Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

19 results about "Registration authority" patented technology

Registration authorities exist for many standards organizations, such as ANNA (Association of National Numbering Agencies for ISIN), the Object Management Group, W3C, IEEE and others. In general, registration authorities all perform a similar function, in promoting the use of a particular standard through facilitating its use. This may be by applying the standard, where appropriate, or by verifying that a particular application satisfies the standard's tenants. Maintenance agencies, in contrast, may change an element in a standard based on set rules – such as the creation or change of a currency code when a currency is created or revalued (i.e. TRL to TRY for Turkish lira). The Object Management Group has an additional concept of certified provider, which is deemed an entity permitted to perform some functions on behalf of the registration authority, under specific processes and procedures documented within the standard for such a role.

Trusted identity authentication method and system with privacy protection and traceability

The invention provides a credible identity authentication method and system with privacy protection and traceability, and the method comprises the steps: S1, defining roles in an identity authentication process and a supervision traceability process and the function division of each role, including a user, a registration organization RA, a certificate issuer Issuer, a service provider SP and a supervision committee RegComm; s2, realizing an identity authentication process through a real name authentication verification process, an anonymous identity certificate signing and issuing process and a user identity authentication proving process; wherein in the anonymous identity certificate issuing process, a certificate issuer Issuer issues a verifiable anonymous identity certificate to a user through a formula according to a real name authentication verification result of a registration authority RA; and S3, realizing a supervision and tracing process through user secret distribution and a user information tracing process. According to the invention, an identity authentication process based on zero-knowledge proof and verifiable secret sharing is realized, a supervision and tracing process is introduced, and practical application requirements of privacy protection and traceability can be met at the same time.
Owner:PEKING UNIV SHENZHEN GRADUATE SCHOOL +1

Method and system for handling dynamic cyber security posture of v2x entities

A method at a network element, the method comprising receiving at the network element at at least one message, the at least one message being one or both of the following: an update status information message from an update server; and an anomaly detection status information message from an anomaly detection server; determining a dynamic cybersecurity posture indication for an intelligent transportation system entity based on receiving the at least one message; and providing the dynamic cybersecurity posture indication for the intelligent transportation system entity to a registration authority, wherein the dynamic cybersecurity posture indication can be included in a certificate associated with the intelligent transportation system entity.
Owner:BLACKBERRY LTD

Double-certificate DID management method and system based on blind signature and chameleon hash

The invention discloses a blind signature and chameleon Hash-based dual-certificate DID management method and system, and the method comprises a registration stage, a verification stage and an updating stage: the registration stage: a user terminal sends a registration message, a blind message and an original identity Hash value as identity Hash, a registration mechanism generates a blind signature after verification, issues a registration certificate, and sends the registration certificate to a user terminal; the user terminal locally generates a verifiable certificate after blind verification; in the verification stage, the server calls the smart contract, and verifiable certificate validity is verified based on a chameleon hash function; in the updating stage, the user terminal generates a new verifiable certificate by using the chameleon Hash controllable collision characteristic, and chain identification updating is completed after verification of the intelligent contract. According to the method, authority is split through a double-certificate architecture, blind signature and chameleon hash technologies are fused, autonomous control of user identities, privacy protection and flexible updating are realized, and verification security and efficiency are improved.
Owner:BEIJING UNIV OF TECH

Distributed tracking and verification of objects using a blockchain system

ActiveUS12652182B2Cryptography processingDigital data protectionDomain nameRegistration authority
A system for managing domain registrations configured to connect to a blockchain wallet running on a client device. The blockchain wallet includes associated keys for a blockchain system. The system is further configured to inspect the blockchain wallet for a first non-fungible token (NFT) associated with a first domain name, and check with a domain name service (DNS) registry on whether the first domain name is registered at the DNS registry. The DNS registry is configured to receive registration information associated with one or more domains. In response to the first domain name being registered at the DNS registry, performing one or more of (i) expiring the first NFT in the blockchain wallet, (ii) adding a second NFT to the blockchain wallet, (iii) adding a fungible token to the blockchain wallet, (iv) removing the first NFT from the blockchain wallet, or (v) exchanging the first NFT for the fungible token.
Owner:UKCI HLDG LTD

Communication protocol utilizing blockchain transactions

A computer-implemented method for granting a requester with permission to join a first network. The first network includes a set of bridge nodes and a set of devices controllable by one or more of the set of bridge nodes. Each bridge node is also a corresponding node in the blockchain network. The method is performed by a registration institution and includes generating a first blockchain transaction. The first blockchain transaction includes an input that includes a signature of a first public key linked to the registration authority. The first blockchain transaction also includes a first output, the first output including a first certificate, the first certificate including an identifier assigned to the requester. The method further includes transmitting the first block chain transaction to the block chain network to include it in the block chain.
Owner:NCHAIN LICENSING AG

