Method for generating core identity digital certificate and identity side surface digital certificate

A digital certificate and identity technology, applied in the direction of user identity/authority verification, digital transmission system, public key for secure communication, etc., can solve problems such as limiting the scope of use of digital certificates, reducing user experience, hidden dangers of user privacy, etc., to avoid Exploding passwords, improving user experience, and protecting privacy

Active Publication Date: 2017-11-21
SOUTH CHINA UNIV OF TECH
View PDF2 Cites 9 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

If the user applies for a new digital identity CA certificate from the CA certification authority for each application scenario, the CA certification authority will repeatedly review many identity attribute information of the user, which greatly wastes resources and reduces user experience.
Users need digital certificates with multiple identities. This requirement conflicts with the high cost of issuing digital certificates, thus limiting the scope of use of digital certificates and leaving hidden dangers to users' privacy.

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Method for generating core identity digital certificate and identity side surface digital certificate
  • Method for generating core identity digital certificate and identity side surface digital certificate
  • Method for generating core identity digital certificate and identity side surface digital certificate

Examples

Experimental program
Comparison scheme
Effect test

Embodiment

[0032] like figure 1 As shown, a method for generating a core identity digital certificate and an identity side digital certificate includes the following steps:

[0033] The S1CA certification authority negotiates with the designated purification party, and uses the purifiable signature key generation algorithm to generate two pairs of associated public-private key pairs. One pair is held by the CA certification authority for signing and verifying the core identity certificate, and the other pair It is held by the purifying party and is used for purifying operations and verifying the signature regenerated after purifying;

[0034] like figure 2 As shown, the S2 user applies to the CA certification authority to issue a core identity digital certificate. The certificate represents the user's core identity and has complete information on the user's identity attributes. The core identity certificate needs to be properly kept together with the private key, as follows:

[0035] ...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a method for generating a core identity digital certificate and an identity side surface digital certificate. The method comprises the steps of S1, performing negotiation between a certificate authority (CA) and a preset sanitization party, generating two pairs of correlated public key and private key pairs by means of a sanitizable signature key generating algorithm, wherein one pair of public key and private key pair is held by the CA for core identity certificate signature and verification, and the other pair is held by the sanitization party for performing sanitization operation and verifying a signature which is regenerated after purification; S2, applying for issuing the core identity digital certificate by a user to CA; and S3, applying for issuing the identity side surface digital certificate by the user to the sanitization party which is preset by CA by the user according to the core identity digital certificate. The method according to the invention reduces auditing cost of the CA in repeated issuing the digital certificates and improves privacy information protection.

Description

technical field [0001] The invention relates to the field of digital certificates, in particular to a method for generating core identity digital certificates and identity side digital certificates. Background technique [0002] Digital identity is a proxy for the real identity of people participating in network activities, which has many manifestations, such as traditional username / password mechanism, human biometrics, physical tokens and digital certificates. Among them, the digital certificate is a highly secure authentication method, but in the process of use, since each new digital certificate must be audited and signed by the CA certification authority, the cost is relatively high, so it is generally avoided to frequently generate new ones. digital certificate. However, in consideration of privacy issues, users sometimes hope to generate digital certificates containing different identity attribute information for different application scenarios, so as to prevent poten...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L9/08H04L9/30H04L9/32H04L29/06
CPCH04L9/0819H04L9/0825H04L9/0861H04L9/30H04L9/3263H04L63/0807H04L63/0823
Inventor 贺小箭寇池滨
Owner SOUTH CHINA UNIV OF TECH
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products