secret information can be improved without increasing the number of digits of the input value A. Further, the value obtained by the bit agitation is thereafter reduced, whereby the output value B can be reduced to a number of digits which is applicable to the human memory. Thus, a bit agitator is obtained which is safer than at conventional one and has an excellent user interface.

    摘要翻译: 6位十进制输入值A和以前准备的6位十进制扩展固定值L在扩展函数f中代替,从而将输入值A扩展为12位十进制值f(A,L)。 该扩展值f(A,L)用位搅拌键R进行位搅拌。此外,通过位搅拌处理获得的值C被代入减法函数g,从而获得6位十进制输出值B. 因此,通过扩展处理来扩展输入值A,然后进行位搅动处理,从而可以在不增加输入值A的位数的情况下提高秘密信息的安全性。此外,由位获得的值 此后减少搅拌,由此输出值B可以减少到适用于人类存储器的数位数。 因此,获得比常规搅拌器更安全的搅拌器,并且具有优异的使用者界面。