Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

161 results about "Group key" patented technology

In cryptography, a group key is a cryptographic key that is shared between a group of users. Typically, group keys are distributed by sending them to individual users, either physically, or encrypted individually for each user using either that user's pre-distributed private key.

Data packet optimization processing method and device, equipment and medium

The invention relates to the technical field of data processing, can be applied to business scenes such as financial science and technology and medical health, and discloses a data grouping optimization processing method, device and equipment and a medium. The method comprises the steps that input data are collected, cleaning and format unification are completed, and cleaned data are generated; generating a grouping mark from a condition constraint library based on the data attribute field; dividing the data into a plurality of subsets according to a segmentation strategy and distributing the subsets to a plurality of processing nodes; generating a grouping key in each processing node according to the grouping mark and the data attribute field; grouping identifiers are distributed for the records based on the grouping keys, and a local grouping result table is formed; and finally, collecting all local results, verifying the consistency, and generating a global grouping result table. According to the method, sorting and key generation are performed in combination with the data attribute fields and the grouping marks, high-precision grouping identification is realized, and the accuracy of a global grouping result is guaranteed through an inter-node consistency verification mechanism.
Owner:CHINA PING AN LIFE INSURANCE CO LTD

Cloud edge collaborative multi-factor identity authentication method and system for ubiquitous network

The invention relates to the technical field of security authentication and ubiquitous networks, and discloses a ubiquitous-network-oriented cloud-side collaborative multi-factor identity authentication method and system, and the method comprises the steps: issuing an identity certificate based on an elliptic curve and a PUF challenge-response library of a parameter initialization edge node through a cloud, and achieving the cloud-side bidirectional authentication; when the terminal is accessed, multi-factor authentication combining PUF challenge and a dynamic threshold value is adopted, so that the capability of resisting counterfeiting and replay attacks is improved; after the authentication is passed, the edge node generates a group public key locally and constructs a binary tree group key structure with a preset depth, and post-quantum safe and efficient group signature management is supported; when a newly added terminal joins, generating a secret key based on an elliptic curve algorithm and distributing a group signature private key share to realize lightweight member management; the integrity, confidentiality and traceability are realized while the transmission efficiency is guaranteed, and safe communication and dynamic revocation in an edge resource limited environment are effectively supported.
Owner:CHANGCHUN UNIV OF SCI & TECH

Anti-quantum key management method for vehicle-mounted domain centralized electronic and electrical architecture

The invention discloses an anti-quantum key management method for a vehicle-mounted domain centralized electronic and electrical architecture. Firstly, the invention provides a self-adaptive security policy generation method based on an analytic hierarchy process. Key factors influencing vehicle-mounted service safety are sorted through a system, a three-layer AHP hierarchical structure model with the purpose of selecting an optimal encryption mechanism is constructed, and therefore vehicle-mounted service safety modeling is achieved. According to the method, the most suitable security policy can be automatically matched according to the characteristics of different services, the self-adaptive security policy generation of the service granularity is realized, and the optimization of the system resource use efficiency is realized while the communication security is ensured. Secondly, the invention provides a fine-grained anti-quantum key management scheme based on the Chinese remainder theorem, and the fine-grained anti-quantum key management scheme is specially designed for adapting to a one-to-many communication scene widely existing in a vehicle-mounted network. The method supports efficient distribution and dynamic updating of group keys of service granularity, and has good quantum attack resistance.
Owner:XIDIAN UNIV +2

TCAM-based message header data processing method and related equipment

PendingCN121357088ATransmissionFifo queueArbiter
The invention provides a TCAM-based message header data processing method and related equipment, and the method comprises the steps: caching and inputting message header data through an FIFO queue, and scheduling the message header data to a message header processing assembly line composed of a TCAM memory, an RAM memory and a parallel processor through an arbiter; a round processing mechanism is combined and adopted, a lookup key value of the current round is matched with an index value in a TCAM in each round of processing, an action table in an RAM is read according to the index value, and a message header analysis instruction of the current round, a group key instruction of the next round and a jump state value of the next round are obtained; executing the instruction through the parallel processor to obtain and update message metadata; when each round is finished, whether the round is finished or not is judged based on the jump state value of the next round; and after the round is finished, outputting the obtained final message metadata by the order-preserving cache queue. According to the invention, the message header data is analyzed by using the TCAM-based data processing technology, so that the flexibility of message header analysis is improved.
Owner:SHENZHEN AOWEI LINGXIN TECH CO LTD +1

