发明名称 METHODS AND SYSTEMS FOR SECURE CHANNEL INITIALIZATION TRANSACTION SECURITY BASED ON A LOW ENTROPY SHAPED SECRET
摘要 Methods and systems for secure channel initialization transaction security between a client network element and a server network element are disclosed. In accordance with one embodiment of the present disclosure, the method include s: choosing a random client ephemeral private key at a client network element; utilizing the client ephemeral private key and the shared secret to create a client ephemeral public key at the client network element; forwarding the client ephemeral public key in a channel initialization request to a server network element; selecting a random server ephemeral private key at the server netwo rk element; using the server ephemeral private key and the shared secret to create a server ephemeral public key at the server network element; creating a high entropy shared secret based on the client ephemeral public key and the serve r ephemeral private key; creating a message authentication code 'MAC' and encrypting a payload with the high-entropy shared secret; sending the encrypted payload and the server ephemeral public key to the client network element; utilizing the server ephemeral public key and the client ephemeral private k ey to derive the high-entropy shared secret; and decrypting the payload and verifying the MAC with the high-entropy shared secret.
申请公布号 CA2646861(A1) 申请公布日期 2009.06.21
申请号 CA20082646861 申请日期 2008.12.17
申请人 RESEARCH IN MOTION LIMITED 发明人 SHERKIN, ALEXANDER
分类号 H04L9/30;H04L9/32;H04L12/16;H04L12/22 主分类号 H04L9/30
代理机构 代理人
主权项
地址