-
公开(公告)号:US20190281453A1
公开(公告)日:2019-09-12
申请号:US16421039
申请日:2019-05-23
Applicant: Huawei Technologies Co., Ltd.
Inventor: Jie SHI , Yanjiang YANG , Guilin WANG
Abstract: This application discloses an identity authentication method, a device, and a system. The method includes: obtaining a first master public key and a first private key from a key generation center; sending a ClientHello message; obtaining a second identity from a ServerKeyExchange message; generating a pre-shared key of a selected PSK mode by using the second identity, the first private key, and the first master public key; and completing identity authentication with a second device by using the pre-shared key. According to the method, device, and system provided in embodiments of this application, an identity can be transmitted by using information in the TLS protocol, without extending the TLS protocol. This can avoid a compatibility problem caused by TLS protocol extension.
-
2.
公开(公告)号:US20250030563A1
公开(公告)日:2025-01-23
申请号:US18905004
申请日:2024-10-02
Applicant: HUAWEI TECHNOLOGIES CO., LTD.
Inventor: Guilin WANG , Yanjiang YANG , Jie ZHANG
IPC: H04L9/32
Abstract: This application discloses a digital certificate verification method and apparatus. The method includes: A first device receives a first link certificate and a first digital certificate that are sent by a second device, and verifies validity of the first digital certificate based on a root certificate trusted by the first device and the first link certificate. In this application, the first device and the second device do not need to confirm a root certificate trusted by a peer device, and the first device does not need to additionally upload another certificate or perceive a case in which at least two root certificates coexist. The first device may verify the validity of the first digital certificate based on the root certificate trusted by the first device and the received first link certificate. Therefore, the method is simple and easy to implement and has a wide application scope.
-