Multi-CA cross-domain authentication method based on block chain in dispersed autonomous network
An independent network and authentication method technology, applied in the field of multi-CA cross-domain authentication based on blockchain, can solve flooding attacks, increase authentication overhead and other problems, achieve stable concurrency performance, speed up query speed, and good certificate query performance Effect
- Summary
- Abstract
- Description
- Claims
- Application Information
AI Technical Summary
Problems solved by technology
Method used
Image
Examples
Embodiment 1
[0060] Embodiment 1 Establishment of cross-domain authentication architecture
[0061] In order to meet the cross-domain authentication requirements of a large number of devices in the decentralized autonomous network, the present invention proposes a blockchain-based multi-CA cross-domain authentication architecture. The overall architecture is as follows: figure 1 As shown, the architecture consists of a consortium chain and multiple domains.
[0062] Each domain has its own CA server, network equipment, physical equipment, etc., and the CA server can use the original authentication method to authenticate members in the domain. There is also a server (Member authentication and management server MAMS) with member authentication and management functions in each domain. MAMS is responsible for authentication interaction with the CA server, and is also responsible for cross-domain authentication interaction with the alliance chain. The identity authentication algorithm uses inte...
Embodiment 2
[0064] Example 2 Intra-domain certificate life cycle
[0065] The blockchain-based multi-CA cross-domain authentication is compatible with the original CA authentication. The life cycle of the certificate in the authentication mechanism includes the issuance, renewal, and revocation of the certificate. The following process description takes the device Da in the organization Org1 to apply to join the domain A as an example, and introduces them respectively. The issuance, renewal and revocation process of certificates in the domain. The description of the symbols is shown in Table 1.
[0066] Table 1 Description of certificate life cycle symbols
[0067]
[0068] release:
[0069] The procedure for applying for a certificate and issuing a certificate for device Da in Org1 is as follows:
[0070] 1) Step 1: Da → MAMS_A: {app_for_cert(Da, Org1, PK UA )}: Device Da in organization 1 generates a public-private key pair PK UA 、PK RA , and send a certificate request to the m...
Embodiment 3
[0088] Embodiment 3 Cross-domain authentication method
[0089] Based on the above introduction of multi-CA cross-domain authentication architecture and CA certificate life cycle, we propose a blockchain-based cross-domain authentication method. Take device D in domain A A Access device D in domain B B As an example to introduce the cross-domain authentication scheme, the cross-domain authentication process is as follows: figure 2 As shown, the device in domain A has the certificate Cert_A. The specific cross-domain authentication process is as follows:
[0090] First, device D in domain A A To device D in domain B B Send a connection request, D B Query device D to MAMS_B A authentication information, if the query has no result, the connection will be rejected and the information of MAMS_B will be returned to D A . D. A Send a cross-domain authentication request to MAMS_B, MAMS_B generates a random number N after receiving the request and returns it to device D A ,D...
PUM
Login to View More Abstract
Description
Claims
Application Information
Login to View More - R&D
- Intellectual Property
- Life Sciences
- Materials
- Tech Scout
- Unparalleled Data Quality
- Higher Quality Content
- 60% Fewer Hallucinations
Browse by: Latest US Patents, China's latest patents, Technical Efficacy Thesaurus, Application Domain, Technology Topic, Popular Technical Reports.
© 2025 PatSnap. All rights reserved.Legal|Privacy policy|Modern Slavery Act Transparency Statement|Sitemap|About US| Contact US: help@patsnap.com



