发明名称 Methods and systems for secure channel initialization transaction security based on a low entropy shared secret
摘要 Methods and systems for secure channel initialization transaction security between a client network element and a server network element are disclosed. In accordance with one embodiment of the present disclosure, the method includes: choosing a random client ephemeral private key at a client network element; utilizing the client ephemeral private key and the shared secret to create a client ephemeral public key at the client network element; forwarding the client ephemeral public key in a channel initialization request to a server network element; selecting a random server ephemeral private key at the server network element; using the server ephemeral private key and the shared secret to create a server ephemeral public key at the server network element; creating a high entropy shared secret based on the client ephemeral public key and the server ephemeral private key; creating a message authentication code 'MAC' and encrypting a payload with the high-entropy shared secret; sending the encrypted payload and the server ephemeral public key to the client network element; utilizing the server ephemeral public key and the client ephemeral private key to derive the high-entropy shared secret; and decrypting the payload and verifying the MAC with the high-entropy shared secret.
申请公布号 EP2073430(A1) 申请公布日期 2009.06.24
申请号 EP20070124019 申请日期 2007.12.21
申请人 RESEARCH IN MOTION LIMITED 发明人 SHERKIN, ALEXANDER
分类号 H04L9/08;H04L9/32 主分类号 H04L9/08
代理机构 代理人
主权项
地址