SIGNATURE GENERATING DEVICE, SIGNATURE GENERATING METHOD AND SIGNATURE GENERATING PROGRAM
    42.
    发明申请
    SIGNATURE GENERATING DEVICE, SIGNATURE GENERATING METHOD AND SIGNATURE GENERATING PROGRAM 有权
    签名生成设备,签名生成方法和签名生成程序

    公开(公告)号:US20090094464A1

    公开(公告)日:2009-04-09

    申请号:US12158033

    申请日:2006-12-26

    IPC分类号: H04L9/06 H04L9/28

    摘要: A signature generation apparatus is capable of making a value used in signature generation processing difficult to analyze. In the signature generation apparatus, a random number generation module generates a len-bit random number u, a selection module converts the generated random number u into a bit expression, and acquires element pairs corresponding to the bit values from a table memory unit. A random element generation module applies a basic operation of a first group G and a second group to all acquired element pairs, and calculates an element Pk on the first group G and an element Pak on the second group Ga. The signature generation apparatus generates a digital signature S for a message m with use of a transformation module, a main operation module, an inverse transformation module, a multiplication module, a division module, and a signature data generation module.

    摘要翻译: 签名生成装置能够使签名生成处理中使用的值难以分析。 在签名生成装置中,随机数生成模块生成len位随机数u,选择模块将生成的随机数u转换为比特表达式,并从表存储单元获取与比特值对应的元素对。 随机元素生成模块将第一组G和第二组的基本操作应用于所有获取的元素对,并且计算第一组G上的元素Pk和第二组Ga上的元素Pak,签名生成装置生成 使用变换模块的消息m的数字签名S,主操作模块,逆变换模块,乘法模块,分割模块和签名数据生成模块。

    Information security device and elliptic curve operating device
    43.
    发明申请
    Information security device and elliptic curve operating device 有权
    信息安全装置和椭圆曲线操作装置

    公开(公告)号:US20090074179A1

    公开(公告)日:2009-03-19

    申请号:US11912112

    申请日:2006-04-25

    IPC分类号: H04L9/28

    摘要: Resistance against simple power analysis is maintained while a smaller table is used. An IC card 100 decrypts encrypted information using elliptic curve calculation for calculating a point k*C by multiplying a point C on the elliptic curve E with a coefficient k that is a positive integer less that a prime p. The calculation of the point k*C is performed by adding a multiplication result obtained by multiplying a digit position (window) value w of the acquired coefficient k with the point C in a position corresponding to the digit position, and is performed with respect to all digit positions. When a non-negative integer exists that fulfills a condition that the acquired digit value w can be divided by 2t and cannot be divided by 2t+1, the multiplication includes adding a point obtained by multiplying a point Q with w/2t.

    摘要翻译: 在使用较小的桌子的同时保持对简单功率分析的抵抗力。 IC卡100使用用于通过将椭圆曲线E上的点C乘以小于素数p的正整数的系数k来计算点k * C的椭圆曲线计算来解密加密信息。 通过将获取的系数k的数字位置(窗口)值w与点数C相对应的数位位置(窗口值)w相乘而获得的相乘结果相加,执行点k * C的计算,并且相对于 全数位置 当存在满足获取的数字值w可以除以2t并且不能被除以2t + 1的条件的非负整数时,乘法包括将通过将点Q与w / 2t相乘获得的点相加。

    Signature Generation Device and Signature Verification Device
    44.
    发明申请
    Signature Generation Device and Signature Verification Device 有权
    签名生成装置和签名验证装置

    公开(公告)号:US20080222418A1

    公开(公告)日:2008-09-11

    申请号:US11795871

    申请日:2006-01-17

    摘要: A signature generation apparatus capable of preventing transcript attack on signature data is provided. The signature generation apparatus performing a digital signature operation with the use of a signature key: stores the signature key; performs the digital signature operation on signature target data with the use of the signature key to generate signature data; counts the cumulative count of digital signature operations having been performed by the signature generation unit with the use of the signature key; judges whether the cumulative count has reached a predetermined count; and inhibits the use of the signature key in the digital signature operation from then onward in a case where the judgment unit determines that the cumulative count has reached the predetermined count.