Group key person identification method, electronic equipment and readable storage medium

The invention discloses a group key person identification method, electronic equipment and a readable storage medium, and belongs to the technical field of mobile communication. According to the method, the target sub-graph is sent to the terminal equipment corresponding to the target entity, so that the terminal equipment carries out fusion based on the received target sub-graph, and a global heterogeneous network graph corresponding to the target entity after multiple knowledge graphs are linked is obtained; training a local business model according to the global heterogeneous network atlas to obtain local training gradient data, and sending the local training gradient data to a service party; the service party fuses the local training gradient data provided by each service party to obtain global gradient data corresponding to the graph federal learning model, and feeds back the global gradient data to each service party; and respectively updating model parameters of a local service model by each service party according to the fused global gradient data. According to the invention, the group key person identification precision and efficiency can be improved.
Owner:SHANGHAI ZHONGYI COMM TECH ENG +2

Anti-quantum cryptography application method and device based on FIDO2.0 standard and related product

The invention provides an anti-quantum cryptography application method and device based on an FIDO 2.0 standard and a related product, and relates to the technical field of information security. According to the method, on the basis of an FIDO2.0 standard specification, two groups of keys, namely a traditional key and an anti-quantum key, are generated by using cryptographic algorithm key derivation through the same random number seed; the two groups of keys are tightly coupled to serve as a composite key for FIDO authentication to be used for a subsequent authentication signature process, so that the anti-quantum security is enhanced; when the composite signature is used, the anti-quantum signature covers the traditional password signature, so that a strong dependency chain of two password algorithms is formed, and the security authentication strength is enhanced; when the signature is verified, the composite public key is used for verifying the traditional signature and the anti-quantum signature, authentication can be passed only when the traditional signature and the anti-quantum signature pass, double security protection of the traditional password technology and the anti-quantum password technology is achieved, and the attack risk of the traditional password in quantum computing is effectively resisted.
Owner:CHINA FINANCIAL CERTIFICATION AUTHORITY

An SFTP task automation processing method and device and a computer readable storage medium

This invention relates to the field of automated file transfer processing technology, and discloses an automated SFTP task processing method, apparatus, and computer-readable storage medium. The method includes: acquiring directory change data and objectifying the directory change data to generate candidate file objects and determine file objects to be preprocessed; preprocessing the file objects to be preprocessed based on file feature data and preprocessing rule data corresponding to the file objects to be preprocessed, to generate preprocessing result objects; generating structured transfer tasks based on the preprocessing result objects, and determining group keys based on the target SFTP server IP and target directory, grouping structured transfer tasks with the same group key into the same group of tasks; establishing a group-level execution context based on the group tasks, and executing the structured transfer tasks within the group in the group-level execution context to obtain task execution results; and updating the task status and / or generating result records of the structured transfer tasks based on the task execution results.
Owner:HAOHAN DATA

Method for enabling and disabling group of AIOT devices and related apparatus

A method performed by a network device for enabling and disabling a group of Ambient Internet of Things (AIoT) devices in a communication network includes provisioning the group of AIoT devices with a group identifier (ID), a group key, and a first stop code, transmitting, to the group of AIoT devices, a second stop code and a third stop code that are associated with the group ID and secured using the group key, and determining whether to disable the RF transmission capability of the group of AIoT devices based on the second stop code and the third stop code.
Owner:INNOPEAK TECHNOLOGY INC

A multi-agent communication key management method and system adaptive to dynamic topology

