Identity-Based Encryption Key Management via Extended Identity Headers

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Identity-based encryption systems face limitations in key management, particularly in using additional information to generate and update public keys, leading to inefficiencies in key management costs and insufficient utilization of various types of additional information for secure communication.

Innovation Solution

A message communication device and method that modifies message headers by adding additional information, such as a combination of identity and user-defined comments, to generate and transmit public keys, allowing for efficient key management and secure data transmission using identity-based encryption techniques.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If additional information is used together with identity to generate public key, then key freshness is maintained and key management costs are reduced, but the public key no longer matches the identity of the communication subject and additional information transfer mechanisms are required

Engineering Contradiction:
Improvekey freshnessVSAvoidadditional information transfer mechanism
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent combines the identity and additional information into a single unified structure called 'extended identity' that is used to generate the public key. This merging approach allows the system to maintain key freshness while avoiding the need for separate additional information transfer mechanisms, as the extended identity is directly embedded in the message header.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The extended identity structure serves multiple functions: it acts as both the identity identifier and the carrier for additional information (such as time values, random numbers, or other metadata). This multi-functionality eliminates the need for separate additional information transfer protocols while maintaining key freshness and security.

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Productivity

If public key is updated frequently using time values, then key management costs are reduced, but the update cycle becomes short and key generation complexity increases

Engineering Contradiction:
Improvekey management efficiencyVSAvoidkey generation process
Core Design Contradiction:
ProductivityVSDevice complexity

Solution Approach 1:

The patent implements dynamic key generation by incorporating time values or random numbers as additional information that can be adjusted based on operational needs. This allows the system to update public keys dynamically without following a fixed short cycle, thereby improving key management efficiency while controlling the complexity of the key generation process through flexible parameter selection.

Inventive Principle:
Principle #15Dynamics

3Adaptability or versatility

If additional information is added to message header, then various types of additional information can be used for secure communication, but message header structure becomes more complex

Engineering Contradiction:
Improveadditional information utilizationVSAvoidmessage header structure
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent segments the message header into distinct fields: the original identity field, the additional information field (containing time values, random numbers, or other metadata), and the encrypted data field. This segmentation allows the system to accommodate various types of additional information while maintaining a clear and manageable header structure that does not become unnecessarily complex.

Inventive Principle:
Principle #1Segmentation

Data Source

PatentUS10404451B2Apparatus and method for message communication
Publication Date: 2019.09.03 SAMSUNG SDS CO LTD
  • US10404451B2 patent drawing
  • US10404451B2 patent drawing

AI summary

There are provided a message communication device and method. A message communication device according to an exemplary embodiment includes a header modifying unit configured to modify a message header by adding additional information used together with an identity when a public key corresponding to the identity of a recipient is generated to be the message header, and a message transmitting unit configured to transmit a message including data encrypted based on the public key and the modified message header.