    摘要翻译: 提供了能够防止对签名数据进行转录攻击的签名生成装置。 签名生成装置使用签名密钥执行数字签名操作;存储签名密钥; 使用签名密钥对签名目标数据执行数字签名操作,生成签名数据; 使用签名密钥对由签名生成单元执行的数字签名操作的累积计数进行计数; 判断累积计数是否达到预定计数; 并且在判断单元确定累积计数已达到预定计数的情况下,禁止在数字签名操作中使用签名密钥。

    Authentication system and key registration apparatus
    46.
    发明授权
    Authentication system and key registration apparatus 失效
    认证系统和密钥登记设备

    公开(公告)号:US07296147B2

    公开(公告)日:2007-11-13

    申请号:US10454531

    申请日:2003-06-05

    IPC分类号: H04L9/00 H04K1/00 G06K9/00

    摘要: In an authentication system, a key registration apparatus receives input of an identifier unique to a second device, generates first key data from the identifier according to a predetermined key generation algorithm, and transmits the generated first key data to a first device, which receives and stores the first key data, and authenticates the second device with use of the first key data. The second device stores in advance second key data generated from the identifier according to the predetermined key generation algorithm, and is authenticated by the first device with use of the second key data. Accordingly, the first and second devices cannot be registered without using the key registration apparatus, thereby preventing communication with unregistered devices. This enables usage of content to be limited to individual usage in the home of a user, and can be realized even with devices that are not connected outside the home.

    摘要翻译: 在认证系统中,密钥注册装置接收对第二装置唯一的标识符的输入,根据预定的密钥生成算法从标识符生成第一密钥数据,并将生成的第一密钥数据发送到第一装置, 存储第一密钥数据,并使用第一密钥数据认证第二设备。 第二设备预先存储根据预定密钥生成算法从标识符生成的第二密钥数据,并且通过第二密钥数据由第一设备认证。 因此,在不使用密钥登记装置的情况下,不能登记第一和第二装置,从而防止与未登记装置的通信。 这使得内容的使用被限制在用户的家庭中的个人使用,并且即使使用不在家外的设备也可以实现。

    Prime calculation device,method,and key issuing system
    49.
    发明申请
    Prime calculation device,method,and key issuing system 有权
    主要计算装置,方法和钥匙发放系统

    公开(公告)号:US20070121934A1

    公开(公告)日:2007-05-31

    申请号:US10582803

    申请日:2004-12-21

    IPC分类号: H04L9/28

    摘要: The present invention offers a prime calculating apparatus for achieving prime calculation where producing identical primes is avoided by simple management techniques. The prime calculating apparatus stores a known prime q and management information unique in the use range of primes. The prime calculating apparatus reads the management information; generates random information R based on the read management information; reads prime q; calculates prime candidate N, according to N=2×random information R×prime q+1, using the read prime q and generated random information R; tests whether the calculated prime candidate N is a prime; and outputs the calculated prime candidate N as a prime when the primality of the calculated prime candidate N is determined. Herewith, the prime calculating apparatus is able to calculate prime candidates from unique management information while avoiding producing identical primes.

    摘要翻译: 本发明提供了一种用于实现主要计算的主要计算装置,其中通过简单的管理技术来避免产生相同的素数。 主计算装置存储在素数的使用范围中唯一的已知素数q和管理信息。 主计算装置读取管理信息; 基于读取的管理信息生成随机信息R; 读q 根据N = 2x随机信息Rxprime q + 1,使用读取素数q和生成的随机信息R来计算素数候选N; 测试所计算的素数候选N是否为素数; 并且当确定所计算的素数候选N的原语时,将所计算的素数候选N作为素数输出。 因此,主计算装置能够从唯一的管理信息计算主要候选者,同时避免产生相同的素数。

    Content distribution server, key assignment method, content output apparatus, and key issuing center
    50.
    发明申请
    Content distribution server, key assignment method, content output apparatus, and key issuing center 失效
    内容分发服务器,密钥分配方法,内容输出设备和密钥发放中心

    公开(公告)号:US20070033416A1

    公开(公告)日:2007-02-08

    申请号:US10577448

    申请日:2004-12-15

    摘要: The present invention is a content distribution system for distributing contents. The content distribution system (1) includes a key issuing center (11), a server (12), eight output apparatuses (13a) to (13h), and a communication path (10) that connects them to each other. Here, a pair of the key issuing center (11) and each of the output apparatuses (13a) to (13h) is previously given an individual key shared between them. For example, the key issuing center (11) shares an individual key IKa with the output apparatus (13a), an individual key IKb with the output apparatus (13b), and an individual key IKh with the output apparatus (13h).

    摘要翻译: 本发明是用于分发内容的内容分发系统。 内容分发系统(1)包括密钥发行中心(11),服务器(12),八个输出设备(13a)至(13h)以及将它们彼此连接的通信路径(10)。 这里,一对密钥发行中心(11)和每个输出装置(13a)至(13h)预先被给予它们之间共享的单独密钥。 例如,密钥发行中心(11)与输出设备(13a)共享一个单独的密钥IKa,与输出设备(13b)共享一个单独的密钥IKb以及与输出设备(13h)的单独密钥IKh) 。