Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

112 results about "Key authentication" patented technology

Key authentication is used to solve the problem of authenticating the keys of the person (say "person B") to whom some other person ("person A") is talking to or trying to talk to. In other words, it is the process of assuring that the key of "person A" held by "person B" does in fact belong to "person A" and vice versa.

API service management method and device and medium

The invention discloses an API service management method and device and a medium, and relates to the technical field of software development. The method comprises the following steps: receiving and verifying API service registration information through a standardized interface to generate service metadata based on the API service registration information, and storing the service metadata to a service directory; wherein the service metadata comprises a service name, an interface address and a version number; when the API calling request arrives at the gateway, performing dual verification on the API calling request; wherein the dual verification comprises calling party identity key authentication and verification of types, ranges and necessary items of request parameters; under the condition that the verification is passed, asymmetrically encrypting and negotiating a session key, and performing symmetric encryption transmission on the request and response data by using the session key; and after the transmission is completed, collecting and calling log data to generate a multi-dimensional monitoring chart, and dynamically adjusting the service priority based on the interface error rate of the service provider.
Owner:天元大数据信用管理有限公司

Internet of Things equipment security authentication and data encryption transmission system and method

The invention relates to the technical field of Internet of Things equipment, particularly provides an Internet of Things equipment security authentication and data encryption transmission system and method, and solves the problems of limited equipment resources and difficult key management. The system comprises an equipment identity authentication component, a key management component and a lightweight encryption component. The method comprises the following steps: authenticating the legal identity of the Internet of Things equipment by adopting a lightweight symmetric key; the authority is dynamically adjusted according to factors such as equipment position, time and network state; the Internet of Things equipment generates and distributes a secret key after passing the access authority authentication; key exchange is carried out between the Internet of Things devices by adopting a key exchange protocol, and local key management is realized at an edge node in combination with edge calculation; and transmitting the data containing the key and the key exchange protocol to the target equipment, encrypting the transmitted data by adopting lightweight encryption and a Hash algorithm during transmission, and preventing a replay attack by using a timestamp and a random number. According to the invention, comprehensive safety protection of the Internet of Things equipment is realized.
Owner:SHENZHEN AISHANSI TECHNOLOGY CO LTD

Two-factor authentication key negotiation method and system based on biological characteristics

The invention relates to the field of cryptology, and discloses a two-factor authentication key negotiation method based on biological characteristics, a user holds double authentication factors, namely a private key authentication factor and a biological characteristic authentication factor, a server holds secret information, and the private key authentication factor and the biological characteristic authentication factor perform mutual authentication and form a shared key, so that the service can be obtained. A user can pass authentication only by holding two authentication factors at the same time, and when an enemy steals one authentication factor or secret information of a server, the enemy cannot disguise that the user passes the authentication of the server; even if an enemy steals the two authentication factors of the user, the enemy cannot be disguised as a server to pass the authentication of the user, so that the authentication threshold is greatly improved, an unauthorized user / server is prevented from abusing the authority of the authorized user, the security is higher, the entropy rate of a biological source is not required, and the authentication efficiency is higher.
Owner:SHANGHAI JIAOTONG UNIV

An authentication code generating class of instructions

There is provided an apparatus, a method, and a computer program. The apparatus is provided with instruction decoding circuitry to decode instructions and processing circuitry to perform a processing operation in response to a decoded instruction. In response to an authentication code generating instruction, the processing circuitry is configured to generate an authentication code associated with an 10 authentication target value. For at least one type of the authentication code generating instruction, the processing circuitry is configured to generate an authentication code, when operating in a first code generation mode, by applying a code generating function to: a key; the authentication target value; a first modifier dependent on a stack pointer, and / or a second modifier dependent on a program counter address; and a further 15 modifier dependent on a further value obtained from an architecturally visible register different from the stack pointer register and the program counter register.
Owner:ARM LTD

Multi-tenant API key authentication and resource isolation system in containerized environment

