Commission Information Generator for Secure Multi-Hop Key Exchange

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

In secure communication systems, especially in power-saving multi-hop networks, conventional methods for end-to-end key exchange and authentication are inefficient, leading to potential congestion and increased power consumption, particularly when numerous sensors communicate with a server over the Internet.

Innovation Solution

A system comprising a commission information generator, shared key calculator, signature synthesizer, commissioned key sharing computer, and commissioned signature generation computer, which utilize Diffie-Hellman key sharing and digital signature protocols to perform key exchange and authentication tasks without exposing confidential information to proxy equipment, ensuring reliable maintenance of security.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If end-to-end key exchange operations are implemented between sensors and servers, then communication security is improved, but power consumption and processing time increase

Engineering Contradiction:
Improvecommunication securityVSAvoidpower consumption
Core Design Contradiction:
ReliabilityVSUse of energy by moving object

Solution Approach 1:

The patent segments the key exchange process by dividing the secret key into multiple partial information pieces and distributing them to different proxy computers. Each proxy computer processes only a portion of the cryptographic operations, reducing the computational burden on individual devices while maintaining end-to-end security. This segmentation allows sensors to perform lighter local operations while distributing the heavier processing across multiple proxy nodes.

Inventive Principle:
Principle #1Segmentation

2Productivity

If key exchange operations are assigned to host network as proxy, then terminal load is reduced, but confidential information must be given to proxy equipment

Engineering Contradiction:
Improveterminal load reductionVSAvoidmaintenance of confidential information
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The patent applies local quality by ensuring that each proxy computer receives and processes only the specific partial information necessary for its designated cryptographic operation. The first proxy computer handles key sharing computations with one set of partial information, while the second proxy computer handles signature generation with different partial information. This localized processing ensures that no single proxy computer possesses the complete secret key, thereby maintaining confidential information security while still providing the computational support needed to reduce terminal load.

Inventive Principle:
Principle #3Local quality

3Adaptability or versatility

If multiple proxy devices are employed for key exchange, then terminal capability requirements are reduced, but reliability of confidential information maintenance deteriorates

Engineering Contradiction:
Improveterminal capabilityVSAvoidmaintenance of confidential information
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent segments the secret key into multiple partial information pieces that are distributed to different proxy devices. Each proxy device processes only its assigned portion, and the results are combined by the terminal to produce the final cryptographic output. This segmentation ensures that even though multiple proxy devices are involved, no single device or combination of devices (except the terminal that holds the combining logic) can reconstruct the complete secret key, thereby maintaining confidentiality reliability while enabling terminals with limited capabilities to participate in secure communications.

Inventive Principle:
Principle #1Segmentation

Data Source

PatentUS9166790B2Commission information generator for making processes on communication performed by another computer
Publication Date: 2015.10.20 OKI ELECTRIC INDUSTRY CO LTD
  • US9166790B2 patent drawing
  • US9166790B2 patent drawing
  • US9166790B2 patent drawing

AI summary

In a communicator in a communication system, a commission information generator for generating a commission parameter to make a process on a communication between communicators performed by another computer includes a first memory for storing a secret key and an encrypter for generating N number of the commission parameters, where N is a natural number, from a first to an N-th commission parameter. The encrypter regards a j-th shared key, where j is a positive integer equal to or less than N, out of the N number of shared keys as key information, encrypts a bit sequence representation of j-th partial information, associated with the j-th shared key, out of N pieces of partial information, and thereby generates a j-th commissioned parameter.