This invention discloses a multi-agent communication key management method and system adapted to dynamic topologies, relating to the field of multi-agent communication security technology. It addresses the problems of low scalability and high failure risk in the existing centralized key generation and distribution processes of agent keys. The invention includes: the role of the GC can be elected and rotated among multiple agents, avoiding physical single points of failure; and it establishes a multi-agent group key system based on a logical key tree. When an agent joins or leaves, only logarithmic-level key updates are required, reducing the communication overhead of key distribution from O(N) to O(logN), significantly improving the system's efficiency and scalability when handling large-scale, highly dynamic groups.
Owner:BEIJING XINLIAN SHUAN TECHNOLOGY CO LTD +1

Batch authentication and dynamic group key agreement method for internet of vehicles

PendingCN122294110AEngineeringBinary tree
This application provides a batch authentication and dynamic group key negotiation method for vehicle-to-everything (V2X) networks. The method includes: in the third-party authentication phase, a roadside unit (Roadside Unit) aggregates multiple vehicle authentication requests for batch verification by a trusted center, and encodes the authentication response and group key calculation parameters into a single composite value using the Chinese Remainder Theorem for broadcasting. Vehicles extract verification information and their unique parameters through modulo operation to complete bidirectional authentication. In the dynamic group key negotiation phase, the Roadside Unit maps authenticated vehicles and itself as binary tree leaf nodes, recursively generating a public group key based on the node's public key and unique parameters. When member changes, only the affected path node information is locally updated. This application integrates authentication response and key negotiation information, reducing downlink channel bandwidth usage and decreasing the group key update complexity from linear to logarithmic levels. It ensures forward and backward security while meeting the real-time communication requirements of high-concurrency access and highly dynamic topology scenarios in V2X networks.
Owner:XIDIAN UNIV

Managing key rotation for endpoint devices using re-keying rules

Methods and systems for validating key rotation requests for endpoint devices are disclosed. The key rotation requests may be signed by one or more signing systems according to a set of re-keying rules for the endpoint device. The set of the re-keying rules may indicate that key rotation requests may be valid if signed using at least two different keys. The set of the re-keying rules may also indicate that each of the at least the two different keys be from a different grouping of keys of multiple groupings of keys included in a secure key repository. Each grouping of keys may be associated with a different organization. Therefore, key rotation requests may be serviced if signatures associated with the key rotation requests meet the re-keying rules thereby decreasing a likelihood of compromise of the endpoint devices via compromise of a key.
Owner:DELL PROD LP

Block cipher key security analysis method based on neural discriminator

The invention provides a block cipher key security analysis method based on a neural discriminator. The method comprises the following steps: generating a plaintext pair according to a given input differential feature; the method comprises the following steps of: respectively carrying out specified round encryption operation on a plaintext pair by utilizing a grouped key to obtain a primary ciphertext pair, respectively carrying out full round encryption on the plaintext pair by utilizing a random grouped key to obtain a complete ciphertext pair, and calculating an intermediate state difference of the primary ciphertext pair; marking the complete ciphertext pair according to an intermediate difference screening mechanism to construct a training sample; training a deep learning neural network model by using the training sample; and inputting a to-be-analyzed ciphertext pair into the trained deep learning neural network model, and outputting a classification result whether a preset difference feature condition is met or not. The method shows excellent adaptive capacity to unknown encryption rounds and key variants, and the password security analysis effect is improved.
Owner:BEIJING ELECTRONICS SCI & TECH INST

Key management method, device, equipment, medium and product

The embodiment of the invention provides a key management method and device, equipment, a medium and a product, and the method comprises the steps: responding to a first triggering event of a Kth private key in L groups of key pairs, and determining L node sets in a block chain network corresponding to the L groups of key pairs; respectively acquiring a first fusion polynomial share from the T nodes in the (K-2) th node set, and respectively acquiring a second fusion polynomial share from the T nodes in the (K-1) th node set; determining the polynomial share of the (K-1) th private key in the L groups of key pairs according to the obtained T first fusion polynomial shares and T second fusion polynomial shares; the polynomial share of the (K-1) th private key is used for generating the (K-1) th private key. According to the embodiment of the invention, the security of the private key can be improved.
Owner:TENCENT TECHNOLOGY (SHENZHEN) CO LTD