Network slice or tenant specific automated certificate management configurations

PendingUS20260059310A1Security arrangementSecuring communicationRegistration authorityComputer network
Example embodiments of the present disclosure relate to devices, methods, apparatuses and computer readable media supporting network slice or tenant specific automated certificate management configurations. A network slice certificate orchestrator may be configured to receive from a management system certification authority configuration indicative of a certification authority configured for one or more network slices, and transmit to a registration authority or a certification authority a certificate request with respect to a network function allocated to one of the one or more network slices along with information of the certification authority configured for the one or more network slices.
Owner:NOKIA TECHNOLOGIES OY

Cryptographic methods and systems for managing digital certificates

Digital certificates are generated for devices by a Certificate Authority (CA), which communicates with devices via another entity—registration authority (RA)—so that the CA and RA cannot associate certificates with devices. Each certificate is associated with a public signature key, and with a public encryption key used by CA to encrypt the certificate to hide it from the RA. Both keys are derived by CA from a single key. For example, the signature key can be derived from the public encryption key rather than generated independently. However, high security is obtained even when the CA does not sign the encrypted certificate. Reduced bandwidth and computational costs are obtained as a result. Other embodiments are also provided.
Owner:LG ELECTRONICS INC +1

Pre-verification based anti-dos authentication method and system for iot edge side

ActiveCN122226517BRegistration authorityPre validation
The application discloses an anti-DoS authentication method and system based on pre-verification on the edge side of an Internet of Things, which comprises the following steps: firstly, a registration institution in the Internet of Things receives a registration request sent by a terminal device for registration and calculates a plurality of group verification points; secondly, the registration institution creates and initializes a dynamic time window Bloom filter, maps the group verification points, and simultaneously, the dynamic time window Bloom filter is sent to an edge server, and the edge server receives a to-be-authenticated message sent by the terminal device and analyzes the to-be-authenticated message; then, the edge server judges whether a timestamp of the terminal device message exists in a current valid time window, and if yes, an aggregated hash value is calculated as a query key for matching query; finally, when the query result is nonexistence, the to-be-authenticated message is an illegal request; otherwise, signature data is subjected to a password school authentication, and message authentication of the terminal device is completed. The application can significantly reduce the probability of illegal requests entering a high-overhead verification stage.
Owner:HANGZHOU DIANZI UNIV

Method for realizing key and certificate initialization and electronic equipment

The invention provides a method for realizing key and certificate initialization and electronic equipment. The method comprises the following steps: acquiring a serial number; generating a public key and a private key which are arranged in pairs by using a preset encryption algorithm, and generating a certificate generation request in combination with the public key; the preset encryption algorithm comprises an elliptic curve encryption algorithm, and the public key is stored in the certificate generation request; sending the serial number and the certificate generation request to a registration mechanism; wherein the certificate generation request comprises a driving instruction, and the driving instruction is used for driving the registration mechanism to verify legality, and after legality, the registration mechanism sends the certificate generation request to a certificate issuing mechanism, and the registration mechanism receives a certificate generated by the certificate issuing mechanism; storing the private key, and obtaining a certificate from the registration mechanism; and verifying the certificate by using the private key, and storing the certificate after verification. The method is high in safety and high in speed.
Owner:FUJIAN LANDI COMMERCIAL EQUIPMENT CO LTD

Scalable certificate management systems, methods, and non-transitory computer-readable media

The present invention relates to a scalable certificate management system, method, and non-transitory computer readable medium for securely providing certificates. The system can include one or more application platforms running a registration authority that are communicatively connected to one or more computing engines that perform cryptographic computations requested by the registration authority, one or more application platforms running an enrollment certificate authority that are communicatively connected to one or more computing engines that perform cryptographic computations requested by the enrollment certificate authority, one or more application platforms running a pseudonym certificate authority that are communicatively connected to one or more computing engines that perform cryptographic computations requested by the pseudonym certificate authority, and one or more application platforms running a first and second linking rights authority that are communicatively connected to one or more computing engines that perform cryptographic computations requested by the linking rights authority.
Owner:INTEGRITY SECURITY SERVICES LLC

Secure communication system and method for generative artificial intelligence-enabled Internet of Things

