Method and system for digital identity management

A technology of identification management and digital identity, which is applied in the field of information security, can solve the problems of reduced security of the application system and reduced self-certification of the IBC cryptographic technology system, and achieve the effect of reducing the security

Active Publication Date: 2018-01-23
BEIJING SANSEC TECH DEV
View PDF8 Cites 2 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0005] The present invention provides a digital identity management method and system, the purpose of which is to solve the problem of KDC as a centralized key distribution center, if it is attacked, the security of the entire application system will be reduced, and the key custody and key update of the IBC cryptographic technology system The problem of post-identification self-certification reduction

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Method and system for digital identity management
  • Method and system for digital identity management
  • Method and system for digital identity management

Examples

Experimental program
Comparison scheme
Effect test

Embodiment 1

[0076] Such as figure 1 As shown, this embodiment proposes a digital identity management method, which is implemented by the following process:

[0077] S1. Establish a blockchain application system and deploy multiple nodes. Each node corresponds to an open and shared ledger, and each ledger records multiple blocks;

[0078] S2. Establish an identity management mode, and record the generation, cancellation, and update operations of each user's identity ID synchronously in each ledger.

[0079] Among them, such as figure 2 As shown, the process of establishing a blockchain application system is:

[0080] S11. Establish a P2P network and deploy multiple nodes;

[0081] S12. Each node maintains an open and shared ledger, in which multiple blocks are recorded, and each block records multiple pieces of operation or transaction data;

[0082] S13. Each node is independently maintained by each user or a third party.

[0083] Such as image 3 As shown, the process of establish...

Embodiment 2

[0110] Such as Figure 6 As shown, this embodiment proposes a digital identity management system, which includes:

[0111] Blockchain application system building module 1 is used to deploy multiple nodes, each node corresponds to an open and shared account book, and each account book records multiple blocks;

[0112] The user identity management mode establishment module 2 is used for synchronously recording the generation, cancellation and update operations of each user identity ID in each ledger.

[0113] Among them, such as Figure 7 As shown, the block chain application system building module 1 includes:

[0114] The node deployment module 3 is used to establish a P2P network and deploy multiple nodes;

[0115] The data recording module 4 is used to enable each node to maintain an open and shared account book in a one-to-one manner. Multiple blocks are recorded in the account book, and each block records multiple pieces of operation or transaction data;

[0116] The au...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The present invention relates to a digital identity-based cryptograph management method and system, relating to the field of information security and solving a problem that cryptograph self-evidence is lowered after secret key hosting and the secret key in an identity-based cryptograph (IBC) technology are updated. The method comprises the steps of firstly, establishing a block chain application system, and deploying multiple nodes, wherein each node is corresponding to an overt, shared account book, and each account book records multiple blocks; and then establishing an identity-based cryptograph management mode, and recording generation, cancellation and update of the ID of each user in each account book synchronously. By combining with the block chain technology, the method implements a non-centralized key distribution center (KDC) and a distributed user ID and secret key distribution system, that is, a user can build a private KDC so as to generate the user ID and secret key data, so that the centralized KDC is prevented from being attacked so as not to lower the security of the whole application. The opposite side needs to attack more than half nodes, so that it is more difficult to attack the system, and the security is far higher than that of the centralized IBC algorithm application scheme.

Description

technical field [0001] The invention relates to the field of information security. Background technique [0002] At present, IBC (Identity-Based Cryptograph) encryption technology based on identity has been widely used. This technology uses an asymmetric cryptographic system. Two sets of different keys are used for encryption and decryption. The user's public key is his identity ID. , such as name, email address, mobile phone number, etc., so it has the advantage of simple key management. [0003] In the IBC cryptographic technology system, since the user's private key is generated and managed by the centrally deployed Key Distribution Center KDC (Key Distribution Center), the KDC saves the backup of the user's private key, that is, the IBC key escrow problem. This problem has led to the failure of IBC encryption technology to meet the requirements of the "Electronic Signature Law" and cannot be applied in an open network environment. [0004] In this system, if the user's...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & AuthorityPatents(China)
IPC IPC(8): H04L29/06H04L9/08H04L29/08
CPCH04L9/083H04L63/062H04L63/0807H04L67/104
Inventor范希骏杨国强韩学洋张玉涛
OwnerBEIJING SANSEC TECH DEV