Group key sharing

The present disclosure provides methods systems and apparatuses for use in the secure agreement of group keys in which the group key(s) are shared between multiple end-point devices, said multiple-endpoint devices being used to create the group key(s) that is / are distributed in such a manner that no other untrusted part of the system has access to sufficient information to be able to derive or determine the group key(s) and / or portions of said group key(s). This is achieved by pairs of endpoint devices agreeing pairwise keys between themselves, wherein an intermediary device that distributes encryption keys to the endpoint devices over quantum communication channels does not have sufficient information to be able to derive the identity of the pairwise keys.
Owner:ARQIT LTD

Systems and methods for encrypted gossip communication

Methods of securely distributing a message to a group of nodes within a network, wherein the network comprises a plurality of nodes and the group of nodes comprises a subset of the plurality of nodes. The methods comprise: agreeing a common group key between all of the nodes in the group of nodes; encrypting, by a first node amongst the group of nodes, a message with the group key such that only nodes that are members of the group of nodes are able to decrypt and read the message; and distributing the encrypted message through the network using a gossip-based protocol.
Owner:ARQIT LTD

Key generation method and device

The invention relates to a key generation method and device, a computer readable storage medium, a computer program product and a computer program. The method comprises: a first device sending a plurality of signals to each of a plurality of second devices, radio frequency coefficients of the plurality of signals being calculated based on channel characteristics between each second device and the first device; and the first device generates a first group key based on the related information of the plurality of signals, and the first group key is used for communication between the first device and the plurality of second devices.
Owner:GUANGDONG OPPO MOBILE TELECOMMUNICATIONS CORP LTD

Quantum trusted relay multicast routing method and quantum trusted relay multicast routing system

The invention discloses a quantum trusted relay multicast routing method and system. The quantum trusted relay multicast routing method is used for a cryptographic service management center, and comprises the following steps: in response to a group key distribution request initiated by a source node, obtaining state information of a quantum key distribution network; constructing a multicast routing distribution path according to the state information; and sending a routing instruction to the source node and the trusted relay node based on the multicast routing distribution path. Therefore, multiplexing of a network sharing link is realized by constructing a multicast routing distribution path, and compared with repeated transmission of the same secret key in a point-to-point distribution mode, original multiple point-to-point transmission is integrated into one multicast transmission, so that the total time of secret key distribution is shortened to a certain extent, the occupation of network bandwidth is reduced, and the transmission efficiency is improved. Therefore, the distribution efficiency of the quantum key and the utilization rate of the network bandwidth are improved to a certain extent.
Owner:中电信量子信息科技集团有限公司

Group key negotiation method

The invention relates to a group key negotiation method, relates to the technical field of cryptology, and solves the problem that an existing BD group key negotiation protocol cannot resist attacks of active opponents. The group key negotiation method comprises the steps that a trusted center outputs system parameters according to input safety parameters, and the system parameters are system parameters of a communication system composed of a plurality of user terminals; each user terminal generates a public and private key pair of the user terminal according to the system parameters; each user terminal generates respective authentication information according to the respective public and private key pair, the public key of the adjacent user terminal and the system parameter, and sends the authentication information to all other user terminals; and each user terminal verifies the authentication information of other user terminals according to the system parameters, and determines a session key shared among the user terminals according to a verification result.
Owner:XINGTANG TELECOMM TECH CO LTD +2

Key generation method, device and equipment of communication group and computer storage medium

The embodiment of the invention provides a communication group key generation method and device, equipment and a computer storage medium. According to the communication group key generation method provided by the embodiment of the invention, when the first user node sends the second training sequence, the second user node sends the interference signal to the relay node so as to actively pollute the observation environment of the relay node, and when the relay node carries out linear estimation on the received first mixed signal, the interference signal is not influenced. The obtained second channel estimation value is a result polluted by noise and interference signals, and the eavesdropping risk of the relay node is effectively reduced. A first mixed signal is amplified and forwarded at a relay node, estimation is carried out at a first user node and the relay node respectively to obtain a third channel estimation value and a second channel estimation value which are highly related, and then key negotiation only needs to be carried out once based on the third channel estimation value and the second channel estimation value subsequently. Therefore, the consistent group key can be generated, and the channel estimation time slot and the key negotiation frequency are obviously reduced.
Owner:CHINA MOBILE M2M +1

