Host device
    71.
    发明授权
    Host device 有权
    主机设备

    公开(公告)号:US08948400B2

    公开(公告)日:2015-02-03

    申请号:US13524579

    申请日:2012-06-15

    IPC分类号: H04L9/08

    摘要: the host device being configured to receive, from a key issuer who issued the medium device key (Kmd_i) and the medium device key certificate, a host device key (Khd_i) and a host device certificate (Certhost), the host device being configured to execute authentication with the information recording device using the host device key (Khd_i) and the host device certificate (Certhost), the host device being configured to receive second controller identification information (IDcntr) from the information recording device, the second controller identification information being generated by executing a one-way function calculation based on the controller key (Kc) and the first controller identification information (IDcu), and the host device being configured to decrypt the encrypted content data stored in the information recording device, in response to reception of the second controller identification information (IDcntr) from the information recording device.

    摘要翻译: 所述主机设备被配置为从发出所述介质设备密钥(Kmd_i)和所述介质设备密钥证书的密钥发行者接收主机设备密钥(Khd_i)和主机设备证书(Certhost),所述主机设备被配置为 使用所述主机设备密钥(Khd_i)和所述主机设备证书(Certhost)与所述信息记录设备一起执行认证,所述主机设备被配置为从所述信息记录设备接收第二控制器标识信息(IDcntr),所述第二控制器标识信息 通过执行基于控制器密钥(Kc)和第一控制器标识信息(IDcu)的单向函数计算而产生的,并且主机设备被配置为响应于接收来对存储在信息记录设备中的加密内容数据进行解密 的来自信息记录装置的第二控制器识别信息(IDcntr)。

    Authentication method
    72.
    发明授权
    Authentication method 有权
    认证方式

    公开(公告)号:US08938616B2

    公开(公告)日:2015-01-20

    申请号:US13523188

    申请日:2012-06-14

    IPC分类号: H04L9/32

    摘要: According to one embodiment, a authentication method comprising: generating a second key by the first key, the first key being stored in a memory and being prohibited from being read from outside; generating a session key by the second key; generating first authentication information, the secret identification information stored in a memory and being prohibited from being read from outside; transmitting encrypted secret identification information to an external device and receiving second authentication information from the external device, the encrypted secret identification information stored in a memory and readable, the second authentication information generated based on the encrypted secret identification information; and determining whether the first authentication information and the second authentication information match.

    摘要翻译: 根据一个实施例,一种认证方法,包括:通过第一密钥生成第二密钥,第一密钥存储在存储器中并被禁止从外部读取; 通过第二个密钥生成会话密钥; 生成第一认证信息,存储在存储器中并被禁止从外部读取的秘密识别信息; 向外部设备发送加密的秘密识别信息并从外部设备接收第二认证信息,所述加密的秘密识别信息存储在存储器中并且可读,所述第二认证信息是基于所述加密的秘密识别信息生成的; 以及确定所述第一认证信息和所述第二认证信息是否匹配。

    AUTHENTICATOR, AUTHENTICATEE AND AUTHENTICATION METHOD
    73.
    发明申请
    AUTHENTICATOR, AUTHENTICATEE AND AUTHENTICATION METHOD 有权
    授权人,认证和认证方法

    公开(公告)号:US20140289526A1

    公开(公告)日:2014-09-25

    申请号:US13985431

    申请日:2012-02-17

    IPC分类号: H04L9/08 H04L9/32

    摘要: According to one embodiment, an authentication method between an authenticatee which stores key information having a data structure composed of a key transition record, secret information XY of a matrix form, and secret information XYE which is created by encrypting the secret information XY, and an authenticator which authenticates the authenticatee, includes selecting, by the authenticator, a record corresponding to a device index of the authenticator from the key information which is received from the authenticatee, and decrypting the record by a device key, thereby taking out a key transition, and executing, by the authenticator, a decryption process on the secret information XYE, which is received from the authenticatee, by using the corresponding key transition, and sharing the secret information XY.

