One way authentication
    2.
    发明授权
    One way authentication 有权
    单向认证

    公开(公告)号:US08095792B2

    公开(公告)日:2012-01-10

    申请号:US11542106

    申请日:2006-10-04

    IPC分类号: H04L9/32

    摘要: A cryptosystem prevents replay attacks within existing authentication protocols, susceptible to such attacks but containing a random component, without requiring modification to said protocols. The entity charged with authentication maintains a list of previously used bit patterns, extracted from a portion of the authentication message connected to the random component. If the bit pattern has been seen before, the message is rejected; if the bit pattern has not been seen before, the bit pattern is added to the stored list and the message is accepted.

    摘要翻译: 密码系统防止现有认证协议中的重放攻击,容易受到这种攻击但包含随机组件,而不需要修改所述协议。 充电认证的实体维护从连接到随机组件的认证消息的一部分中提取的先前使用的位模式的列表。 如果之前已经看到位模式,则消息被拒绝; 如果以前没有看到位模式,则将位模式添加到存储的列表中,并且该消息被接受。

    Signatures with confidential message recovery

    公开(公告)号:US09455832B2

    公开(公告)日:2016-09-27

    申请号:US12230799

    申请日:2008-09-04

    IPC分类号: H04L9/30 H04L9/32

    摘要: A portion of the signed message in an ECPVS is kept truly confidential by dividing the message being signed into at least three parts, wherein one portion is visible, another portion is recoverable by any entity and carries the necessary redundancy for verification, and at least one additional portion is kept confidential. The additional portion is kept confidential by encrypting such portion using a key generated from information specific to that verifying entity. In this way, any entity with access to the signer's public key can verify the signature by checking for a specific characteristic, such as a certain amount of redundancy in the one recovered portion, but cannot recover the confidential portion, only the specific entity can do so. Message recovery is also provided in an elliptic curve signature using a modification of the well analyzed ECDSA signing equation instead of, e.g. the Schnorr equation used in traditional PV signature schemes.

    One way authentication
    6.
    发明授权
    One way authentication 有权
    单向认证

    公开(公告)号:US08938617B2

    公开(公告)日:2015-01-20

    申请号:US13618358

    申请日:2012-09-14

    摘要: A cryptosystem prevents replay attacks within existing authentication protocols, susceptible to such attacks but containing a random component, without requiring modification to said protocols. The entity charged with authentication maintains a list of previously used bit patterns, extracted from a portion of the authentication message connected to the random component. If the bit pattern has been seen before, the message is rejected; if the bit pattern has not been seen before, the bit pattern is added to the stored list and the message is accepted.

    摘要翻译: 密码系统防止现有认证协议中的重放攻击,容易受到这种攻击但包含随机组件,而不需要修改所述协议。 充电认证的实体维护从连接到随机组件的认证消息的一部分中提取的先前使用的位模式的列表。 如果之前已经看到位模式,则消息被拒绝; 如果以前没有看到位模式,则将位模式添加到存储的列表中,并且该消息被接受。

    Implicit certificate scheme
    8.
    发明授权
    Implicit certificate scheme 有权
    隐性证书制度

    公开(公告)号:US08705735B2

    公开(公告)日:2014-04-22

    申请号:US13527060

    申请日:2012-06-19

    IPC分类号: H04L9/08

    摘要: A method of generating a public key in a secure digital communication system, having at least one trusted entity CA and subscriber entities A. The trusted entity selects a unique identity distinguishing each entity A. The trusted entity then generates a public key reconstruction public data of the entity A by mathematically combining public values obtained from respective private values of the trusted entity and the entity A. The unique identity and public key reconstruction public data of the entity A serve as A's implicit certificate. The trusted entity combines the implicit certificate information with a mathematical function to derive an entity information ƒ and generates a value kA by binding ƒ with private values of the trusted entity. The trusted entity transmits the value kA to the entity to permit A to generate a private key from kA, A's private value and A's implicit certificate.

    摘要翻译: 一种在具有至少一个可信实体CA和订户实体A的安全数字通信系统中生成公共密钥的方法。可信实体选择区分每个实体A的唯一标识。然后,可信实体生成公共密钥重建公共数据 实体A通过数学地组合从可信实体的相应私有值和实体A获得的公共值。实体A的唯一身份和公钥重建公共数据用作A的隐式证书。 可信实体将隐式证书信息与数学函数组合以导出实体信息ƒ并通过将ƒ与可信实体的私有值绑定来生成值kA。 可信实体将值kA发送给实体,以允许A从kA,A的私有值和A的隐式证书生成私钥。

    Aggregate signature schemes
    9.
    发明授权

    公开(公告)号:US08582772B2

    公开(公告)日:2013-11-12

    申请号:US13461586

    申请日:2012-05-01

    IPC分类号: H04K1/00 G05B11/01 G08C19/12

    摘要: An authenticated RFID system is provided that uses elliptic curve cryptography (ECC) to reduce the signature size and read/write times when compared to traditional public key implementations such as RSA. Either ECDSA or ECPVS can be used to reduce the signature size and ECPVS can be used to hide a portion of the RFID tag that contains sensitive product identifying information. As a result, smaller tags can be used or multiple signatures can be written at different stages in a manufacturing or supply chain. A key management system is used to distribute the verification keys and aggregate signature schemes are also provided for adding multiple signatures to the RFID tags, for example in a supply chain.

    Method of compressing a cryptographic value
    10.
    发明授权
    Method of compressing a cryptographic value 有权
    压缩加密值的方法

    公开(公告)号:US08548165B2

    公开(公告)日:2013-10-01

    申请号:US13283463

    申请日:2011-10-27

    摘要: A computer implemented method of compressing a digitally represented cryptographic value. The method comprising the steps of: (a) selecting a secret value; (b) performing a cryptographic operation on the secret value to generate the cryptographic value; (c) determining whether the cryptographic value satisfies the pre-determined criteria; and (d) repeating the sequence of steps starting at step (a) until the cryptographic value satisfies the pre-determined criteria.

    摘要翻译: 一种压缩数字化密码值的计算机实现方法。 该方法包括以下步骤:(a)选择秘密值; (b)对秘密值执行密码操作以产生密码值; (c)确定密码值是否满足预定标准; 和(d)重复从步骤(a)开始的步骤序列,直到密码值满足预定标准。