发明名称 Methods and systems for secure channel initialization transaction security based on a low entropy shared secret
摘要 Methods and systems for secure channel initialization transaction security between a client network element and a server network element are disclosed. In accordance with one embodiment of the present disclosure, the method includes: choosing a random client ephemeral private key at a client network element; utilizing the client ephemeral private key and the shared secret to create a client ephemeral public key at the client network element; forwarding the client ephemeral public key in a channel initialization request to a server network element; selecting a random server ephemeral private key at the server network element; using the server ephemeral private key and the shared secret to create a server ephemeral public key at the server network element; creating a high entropy shared secret based on the client ephemeral public key and the server ephemeral private key; creating a message authentication code 'MAC' and encrypting a payload with the high-entropy shared secret; sending the encrypted payload and the server ephemeral public key to the client network element; utilizing the server ephemeral public key and the client ephemeral private key to derive the high-entropy shared secret; and decrypting the payload and verifying the MAC with the high-entropy shared secret.
申请公布号 US8452017(B2) 申请公布日期 2013.05.28
申请号 US20070962189 申请日期 2007.12.21
申请人 SHERKIN ALEXANDER;RESEARCH IN MOTION LIMITED 发明人 SHERKIN ALEXANDER
分类号 H04L29/06 主分类号 H04L29/06
代理机构 代理人
主权项
地址