PendingCN122001602ASolve security issuesimprove securityUser identity/authority verificationRegistration authorityPhysical security
The invention belongs to the technical field of artificial intelligence, and discloses a safety communication system and method of a generative artificial intelligence enabled internet of things, and the system comprises a registration authority which is responsible for registering an internet of things user and internet of things equipment; the Internet of Things user registers with the registration authority by using the smart phone, interacts with the edge artificial intelligence after logging in, and controls the remote intelligent device through the edge artificial intelligence; the intelligent device is used for collecting data in the environment and transmitting the data to the edge artificial intelligence and the Internet of Things user after mutual authentication; the edge artificial intelligence is an edge server close to the intelligent equipment, and an artificial intelligence application is deployed in the edge server and is fusion of edge calculation and artificial intelligence. According to the invention, the secure communication between the Internet of Things user and the remote intelligent device is mainly realized, and a weak physical unclonable function is embedded in the remote intelligent device in order to protect the physical security of the remote intelligent device.
Owner:ZHONGNAN UNIVERSITY OF ECONOMICS AND LAW

Network element registration method, apparatus, device, and storage medium

ActiveCN116528351BWireless communicationRegistration authorityEngineering
The application discloses a network element registration method and device, equipment and a storage medium, relates to the technical field of communication, and is used for improving the accuracy of network element registration. The method comprises the following steps: obtaining registration information and a target network element type of a target network element, the registration information comprising at least one of the following: number segment information, location information, and internet protocol (IP) information; determining the registration authority of the target network element according to the registration information and the target network element type of the target network element, the registration authority of the target network element being any one of the following: allowed to be registered and allowed to be discovered, allowed to be registered and not allowed to be discovered, and not allowed to be registered; and in the case that the registration authority of the target network element is allowed to be registered and allowed to be discovered or allowed to be registered and not allowed to be discovered, completing the registration of the target network element. The application is applied to a scenario of managing the registration of network elements.
Owner:CHINA UNITED NETWORK COMM GRP CO LTD

Asynchronous Internet of Vehicles authentication and key agreement method based on block chain

The invention discloses an asynchronous Internet of Vehicles authentication and key negotiation method based on a block chain. The method comprises the following steps: selecting related parameters, a key, a hash function and block chain configuration in a network; the vehicle and the cloud server are registered through a registration mechanism, and a public key and registration information are uploaded on the block chain; the vehicle initiates an authentication request to a road side unit (RSU), and the RSU performs identity authentication by using a block chain network and returns a response; after identity verification is passed, session key negotiation is carried out between a vehicle and an RSU through a block chain network, after key negotiation is completed, message authentication and key sharing are carried out through the block chain network, the security of the key negotiation process is ensured, and the security of the key negotiation process is ensured by using the decentration characteristic of the block chain. According to the invention, the single-point fault problem of a traditional centralized system is effectively avoided, and the safety and reliability of the system are improved.
Owner:ANHUI UNIV

Information processing apparatus and method for controlling information processing apparatus

PendingJP2026000262AKey distribution for secure communicationRegistration authorityInformation processing
To provide an information processing apparatus and a control method of the information processing apparatus capable of improving usability when requesting issuance of an electronic certificate suitable for the purpose of the electronic certificate.SOLUTION: The multifunction peripheral 101 has a CPU201 in which a protocol to be used in an issuance request for a digital certificate is set for each purpose of the digital certificate according to an input by a user, an instruction for the issuance request for the digital certificate is received in association with the purpose of the digital certificate according to an input by the user, and the issuance request for the digital certificate is transmitted to the certificate / registration authority 102 using the protocol set for the purpose of the digital certificate associated with the instruction.SELECTED DRAWING: Figure 1
Owner:CANON KK

Providing a vehicle usage profile for a driver of a motor vehicle

ActiveDE102014200138B4Ticket-issuing apparatusDigital data authenticationRegistration authorityDriver/operator
Procedure for providing an initial vehicle usage profile of a first driver of a first motor vehicle in the first motor vehicle, comprising the following sequence of steps: a) Verifying the identity of the first driver and then registering the first driver with a first authorized registration authority, b) Providing an initial proof of identity for the first driver by the first authorized registration authority after successful verification of the first driver's identity by the first authorized registration authority, c) Providing an initial vehicle usage profile for the first driver via a vehicle usage profile storage device after successful verification of the first driver's identity verification, d) Verification of the first proof of identity by a first identity verification device of the first motor vehicle, e) Transfer of the first vehicle usage profile from the vehicle usage profile storage device to the first motor vehicle, f) Provision of the first vehicle usage profile in the first motor vehicle after successful verification of the first identity verification device of the first motor vehicle, and (g) Individualizing at least one characteristic of the first motor vehicle in accordance with the first vehicle usage profile of the first driver; the procedure further comprising: - includes registering the first motor vehicle with a second registration authority to verify the first identity of the first motor vehicle; and wherein the transfer of the first vehicle usage profile from the vehicle usage profile depository to the first motor vehicle is carried out after verification of the identity of the first motor vehicle.
Owner:BAYERISCHE MOTOREN WERKE AG

