Operation end agent authorization method and device based on multi-party computing
A technology of multi-party computing and authorization devices, applied in secure communication devices, public keys for secure communications, user identity/authority verification, etc., can solve problems that affect the efficiency of the overall signature and reduce the flexibility of the overall signature
- Summary
- Abstract
- Description
- Claims
- Application Information
AI Technical Summary
Problems solved by technology
Method used
Image
Examples
Embodiment 1
[0062] Please see figure 1 , figure 1 A schematic flowchart of a multi-party computing-based agent authorization method at the operation end is provided for the embodiment of the present application. Wherein, the multi-party computing-based operation agent authorization method includes:
[0063] S101. Perform multi-party calculation on a preset signature key according to a preset public key cryptographic algorithm to obtain a first key component and a second key component.
[0064] In this embodiment, the public key cryptographic algorithm may be SM2 elliptic curve public key cryptographic algorithm, RSA algorithm or any other elliptic curve algorithm.
[0065] In this embodiment, the first key component and the second key component can be calculated to obtain the above-mentioned signature key, and the operator key and the server key can also be calculated to obtain the above-mentioned signature key. But in practice, the first key component is stored on the management side,...
Embodiment 2
[0088] Please see figure 2 , figure 2 It is a schematic flowchart of a multi-party computing-based operation-end proxy authorization method provided by the embodiment of the present application. Such as figure 2 As shown, wherein, the multi-party computing-based operation-side proxy authorization method includes:
[0089] S201. Perform multi-party calculation on a preset signature key according to a preset public key cryptographic algorithm to obtain a first key component and a second key component.
[0090] In this embodiment, the public key cryptographic algorithm may be an SM2 elliptic curve public key cryptographic algorithm.
[0091] S202. Obtain the order of the base point of the curve included in the preset elliptic curve parameters.
[0092] In this embodiment, this step can follow the curve parameters defined in GB / T32918, and obtain the curve parameters including the curve base point G, order n (ie, the order of the curve base point) and multiple points define...
Embodiment approach
[0119] As an optional implementation, the method also includes:
[0120] When the signature request sent by the operator is received, the signature authorization information is sent to enable the operator to perform the signature operation; the signature request is generated according to the key of the operator.
[0121] As an optional implementation manner, the step of sending the second subcomponent to the operator includes:
[0122] sending the second sub-component to the operator through the second communication channel;
[0123] The steps of sending the first subcomponent to the server include:
[0124] Send the first subcomponent to the server through the first communication channel.
[0125] In this embodiment, the communication channel between the management end (that is, the execution subject) and the operation end may be different from the communication channel between the management end and the server end.
[0126] In this embodiment, prior to the above-mentioned...
PUM
Login to View More Abstract
Description
Claims
Application Information
Login to View More 