The invention discloses a multi-tenant API key authentication and resource isolation system in a containerized environment, and relates to the field of containerized multi-tenant authentication. Comprising an authentication authorization layer, a resource management and control layer and a security isolation layer. The authentication authorization layer comprises a multi-tenant authentication engine, an API key verification sub-module, a tenant identity recognition sub-module, an authority cascade verification sub-module and a dynamic authority calculation sub-module. And the resource management and control layer comprises a resource quota manager, a dynamic quota allocation sub-module, a real-time use monitoring sub-module, a threshold alarm control sub-module and an elastic capacity expansion and contraction sub-module. The security isolation layer comprises a multi-dimensional isolation engine, a container network isolation sub-module, a storage space isolation sub-module, a process permission isolation sub-module and a system call filtering sub-module; deep fusion of API authentication and container resource control is realized, a dynamic resource quota management mechanism based on tenant identities is established, and fine-grained API authority control and resource use limitation are provided.
Owner:CHINA IND INTERNET RES INST

Anti-forwarding interference method for uplink of unmanned aerial vehicle

The invention relates to an unmanned aerial vehicle uplink anti-forwarding interference method, and belongs to the technical field of unmanned aerial vehicle measurement and control communication anti-interference. Comprising the following steps: constructing a signal source module, performing BPSK modulation on a generated random binary sequence, and adding a serial number at a data frame header to distinguish a data instruction sending sequence; the method comprises the following steps: constructing a channel 1 to transmit an information source signal, constructing a channel 2 to introduce forwarding interference, constructing a receiver to filter and demodulate the received signal, and then executing an instruction contained in the signal; an anti-forwarding interference module is constructed and comprises a serial number judgment module, a secret key authentication module, a secret key replacement module and an instruction serial number judgment module, an instruction frame header serial number is compared at an execution end to determine whether the instruction frame header serial number is a forwarding signal, the problem that an unmanned aerial vehicle airborne end repeatedly executes ground instructions is solved, and the instruction serial number is recycled within a certain digit; and the key is replaced once after each cycle is ended. According to the invention, the bit error rate of information transmission can be reduced, and the anti-interference capability of an unmanned aerial vehicle measurement and control link is improved.
Owner:NAVAL AVIATION UNIV

Method and device for security management of privately deployed large language model

The invention relates to the technical field of artificial intelligence, and particularly provides a method and device for security management of a privatized deployment large language model, and the method comprises the following steps: S1, user registration and API Key distribution; s2, authentication of the API Key is carried out; s3, limiting the access frequency; s4, performing priority scheduling; s5, interface standardization; and S6, recording an audit log. Compared with the prior art, access control, resource scheduling, audit log and interface standardization functions can be integrated, and the security and management efficiency of the system are improved.
Owner:INSPUR SOFTWARE TECH CO LTD

Key authentication method and apparatus, electronic device, and storage medium

This application provides a key authentication method and apparatus, an electronic device, and a storage medium. The key authentication method provided in this application includes: determining user information based on a key authentication request sent by a user end, where the key authentication request includes the user information and an initial key; determining whether the initial key matches a first key, where the first key is used to determine whether the user end has a registration need for a pre-shared key; and when the initial key matches the first key, registering the first pre-shared key for the user end and binding the first pre-shared key to the user information.
Owner:RUIJIE NETWORKS CO LTD

Vehicle control system and vehicle control method

To provide a vehicle control system and a control method for the vehicle control system that suppress the occurrence of problems that may occur when updating a program.SOLUTION: A vehicle control system 1 includes a key authentication ECU 50 that acquires a key ID through wireless communication with a portable device 5 and controls locking and unlocking of a vehicle 3 based on the acquired key ID, an image authentication ECU 60 that acquires a facial feature quantity based on an image captured by a camera 65 and controls locking and unlocking of the vehicle 3 based on the acquired facial feature quantity, and a central ECU 10 that includes a determination unit 137 that determines whether to permit an update of a second program executed by the image authentication ECU 60 based on the communication status between the key authentication ECU 5 and the portable device 5.SELECTED DRAWING: Figure 1
Owner:HONDA MOTOR CO LTD

Vehicle control system and vehicle control method

The vehicle control system includes a key authentication ECU, an image authentication ECU, and a central ECU that performs a first operation when update processing that updates a program to be executed by the image authentication ECU fails and if communication between the key authentication ECU and the mobile device is communication-enabled and performs a second operation when the update processing fails and if communication between the key authentication ECU and the mobile device is communication-disabled, the second operation being different from the first operation.
Owner:HONDA MOTOR CO LTD

