Two-side authentication key negotiation method and system based on certificate

A technology for authenticated key agreement and certificate, applied in the field of key agreement, can solve key escrow, complex certificate management issues, complex certificate management and key escrow issues, etc.

Inactive Publication Date: 2015-08-26
HOHAI UNIV
View PDF4 Cites 19 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

However, most of the existing methods are proposed under the traditional public key cryptosystem or identity-based cryptosystem, so these methods either have complex certificate management problems, or key distribution and key escrow problems.
However, although the recently proposed certificateless authenticated key agreement method effectively solves the complex certificate management and key escrow problems, it still has the problem of key distribution.
Therefore, the application of the existing authentication key agreement method in the open network environment will be limited

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Two-side authentication key negotiation method and system based on certificate
  • Two-side authentication key negotiation method and system based on certificate
  • Two-side authentication key negotiation method and system based on certificate

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0041] Below in conjunction with accompanying drawing, technical scheme of the present invention is described in further detail:

[0042] The certificate-based two-party authentication key agreement method in the present invention can be realized based on bilinear pairing. The basic definition of bilinear pairing and the properties it satisfies will be briefly introduced below.

[0043] Let G 1 is an additive cyclic group of order q, G 2 is a multiplicative cyclic group of order q, and P is the group G 1 The generator of , where q is a large prime number. Suppose G 1 and G 2 The BDH problem on both groups is hard. If defined in group G 1 and group G 2 Previous Mapping e:G 1 ×G 1 →G 2 Satisfy the following three properties, then the mapping is called a valid bilinear pairing. bilinear pair e:G 1 ×G 1 →G 2 is group G 1 Cartesian product G with itself 1 ×G 1 to group G 2 The mapping, that is, the bilinear pair e:G 1 ×G 1 →G 2 Refers to the function z=e(P 1 ,...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses a two-side authentication key negotiation method based on a certificate, and the method comprises the following steps: generating a main key of a certificate center CA and a public parameter set of a system; generating public and private keys of users according to the public parameter set of the system and the identity information of the users, wherein the users comprise a conversation initiator and a conversation response side; generating user certificates according to the public parameter set of the system, the main key of the certificate center CA, the identity information of the users, and the public keys of the users; and generating a conversation key shared by two sides according to the public parameter set of the system, and the identity information, public keys, private keys and certificates of the conversation initiator and the conversation response side. The invention also discloses a two-side authentication key negotiation system based on the certificate. According to the technical scheme, the management process of the user certificates is simplified, and a high-efficiency hidden authentication mechanism is provided. Moreover, there is no problem of key distribution and management, so the method and system are suitable for an open network environment.

Description

technical field [0001] The invention relates to the technical field of key agreement in information security, in particular to a certificate-based two-party authentication key agreement method and system. Background technique [0002] As an important cryptographic primitive, key agreement can ensure that two or more users establish a shared session key by exchanging information in an open network environment, and the users participating in the communication can encrypt and decrypt through the shared session key communication data to ensure the security of network communication. Authenticated key agreement is a kind of key agreement with authentication function, which can authenticate the identities of both parties participating in the key agreement, thus effectively resisting man-in-the-middle attacks. Authenticated key agreement provides authentication, confidentiality and integrity protection for secure communication between users in an open network environment, and can b...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
IPC IPC(8): H04L9/08H04L29/06
CPCH04L9/0844H04L9/083H04L9/0838H04L9/085H04L63/062
Inventor陆阳张全领李继国王刚
OwnerHOHAI UNIV