    摘要翻译: 根据一个实施例,存储具有由密钥转换记录,矩阵形式的秘密信息XY和通过加密秘密信息XY创建的秘密信息XYE组成的密钥信息的认证方的认证方法,以及 验证认证者的认证方包括由认证者从从认证者接收到的密钥信息中选择与认证者的设备索引对应的记录,并通过设备密钥解密记录,从而进行密钥转换, 并且由认证器执行对从认证者接收的秘密信息XYE的解密处理,通过使用相应的密钥转换并共享秘密信息XY。

    AUTHENTICATOR, AUTHENTICATEE AND AUTHENTICATION METHOD
    74.
    发明申请
    AUTHENTICATOR, AUTHENTICATEE AND AUTHENTICATION METHOD 有权
    授权人,认证和认证方法

    公开(公告)号:US20140075190A1

    公开(公告)日:2014-03-13

    申请号:US14001609

    申请日:2011-09-26

    IPC分类号: H04L9/32

    摘要: According to one embodiment, an authenticatee includes, a memory configured to store secret information XY, secret information XY which is created by multiply duplicating, at least twice, the secret information XY, and secret information XYE, a generation module configured to generate a random number A, a generation module configured to generate a random number D which is composed of at least a part of the generated random number A and a random number B which is received, a calculating module configured to generate data C by executing a compression calculated operation with respect to at least a part of the random number D and the secret information XY loaded from the memory, a generation module configured to generate data ν, and a bit-by-bit addition module configured to calculate an calculated result Z from the data ν and the data C.

    摘要翻译: 根据一个实施例,认证者包括:被配置为存储秘密信息XY的存储器,通过将秘密信息XY和秘密信息XYE至少两次复制复制创建的秘密信息XY,生成模块,被配置为生成随机 数字A,生成模块,被配置为生成由生成的随机数A的至少一部分和接收到的随机数B组成的随机数D;计算模块,被配置为通过执行压缩计算的操作来生成数据C 相对于随机数D的至少一部分和从存储器加载的秘密信息XY,生成模块被配置为生成数据nu,以及逐位加法模块,被配置为从数据计算计算结果Z nu和数据C.

    DATA RECORDING DEVICE, HOST DEVICE AND METHOD OF PROCESSING DATA RECORDING DEVICE
    75.
    发明申请
    DATA RECORDING DEVICE, HOST DEVICE AND METHOD OF PROCESSING DATA RECORDING DEVICE 有权
    数据记录装置,主机装置和处理数据记录装置的方法

    公开(公告)号:US20140047241A1

    公开(公告)日:2014-02-13

    申请号:US13513469

    申请日:2012-03-22

    IPC分类号: H04L9/08

    摘要: A data storage unit can store an encrypted medium device key Enc (Kcu, Kmd_i), and a medium device key certificate (Certmedia). A controller can include an information recording unit to store a controller key (Kc) and first controller identification information (IDcu). A key generation unit executes a one-way function calculation based on the controller key and the first controller identification information to generate a controller unique key (Kcu). An identification information generating unit executes a one-way function calculation based on the controller key and the first controller identification information to generate second controller identification information (IDcntr). A key encryption unit encrypts the medium device key (Kmd_i) by the controller unique key (Kcu) to generate encrypted medium device key Enc (Kcu, Kmd_i). A key exchange unit executes an authentication key exchange process with a host device using the medium device key (Kmd_i) and the medium device key certificate (Certmedia).

    摘要翻译: 数据存储单元可以存储加密的介质设备密钥Enc(Kcu,Kmd_i)和中等设备密钥证书(Certmedia)。 控制器可以包括用于存储控制器密钥(Kc)和第一控制器标识信息(IDcu)的信息记录单元。 密钥生成单元基于控制器密钥和第一控制器识别信息执行单向函数计算,以生成控制器唯一密钥(Kcu)。 识别信息生成单元基于控制器键和第一控制器识别信息执行单向函数计算,以生成第二控制器识别信息(IDcntr)。 密钥加密单元通过控制器唯一密钥(Kcu)加密介质设备密钥(Kmd_i),以产生加密的介质设备密钥Enc(Kcu,Kmd_i)。 密钥交换单元使用介质设备密钥(Kmd_i)和介质设备密钥证书(Certmedia)来执行与主机设备的认证密钥交换过程。