Authentication method, apparatus and device based on pre-shared key

The embodiment of the application provides a kind of based on pre-shared key authentication method, device and equipment, in the above-mentioned pre-shared key authentication method, device sends key acquisition request to first server, then receives the ciphertext of pre-shared key sent by first server, then the ciphertext of pre-shared key is decrypted, the plaintext of pre-shared key is obtained, and then according to the plaintext of pre-shared key, identity authentication or encryption and decryption service is carried out with second server, so that it can be realized by one first server with security authentication and authentication mechanism to store the ciphertext of pre-shared key encrypted by the key of equipment side, so that the security of pre-shared key is greatly improved, and in the above-mentioned method, key and ciphertext are separated, and first server does not have decryption capability (because first server does not have decryption key), so that the risk of pre-shared key leakage in first server end can be avoided.
Owner:HUAWEI TECH CO LTD

DIGITAL KEY SYSTEM FOR A VEHICLE AND OPERATING PROCEDURES FOR IT

The present disclosure provides a digital key system for a vehicle (100), comprising a digital key management server (200), and a vehicle (100). The vehicle (100) can be configured to send a digital key authentication request to the digital key management server (200) based on the fact that a user terminal (300) is within a threshold distance of the vehicle (100). The digital key management server (200) can be configured to send the digital key authentication request to the user terminal (300).The digital key authentication request can cause the user terminal (300) to authenticate the user based on the digital key authentication request and the user's biometric identification information, and to send an authentication response to the digital key management server (200) indicating the authentication result. The digital key management server (200) can also be configured to send the authentication response to the vehicle (100). The vehicle (100) can further be configured to perform an action based on the authentication response.
Owner:HYUNDAI MOTOR CO LTD +1

Digital-key sharing method, digital-key authentication method, and computing device

Provided are a digital key sharing method, a digital key authentication method, and a computing device. The digital key sharing method is executed by a first device and includes: sending to a second device a digital key creation request that includes valid space information for a digital key, so as to generate the digital key at the second device; receiving a digital key signature request from the second device, wherein the digital key signature request includes data to be signed of the digital key, and said data includes the valid space information; and on the basis that the signing of the digital key signature request is completed, sending a digital key import request to the second device, so as to indicate the second device to save the generated digital key. Therefore, the security of a digital key can be improved in a spatial dimension.
Owner:BEIJING BOE TECH DEV CO LTD +1

Method and apparatus for two-step multi-security-domain cloud key attestation

An apparatus and method configured for two-step cross-security-domain cloud-based privacy-aware key attestation where a root security domain, factory-provisioned with a root-of-trust device key, generates a random key signing key upon device initialization. An application, executing in a rich execution environment, generates an application key pair within a secondary security domain. The secondary security domain obtains a local key attestation from the root security domain, where the local key attestation is signed with the key signing key and returns the local key attestation to the application. When key attestation from a cloud attestation service is desired, the root security domain validates the local key attestation, generates a corresponding device key attestation signed with the device key, and sends the device key attestation to a cloud attestation service. The cloud attestation service verifies the device key attestation and returns a corresponding cloud key attestation signed with a certified cloud attestation key.
Owner:HUAWEI TECH CO LTD

Data Communication System for Distribution Network Protection Based on SM1 National Cryptography Algorithm

The present invention relates to the technical field of power data protection, and discloses a data communication system for distribution network protection based on the SM1 national cryptographic algorithm. An identity authentication protocol request is sent to a security machine through an identity library switch, and a reply protocol for responding to the identity authentication protocol request from the security machine is received. It is verified whether the reply protocol is correct. If the verification of the reply protocol is correct, the communication blocking states between the external distribution network protection device and the encryption switch are respectively released, so as to obtain the service data in the external distribution network protection device. An identity key authentication is also performed with the encryption switch through the SM1 national cryptographic algorithm. If the authentication is successful, the service data is forwarded to the encryption switch, and the MAC of the protection terminal is bound through the encryption switch, excluding the possibility of illegal devices accessing the authenticated encryption switch, thereby improving the identity authentication security performance of the communication system, reducing the difficulty of deployment, installation and maintenance, and at the same time, improving the security of data communication transmission.
Owner:GUANGDONG POWER GRID CO LTD +1

