Group Key Distribution for Secure Multicast IP Traffic
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
In telecommunication systems, particularly those using IP protocols, secure multidestination message transmission is inefficient due to the need for multiple encrypted messages, leading to increased network traffic and security vulnerabilities in wireless transmission methods like satellite broadcasting.
Innovation Solution
A central server distributes encryption and decryption keys to all terminals in a group, allowing each terminal to send a single encrypted message that can be decrypted by the others, thereby minimizing the number of encrypted messages required and enhancing security against unauthorized access.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If secure multidestination messages are sent by encrypting and sending separate messages to each addressee, then security is maintained, but network traffic increases and can saturate the network
Solution Approach 1:
The patent merges multiple separate encrypted messages into a single encrypted message that can be decrypted by multiple addressees. Instead of sending n-1 separate encrypted messages to n addressees, the system sends one encrypted message that all group members can decrypt using their private keys and the group's public key infrastructure.
Solution Approach 2:
The encrypted message serves multiple functions simultaneously: it encrypts the message for all group members universally, allows any group member to decrypt and read it using their individual private key, and eliminates the need for separate encryption sessions for each addressee.
2Reliability
If separate secure sessions are established between terminals two by two, then secure communication is achieved, but the number of sessions increases traffic and system complexity
Solution Approach 1:
The patent combines multiple individual secure sessions into a single group-based secure communication channel. Instead of maintaining separate secure sessions between each pair of terminals, the system establishes one group session where all members can communicate securely using shared group cryptographic credentials.
Solution Approach 2:
Instead of each terminal pair establishing their own secure session (pairwise approach), the patent inverts the approach by having all terminals join a common group session where security is managed collectively through group key infrastructure rather than individually through multiple bilateral sessions.
3Adaptability or versatility
If wireless transmission is used for broadcasting information to multiple terminals, then network coverage and accessibility are improved, but security against interception and unauthorized access deteriorates
Solution Approach 1:
The patent changes the cryptographic parameters used in wireless transmission by implementing robust encryption algorithms and key management specifically designed for broadcast environments. The system uses strong encryption keys and secure key distribution mechanisms that maintain security even when transmitted over vulnerable wireless channels accessible to unauthorized terminals.
Data Source
AI summary
The invention relates to a telecommunication system including a plurality of terminals divided into groups such that within each group each terminal can send multidestination messages to the other members of the group. Each terminal of a group is associated with encryption and decryption means so that each terminal can send multidestination messages that can be decrypted only by the other terminals of the group. The system includes a central server for distributing to each encryption and decryption means keys for secure transmission of communications within each group.


