Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

Customer digital certificate private key management method and system

A digital certificate and private key management technology, which is applied to the public key and key distribution of secure communication, can solve the problems that cannot be opened, the signature private key cannot be backed up, and the non-repudiation of the signature certificate is destroyed, so as to ensure the security of the installation , the effect of ensuring safety

Active Publication Date: 2009-07-15
北京天诚安信科技有限公司
View PDF0 Cites 36 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

At this time, in order to ensure the validity, non-repudiation, confidentiality and integrity of the information, the signing certificate and encryption certificate need to meet the following conditions: 1. The uniqueness of the signing certificate, that is, the signing private key cannot be backed up, otherwise it will be Destroy the non-repudiation of the signature certificate; 2. The encryption private key of the encryption certificate needs to have a safe backup, otherwise when user A loses the encryption private key, he will not be able to open the files encrypted by other users; in addition, the encryption private key backup The content cannot be obtained by users other than user A, otherwise it will affect the confidentiality and integrity of encrypted information

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Customer digital certificate private key management method and system
  • Customer digital certificate private key management method and system
  • Customer digital certificate private key management method and system

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0061] In the following, the technical solutions in the embodiments of the present invention will be clearly and completely described in conjunction with the accompanying drawings in the embodiments of the present invention. Obviously, the described embodiments are only some of the embodiments of the present invention, not all of them. Based on the embodiments of the present invention, all other embodiments obtained by persons of ordinary skill in the art without creative efforts fall within the protection scope of the present invention.

[0062] The technical terms or terms appearing in this article are firstly explained below, so as to facilitate the understanding of the technical solution of this article by those skilled in the art:

[0063] USB Key: It is a hardware device with a USB interface. It has a built-in single-chip microcomputer or smart card chip, has a certain storage space, can store the user's private key and digital certificate, and uses the built-in public ke...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

An embodiment of the invention discloses a method for managing private key of user digital certificate, wherein the method comprises the following steps: generating the key pair of ciphered certificate; ciphering the private key in the key pair of ciphered certificate by the ciphering card with the common key in the preset key pair for obtaining digital envelop; authorizing the enciphered certificate by CA, and providing the enciphered certificate and digital envelop to the USB Key of user end; and deciphering the digital envelope according to the private key in the preset key pair for obtaining the private key of ciphered certificate. The embodiment of the invention simultaneously discloses a system for realizing the method. The embodiment of the invention ensures the security of private key of ciphered key in the transmission process. The embodiment of the invention also use KMC common key and KMC administrator common key for enciphering and backing up the private key of ciphered certificate, furthermore backs up the KMC private key and KMC administrator private key, and ensures the backup security and recoverability of private key of enciphered certificate.

Description

technical field [0001] The present invention relates to the technical field of communication, and more specifically, to a method and system for managing a user's digital certificate private key based on a key management system. Background technique [0002] In the public key infrastructure (PKI, Public Key Infrastructure), the user's digital certificate is divided into a signature certificate and an encryption certificate, wherein the signature certificate is mainly used to sign user information to ensure the validity and non-repudiation of the information The encryption certificate is mainly used to encrypt the information transmitted by the user to ensure the confidentiality and integrity of the information. The signature certificate contains a pair of keys (signature public key and signature private key), and the encryption certificate also contains a pair of keys (encryption public key and encryption private key), and the signature public key and encryption certificate o...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
IPC IPC(8): H04L9/30H04L9/08
Inventor 张海松唐志红鄂海红刘旭孟仁兴
Owner 北京天诚安信科技有限公司
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products