Vehicle control system and vehicle control method

A vehicle control system includes a key authentication ECU, an image authentication ECU, a door lock mechanism that locks a door of a vehicle, a touch panel that receives an operation; and a central ECU that causes a touch panel mounted in the vehicle to display a second setting screen that receives a setting of execution allowance for a program update for the image authentication ECU and a setting of necessity of locking of the vehicle after alighting in a case where a communication state between the key authentication ECU and a mobile device is communication-disabled and an update program for updating a program being executed by the image authentication ECU is acquired and that controls the image authentication ECU and the lock mechanism in accordance with a setting received on the second setting screen.
Owner:HONDA MOTOR CO LTD

A method and system for updating root keys when switching communication networks on a device terminal.

ActiveCN122027155BAccess networkCiphertext
This invention discloses a method and system for updating the root key when a device terminal switches communication networks. The method includes: a root key generation and storage device pre-stores an initial root key ciphertext in the quantum-safe device terminal; when the quantum-safe device terminal first connects to a communication network (i.e., connects to a first communication network), it performs root key authentication with the first network communication device, and encrypted communication can be established after successful authentication; when the quantum-safe device terminal changes its access network (i.e., connects to a second communication network), it needs to perform identity authentication and update the initial root key to obtain a root key usable in the second communication network. Based on the pre-stored root key ciphertext, this invention updates the original root key when the terminal deregisters from one communication network and connects to another independent communication network, enabling the terminal to complete network switching and subsequent encrypted communication without returning to the factory, significantly improving the flexibility and availability of the device.
Owner:MATRICTIME DIGITAL TECH CO LTD

Digital Key System for Vehicles and Operating Method Thereof

The present disclosure provides a vehicle digital key system including a digital key management server and a vehicle. The vehicle may be configured to transmit, to the digital key management server and based on a user terminal being located within a threshold distance from the vehicle, a digital key authentication request. The digital key management server may be configured to transmit, to the user terminal, the digital key authentication request. The digital key authentication request may cause the user terminal to perform, based on the digital key authentication request and based on biometric identification information of a user, authentication of the user; and transmit, to the digital key management server, an authentication response. The digital key management server may be further configured to transmit, to the vehicle, the authentication response. The vehicle may be further configured to perform an operation of the vehicle.
Owner:HYUNDAI MOTOR CO LTD +1

Key authentication method for quantum encryption call

The invention discloses a secret key authentication method for quantum encryption conversation. The method comprises the following steps: receiving an authentication request sent by a collection control station and first identity information of a first terminal; in response to the authentication request, determining a first symmetric key and a first key identifier according to the first identity information; and the first symmetric key and the first key identifier are sent to the centralized control station, and the centralized control station carries out authentication processing according to the first symmetric key and the first key identifier. Thus, the key transmission direction and mode are changed, so that the authentication of the terminal can be completed without directly transmitting the authentication key between the terminal and the quantum key management server, the risk that the authentication key is illegally intercepted by others in the transmission process is effectively reduced, and the user experience is improved. The potential safety hazard in the quantum encryption call authentication process is eliminated to a certain extent, so that the security of quantum encryption call authentication is ensured to a certain extent.
Owner:中电信量子信息科技集团有限公司

Image processing apparatus, authentication system, and computer program product

The invention provides an image processing apparatus, an authentication system, and a computer program product. An image processing apparatus includes: a user authentication unit configured to perform user authentication by verifying a digital signature received from an information processing apparatus through HTTP communication using a public key stored in advance in association with an identifier of a user; and a control unit configured to, when the user authentication unit is accessed from the information processing apparatus using the IP address in a state in which the user authentication unit is valid, generate a cooperative authentication screen or a pass key authentication screen for prompting access to be authenticated by using a pass key corresponding to the public key.
Owner:CANON KK