Registration authority

PCT designated stageWO2026084998A1Securing communicationRegistration authorityInternet privacy
A method of updating a certificate at an end-point of a network is disclosed. The method comprises: verifying, by a registration authority, an authenticity of a head-end system in the network; verifying, by the registration authority, an authenticity of at least one end-point communicatively coupled to the head-end system; receiving, by the registration authority and after verification of the authenticity of the head-end system and the at least one end-point, at least one certificate signing request from the at least one end-point, via the head-end system; brokering, by the registration authority, a new certificate from a certificate authority for each at least one end-point based on the respective at least one certificate signing request; and providing, by the registration authority, each new certificate to the head-end system for transmission to the respective at least one end-point.
Owner:LANDIS GYR TECH INC

Computer-implemented method, computer program product and communication system for processing data

A computer-implemented method for processing data in a communication system having a device, a registration authority and a certificate authority is proposed. The method comprises the following steps: a) requesting a digital certificate for the device by means of a certificate signature request, b) providing the device-specific device attribute as a function of the request, c) performing a check on the certificate signature request of the device, d) encoding the specific device attribute into the requested digital certificate by the registration authority, and e) providing the device-specific device attribute for the device as a function of the certificate signature request. Obtaining a digital device certificate with the specific device attribute; e) if the check succeeds, performing, by the certificate authority, a signature of the digital device certificate with a private key of the certificate authority to issue a signed digital device certificate, f) providing the issued signed digital device certificate to the device, and g) checking the digital device certificate in accordance with the issued signed digital device certificate, and e) if the check succeeds, performing, by the certificate authority, a signature of the digital device certificate with the private key of the certificate authority to issue the signed digital device certificate. An access scheme for accessing a resource by the device is executed.
Owner:SIEMENS AG

V2X certificate link value configuration method and system based on double-LA system

The invention discloses a V2X certificate link value configuration method and system based on a double-LA system, and relates to the technical field of Internet of Vehicles wireless security. The method comprises the following steps: a certificate application stage: a pseudonym certificate registration mechanism sends a request for acquiring a link value to a double-LA system; the first LA mechanism and the second LA mechanism generate link values and encrypt the link values respectively; the pseudonym certificate authority decrypts and combines the encrypted pre-link value, and signs and issues a certificate; in the certificate revocation stage, the abnormal behavior management mechanism takes out a link value in the pseudonym certificate with the abnormal behavior and identifies a corresponding pseudonym certificate mechanism; the pseudonym certificate institution finds a corresponding link seed from the link value through the mapping relation; and the double-LA system returns the link seeds to the abnormal behavior management mechanism together, and the abnormal behavior management mechanism carries out certificate revocation. According to the invention, the security defensiveness and privacy protection in the certificate replacement process are further improved through the double LA mechanisms on the basis of the V2X security mechanism.
Owner:SHANDONG UNIV OF POLITICAL SCI & LAW

Block chain wisdom medical Internet of Things authentication system and method for resisting cloud leakage attack

The invention belongs to the field of smart medical Internet of Things, and discloses a cloud and mist leakage attack resistant block chain smart medical Internet of Things authentication system and method, and the system comprises four entity modules: a registration authority is responsible for registering all deployed medical devices, fog nodes and a cloud server in a network; the medical equipment layer is composed of intelligent medical equipment in the intelligent medical internet of things, and a plurality of medical equipment can be installed or deployed in a specific application program; the fog layer is responsible for communicating with medical equipment in a coverage range of the fog layer, constructing the collected data into blocks containing transactions, and forwarding the blocks to an associated cloud server; and a group of cloud servers in the cloud layer are mainly responsible for receiving and verifying the blocks forwarded by the associated fog nodes, and adding the blocks into the block chain. According to the invention, based on the block chain technology, a multi-cloud-multi-fog-multi-device distributed architecture is designed, and the problem of single-point failure is avoided.
Owner:ZHONGNAN UNIVERSITY OF ECONOMICS AND LAW