发明名称 |
METHODS AND SYSTEMS FOR SECURE CHANNEL INITIALIZATION TRANSACTION SECURITY BASED ON A LOW ENTROPY SHAPED SECRET |
摘要 |
Methods and systems for secure channel initialization transaction security between a client network element and a server network element are disclosed. In accordance with one embodiment of the present disclosure, the method include s: choosing a random client ephemeral private key at a client network element; utilizing the client ephemeral private key and the shared secret to create a client ephemeral public key at the client network element; forwarding the client ephemeral public key in a channel initialization request to a server network element; selecting a random server ephemeral private key at the server netwo rk element; using the server ephemeral private key and the shared secret to create a server ephemeral public key at the server network element; creating a high entropy shared secret based on the client ephemeral public key and the serve r ephemeral private key; creating a message authentication code 'MAC' and encrypting a payload with the high-entropy shared secret; sending the encrypted payload and the server ephemeral public key to the client network element; utilizing the server ephemeral public key and the client ephemeral private k ey to derive the high-entropy shared secret; and decrypting the payload and verifying the MAC with the high-entropy shared secret.
|
申请公布号 |
CA2646861(A1) |
申请公布日期 |
2009.06.21 |
申请号 |
CA20082646861 |
申请日期 |
2008.12.17 |
申请人 |
RESEARCH IN MOTION LIMITED |
发明人 |
SHERKIN, ALEXANDER |
分类号 |
H04L9/30;H04L9/32;H04L12/16;H04L12/22 |
主分类号 |
H04L9/30 |
代理机构 |
|
代理人 |
|
主权项 |
|
地址 |
|