Digital key security authentication method

The application provides a digital key security authentication method, comprising: a second device sends authentication request information to a first device, and the first device obtains a first data packet according to the authentication request information and sends the first data packet to the second device. The second device decrypts first encrypted data, obtains first authentication information, and compares the first authentication information with stored first authentication information; the second device generates a second data packet and sends the second data packet to the first device. The first device decrypts second encrypted data, obtains second authentication information, compares the second authentication information with stored second authentication information, and sends a third data packet to the second device. The second device decrypts third encrypted data, obtains third authentication information, compares the third authentication information with stored third authentication information, and if the results are consistent, authentication is successful, a success notification request information is generated and sent to the first device; the first device accepts the success notification request information, generates a success notification reply information, and sends the success notification reply information to the second device. Thus, the security of digital key authentication is improved.
Owner:SAIC MOTOR

Key management method, key encryption method, data encryption method, and related devices

Embodiments of the present application provide a key management method, a key encryption method, a data encryption method and related devices, wherein the key management method is applied to a password module built in a processor, and includes: receiving a key management request for requesting management of a target key, the key management request including key management requirement information; the target key being used at least for encrypting an application key, the application key being a key for implementing data secure transmission of a virtual private network; generating target key ciphertext corresponding to the target key by using a root key; saving the target key ciphertext and target key authentication information into a special storage; the storage content of the special storage being managed by the password module, and when the storage content is used, the storage content is loaded into a secure memory; and returning index information for indexing the saving position of the target key ciphertext and the target key authentication information. The technical solution provided by the embodiments of the present application can improve the security of the execution result of the encryption and decryption program.
Owner:HYGON INFORMATION TECH CO LTD

Vehicle control system and control method thereof

The invention provides a vehicle control system and a control method thereof. Problems which may occur when a program is updated are suppressed. A vehicle control system (1) is provided with: a key authentication ECU (50) that acquires a key ID by wireless communication with a portable device (5) and controls locking and unlocking of a vehicle (3) on the basis of the acquired key ID; an image authentication ECU (60) that acquires a feature amount of a face portion on the basis of an image captured by the camera (65), and controls locking and unlocking of the vehicle (3) on the basis of the acquired feature amount of the face portion; and a central ECU (10) provided with a determination unit (137) that determines, on the basis of the communication state between the key authentication ECU (50) and the portable device (5), whether or not to permit the update of the second program executed by the image authentication ECU (60).
Owner:HONDA MOTOR CO LTD

Internet of vehicles authentication method based on block chain and physical unclonable function

PendingCN121841729AAvoid the risk of identity impersonationImprove resistance to attackKey distribution for secure communicationUser identity/authority verificationPasswordEngineering
The invention discloses an Internet of Vehicles authentication method based on a block chain and a physical unclonable function, and relates to the field of data security, and the method comprises the steps: a vehicle and a communication object complete registration at a roadside base station, and a vehicle end integrates a PUF and a fuzzy extractor to generate a master key bound with equipment; during authentication, the vehicle uses the password, the biological characteristics and the PUF response to perform multi-factor authentication, and submits a Merkle proof of a target communication object to the roadside base station; and the roadside base station verifies the proof and confirms the access authority through the block chain smart contract, and assists the vehicle and the communication object to complete mutual authentication and negotiate the session key. According to the method, the block chain is utilized to ensure that data cannot be tampered, equipment cloning is resisted through the PUF, efficient authorization control is realized in combination with the Merkle tree, pseudo name dynamic updating and identity revocation are supported, and finally, the calculation, communication and storage overhead is remarkably reduced while the security is ensured.
Owner:BEIJING INST OF TECH

Intelligent electronic switches, integrated circuit chips, chip products and automobiles for automobiles

The present application provides an intelligent electronic switch, an integrated circuit chip, a chip product, and an automobile for use in a vehicle. The intelligent electronic switch is provided with an authentication unit and a key unit, and a load is provided with the key unit. Thus, when the intelligent electronic switch is in a load authentication phase, the intelligent electronic switch can use the authentication unit and the key unit in the load to perform key authentication. After the key authentication is successful, the authentication unit outputs a verification-valid signal. Thus, only when an input terminal receives an enable signal, is the power switch controlled to turn on and conduct to supply power to the load. If the key authentication fails, the authentication unit outputs a verification-invalid signal, causing the intelligent electronic switch to output a cutoff control signal and / or a reminder signal. This prevents the use of unauthenticated loads and / or notifies the user, thereby reducing the problem of driving safety being affected or safety hazards posed by the inability of the intelligent electronic switch to authenticate the load.
Owner:SHENZHEN WINSEMI MICROELECTRONICS