    Apparatus, method, and computer program product for processing information
    76.
    发明授权
    Apparatus, method, and computer program product for processing information 失效
    用于处理信息的装置,方法和计算机程序产品

    公开(公告)号:US08600064B2

    公开(公告)日:2013-12-03

    申请号:US12401703

    申请日:2009-03-11

    IPC分类号: H04L9/08

    摘要: An information processing apparatus transmits, to another information processing apparatus, designation information that is used to specify at least one of an encrypted secret keys that can be decrypted using a first apparatus secret key, out of an encrypted secret key set contained in a first key management information, receives from the another information processing apparatus, the encrypted secret key specified by the designation information out of the encrypted secret key set contained in a second key management information, obtains a second secret key contained in the second key management information in a secret manner by decrypting the encrypted secret key received by the receiving unit using the first apparatus secret key, and performs the authentication process with the another information processing apparatus using the second secret key.

    摘要翻译: 信息处理装置将包含在第一密钥中的加密秘密密钥集中的用于指定可以使用第一装置秘密密钥解密的加密秘密密钥中的至少一个的指定信息发送到另一个信息处理装置 管理信息,从另一信息处理装置接收由包含在第二密钥管理信息中的加密秘密密钥集合中的指定信息指定的加密秘密密钥,以秘密的形式获得包含在第二密钥管理信息中的第二密钥 通过使用第一设备秘密密钥解密由接收单元接收的加密秘密密钥,并且使用第二密钥对另一信息处理设备执行认证处理。

    DEVICE AND AUTHENTICATION METHOD THEREFOR
    77.
    发明申请
    DEVICE AND AUTHENTICATION METHOD THEREFOR 有权
    其设备和认证方法

    公开(公告)号:US20130142324A1

    公开(公告)日:2013-06-06

    申请号:US13524475

    申请日:2012-06-15

    IPC分类号: G06F21/24

    摘要: According to one embodiment, an authentication method includes generating, by the memory, first authentication information by calculating secret identification information with a memory session key in one-way function operation, transmitting encrypted secret identification information, a family key block, and the first authentication information to a host, and generating, by the host, second authentication information by calculating the secret identification information generated by decrypting the encrypted secret identification information with the host session key in one-way function operation. The method further includes comparing, by the host, the first authentication information with the second authentication information.

    摘要翻译: 根据一个实施例,一种认证方法包括:通过在单向功能操作中用存储器会话密钥计算秘密识别信息,通过存储器生成第一认证信息,发送加密的秘密识别信息,家庭密钥块和第一认证 信息发送到主机,并且由主机通过计算通过用单向功能操作中的主机会话密钥对加密的秘密识别信息进行解密而生成的秘密识别信息来生成第二认证信息。 该方法还包括由主机将第一认证信息与第二认证信息进行比较。

    AUTHENTICATOR
    78.
    发明申请
    AUTHENTICATOR 有权
    授权人

    公开(公告)号:US20130124854A1

    公开(公告)日:2013-05-16

    申请号:US13524417

    申请日:2012-06-15

    IPC分类号: H04L9/32

    摘要: According to one embodiment, a method for authenticating a device, wherein the device holds secret identification information, encrypted secret identification information, and key management information, and an authenticator holds an identification key, the method includes reading, by the authenticator, the encrypted secret identification information and the key management information from the device, and obtaining, by the authenticator, a family key by using the key management information, the family key being capable of being decrypted with the identification key. The method further includes obtaining, by the authenticator, the secret identification information by decrypting the encrypted secret identification information with the family key.

    摘要翻译: 根据一个实施例,一种用于认证设备的方法,其中所述设备保存秘密识别信息,加密的秘密识别信息和密钥管理信息,并且认证器保存识别密钥,所述方法包括由认证者读取加密的秘密 识别信息和密钥管理信息,并且由认证者通过使用密钥管理信息获得家庭密钥,家庭密钥能够用识别密钥解密。 该方法还包括通过用家庭密钥解密加密的秘密识别信息,由认证者获得秘密识别信息。