Improved Kerberos identity authentication system and method based on a quantum communication network
An identity authentication and quantum communication technology, applied in user identity/authority verification, transmission systems, digital transmission systems, etc., can solve problems such as timestamp replay attacks, high system time synchronization requirements, and high server pressure.
- Summary
- Abstract
- Description
- Claims
- Application Information
AI Technical Summary
Problems solved by technology
Method used
Image
Examples
Embodiment 1
[0101] Embodiment 1, authentication of two client terminals belonging to the same quantum network service station in the local area network
[0102] In the following steps, the encryption, decryption and encryption operations involved in each client side are all performed in the matched quantum key card. The encryption and decryption operations involved in the identity authentication server and ticket permission server are completed in the encryption and decryption server of the quantum network service station.
[0103] When both client A and client B belong to the same quantum network service station, the quantum key card involved in the identity authentication process is registered and issued at the local quantum network service station. For specific steps, see figure 2 , in the figure, the curly brackets indicate the encrypted part, and the brackets indicate multiple transmitted contents, separated by commas, and the following content indicates the key used, such as {A, B...
Embodiment 2
[0130] Embodiment 2, identity authentication of two client terminals in the wide area network
[0131] Such as Figure 4 As shown, when client A and client B do not belong to the same quantum network service station, the quantum key cards involved in the identity authentication process are registered and issued by the quantum network service station to which the client belongs. The difference between the system architecture in this embodiment and Embodiment 1 is that it is applied in a wide area network. The first-level switching center is a quantum network core station in a prefecture-level city or a fairly large area, and the second-level switching center is a county-level city or equivalent. The quantum network core station of a large or small area, the quantum network service station is a quantum communication access site of a fairly large area of a township or street office.
[0132] The primary switching center is connected with multiple subordinate secondary switchin...
Embodiment 3
[0151] Embodiment 3, the extension of identity authentication of two clients belonging to a quantum network service station in the local area network
[0152] Based on the identity authentication protocol in Embodiment 1, client B generates a new key K t , and K A-B Together with the quantum network service station to complete synchronization and send to client A. K t It is only used as the current identity authentication session key, and it will be discarded immediately after the identity authentication is completed. The improvement to the identity authentication protocol in Embodiment 1 is achieved by adding an additional key that is used only once, and the number of identity authentication information is not increased. The specific steps of the improved protocol can be found in Figure 5 , the text description is as follows:
[0153] 1. Identity authentication key generation:
[0154] User-side identity authentication key generation: The quantum key card matched by us...
PUM
Abstract
Description
Claims
Application Information
- R&D Engineer
- R&D Manager
- IP Professional
- Industry Leading Data Capabilities
- Powerful AI technology
- Patent DNA Extraction
Browse by: Latest US Patents, China's latest patents, Technical Efficacy Thesaurus, Application Domain, Technology Topic, Popular Technical Reports.
© 2024 PatSnap. All rights reserved.Legal|Privacy policy|Modern Slavery Act Transparency Statement|Sitemap|About US| Contact US: help@patsnap.com