Resource viewing methods, devices, and computer-readable storage media

This application relates to the field of key management technology, and in particular to a resource viewing method, device, and computer-readable storage medium. The method includes: an authentication server obtaining a root key, receiving an encrypted password, generating a static master key based on the root key and the encrypted password, and sending the static master key to a user terminal, where the user terminal receives and stores the static master key; when the authentication server determines that the user terminal requests to view a content protection server, it generates a dynamic master key, generates a content protection master key according to preset rules using the static and dynamic master keys, and sends it to the content protection server; the content protection server encrypts digital resources based on the content protection master key to obtain encrypted resources and sends them to the user terminal; the authentication server sends the dynamic master key to the user terminal, the user terminal generates a content protection master key, and decrypts the encrypted resources using the content protection master key to obtain the digital resources. This application improves the security of key management, thereby improving the security of digital resources.
Owner:CHINA MOBILE (JIANGXI) VIRTUAL REALITY TECH CO LTD +3

Method and system for activating preset key

The invention discloses a preset key activation method and system. The method comprises the steps that a preset key distribution mechanism distributes a preset key file 1 and an authentication key file 0 to first equipment and second equipment; the device authentication mechanism performs device identity authentication on the first device and the second device based on the authentication key file file0; according to the message that the identity authentication of the device is passed, the first device and the second device respectively execute an activation operation on the preset key file (file1); the first device authenticates the key data with the second device based on the data information of the preset key file file1; and the first device and the second device determine an available preset key file (file2) according to the message that the key authentication is passed. According to the method disclosed by the invention, before the terminal equipment enters a communication network for use, the key storage module of the preset key unit is in a black box state and an inaccessible state and is not interacted or connected with any unit, so that the possibility that bad users steal the preset key is avoided from the source.
Owner:MATRICTIME DIGITAL TECH CO LTD

Adaptive authentication method based on Beidou third-generation navigation satellite message

The invention discloses a self-adaptive authentication method based on a Beidou third-generation navigation satellite message, which comprises the following steps that: a control center encrypts a navigation message and uploads the encrypted navigation message to a Beidou satellite, the Beidou satellite broadcasts the encrypted navigation message, a receiver updates a public key based on a digital certificate, and the receiver sends the updated public key to the Beidou satellite. And on the basis, the received encrypted navigation message is authenticated, and whether the navigation message has integrity and authenticity is judged. According to the scheme of the invention, a switchable authentication scheme is provided based on the transmission characteristics of the D1 navigation message and the D2 navigation message aiming at the navigation message characteristics of the Beidou third-generation navigation system, so that the security requirements of receivers with different performances on resisting navigation spoofing attacks are met; meanwhile, signature authentication, TESLA key authentication and MAC authentication are adopted, so that the non-repudiation, coherence and integrity of ciphertext information are ensured, a receiver is ensured to quickly and efficiently complete navigation message authentication work, and normal navigation message resolving work is not influenced.
Owner:THE 724TH RESEARCH INSTITUTE OF CHINA STATE SHIPBUILDING CORP LTD

Vehicle and encryption authentication method thereof

The invention discloses a vehicle and an encryption authentication method thereof. The method comprises the following steps: under the condition of determining that a digital key is valid, sending an encryption authentication instruction, so that a near field communication module of the digital key receives the encryption authentication instruction and generates an authentication response message according to the encryption authentication instruction; receiving an authentication response message, and under the condition that the authentication response message comprises the first random plaintext data and the first reference encrypted data, performing encryption processing on the first random plaintext data based on a preset encryption algorithm to determine first target encrypted data; and under the condition that the first target encrypted data is consistent with the first reference encrypted data, it is determined that digital key authentication succeeds, and under the condition that digital key authentication succeeds, the vehicle is controlled to be started. Thus, the starting operation of the digital key function without legal authentication is forbidden through secondary verification, the vehicle anti-theft function is achieved, user participation is not needed in the whole anti-theft authentication process, and the authentication process is invisible to a user.
Owner:CHERY NEW ENERGY AUTOMOBILE TECH CO LTD