System and method for generating private group encryption key based on unique group identifier

A system and method are provided for generating group encryption keys for global and private groups to encrypt wireless messages between an access point and a station. The private group key is based on a unique private group identifier. The global group key and the private group key are sent from the access point to the one or more stations via an M3 message, wherein the M3 message is part of a 4-way handshake or a 2-way group key handshake. The global group key is used for encrypted broadcast or multicast messages for the entire group, while the private group key is used for encrypted broadcast or multicast messages for the private group that is a subset of the entire group.
Owner:CISCO TECHNOLOGY INC

Group quantum key distribution method and system

The invention discloses a group quantum key distribution method and system, and relates to the field of quantum communication. The method comprises the steps that a management and control center responds to a multi-party group key distribution request and determines distribution nodes and receiving nodes; a group key distribution relay path is determined based on a topological relation among a distribution node, a relay node and a receiving node, a relay link resource state and total consumption of a relay key, and the path is a forked directed tree which is constructed along a quantum key relay transmission direction after repeated relay links are removed and a unique effective link is reserved. The distribution node and all the receiving nodes can be unidirectionally communicated; the distribution node generates a group key and initiates a distribution process based on the path, the relay node executes key distribution relay based on the path, and the receiving node obtains the group key through the path. According to the scheme, the node load is reduced by reducing the number of relaying times, resource waste is avoided, the coding rate is improved, the system performance is optimized, and a large-scale multi-party group distribution scene is adapted.
Owner:CHANGCHUN JIDA ZHENGYUAN INFORMATION TECH CO LTD

Media broadcast service processing method and device based on 5G satellite network, and medium

The invention discloses a media broadcast service processing method and device based on a 5G satellite network and a medium, and can be applied to the technical field of 5G communication. According to the method, after the unregistered terminal obtains the public broadcast channel signal through periodically scanning the frequency band, the broadcast group joining request initiated by the unregistered terminal is obtained, and after the validity verification of the temporary group identifier of the unregistered terminal is passed, the group key is issued to the unregistered terminal passing the validity verification through the satellite network, so that the service life of the unregistered terminal is prolonged. Generating real-time bandwidth allocation information according to the real-time channel feedback information and the real-time network condition information, generating an encrypted broadcast media stream according to the current service demand, and issuing the encrypted broadcast media stream to an unregistered terminal corresponding to the region identifier according to the real-time bandwidth allocation information. And the unregistered terminal decrypts the encrypted broadcast media stream according to the group key to obtain the target broadcast information, so that the unregistered terminal can effectively and timely obtain the broadcast content, and the user experience is effectively improved.
Owner:IPLOOK NETWORKS CO LTD

Vehicle-mounted CAN bus safety communication method based on attribute grouping

The invention discloses a vehicle-mounted CAN (Controller Area Network) bus safety communication method based on attribute grouping. The method comprises the following steps: firstly, selecting a master key, a public key, a hash function and related parameters; the electronic control unit ECU registers with a gateway electronic control unit GECU; in the key generation stage, the GECU groups the ECUs and distributes key generation parameters to the ECUs in the groups, and the ECUs in the groups calculate group keys according to the key generation parameters; the ECUs in the group communicate with each other by using the group key; and in the key updating and ECU re-joining stage, the ECU can update the key without interaction. Through constructing a group key generation mechanism based on an access structure tree, group communication based on ECU function attributes is realized. And a key self-authentication mechanism is introduced, so that the interaction turns between the ECUs are reduced, and the communication load is reduced. The method is suitable for a vehicle-mounted network dynamic scene, and effectively resists attacks such as counterfeiting and replaying.
Owner:ANHUI UNIV

Block encryption method combining four-valued logic operation and AES column mixing

The invention provides a block encryption method based on four-valued logic operation combined with AES column mixing. AES column mixing is combined with four-valued logic operation. An encryption / decryption device is constructed based on the four-valued logic arithmetic unit and is used for generating a ciphertext / plaintext according to the plaintext / ciphertext and the key; and a key deriver is constructed based on the four-valued logic arithmetic unit and is used for generating a next group of keys according to the ciphertext and the keys mixed by the AES column. And introducing double encryption, namely, performing reverse encryption on the ciphertext subjected to the first forward encryption again to obtain final encrypted data. Decryption is opposite to encryption, the first round of reverse decryption is carried out firstly, then forward decryption is carried out, and final decryption data is obtained. According to the block encryption method based on the four-valued logic operation, the security problems of plaintext information exposure, poor key sensitivity, poor differential attack resistance and the like existing in encryption scenes such as audio, images, videos and the like with relatively high plaintext data correlation are solved.
Owner:DONGHUA UNIV

Blockchain-driven distributed privacy data storage and access control method and system

The present invention provides a blockchain-driven distributed privacy data storage and access control method and system, which relates to the field of access control technology. The method comprises the following steps: sensitivity scoring and sharding of privacy data, organizing data fingerprints into a Bloom filter to construct an integrity proof tree, encrypting the data shards and submitting them to a distributed storage network, and generating a record of the data fingerprint in the blockchain; when accessing data, dynamically generating hierarchical access keys based on visitor behavior characteristics, performing threshold segmentation and distributing them to an authorized node group; the authorized node group generates an authorization certificate using a threshold signature scheme based on a lattice cipher and writes the certificate into the blockchain; the visitor uses the authorization certificate to obtain the data fingerprint and encrypted data shards, and after verifying the integrity, decrypts the data shards corresponding to the permission level through secure multi-party computation to reconstruct the key components.
Owner:NOVNET COMPUTING SYST TECH CO LTD

A credit investigation report generation method and system, a computer device, and a storage medium

This application discloses a credit report generation method, system, computer equipment, and storage medium. The method includes: generating a report pre-assembly request via a first server and uploading it to a credit reporting chain; generating a set of keys and a data preparation request based on the report pre-assembly request via a second server, and obtaining a first key, a second key, and the data preparation request from them, and sending them to a third server; enabling the third server to obtain target data, encrypting the target data sequentially using the first key and the second key, and uploading it to the credit reporting chain; enabling the first server to decrypt the encrypted data based on the second key, and generating a pre-assembled report based on the decrypted data and a preset report template; enabling the first server to decrypt the decrypted data based on the first key, and generating a credit report based on the decrypted data and the pre-assembled report. This application can balance the timeliness of credit inquiries with data security.
Owner:HUNAN CREDIT INFORMATION CO LTD

Key generation method, related equipment, medium and product

The invention discloses a key generation method, related equipment, a medium and a product. The method comprises the following steps: sending a first message to network equipment; the first message comprises a target grouping identifier; the target grouping identifier indicates a group identifier of a target grouping key; the target group key is one group in multiple groups of group keys included in the charging key; the first message requests to generate a combined key.
Owner:CHINA MOBILE COMM LTD RES INST +1

Howling prevention method and device and computing equipment

The howling prevention method comprises the following steps: sending sub-ultrasonic information; receiving verification information sent by the target user equipment; when it is determined that the verification information is the same as the local verification information, sending a group key to the target user equipment; the target user equipment is user equipment receiving the sub-ultrasonic information, the group key is used for enabling the target user equipment to establish a temporary security group with the main control equipment, the temporary security group is used for transmitting a control instruction, and the control instruction is used for controlling the target user equipment to start or close a conference audio function. In the application, the main control device can send the sub-ultrasonic information to the outside, the main control device and the user device receiving the sub-ultrasonic information are paired securely in pairs to establish the temporary security group in the conference room, and then other participant terminals can be notified to turn off the microphone and the loudspeaker through the temporary security group, so that generation of howling is prevented.
Owner:HUAWEI TECH CO LTD