发明名称 Key agreement system, shared-key generation apparatus, and shared-key recovery apparatus
摘要 Provided is a content distribution system that prevents different keys to be derived between an encryption apparatus and a decryption apparatus. A random-number generating unit 112d, in an encryption apparatus 110d, generates a random number s, and a first function unit 113d generates a functional value G(s) of the random number s, and generates a verification value a and a shared key K from the functional value G(s). An encryption unit 114d generates a first cipher text c1 of the verification value a using a public-key polynomial h, and a second function unit 115d generates a functional value H(a,c1) of the verification value a and the first cipher text c1, and a random-number mask unit 116d generates a second cipher text c2=s xor H(a,c1). A decryption unit 123d, in a decryption apparatus 120d, decrypts the first cipher text c1 using a secret-key polynomial f, to generate a decryption verification value a'. A third function unit 124d generates a functional value H(a',c1) of the decryption verification value a' and the first cipher text c1, and a random-number mask removal unit 125d generates a decryption random number s'=c2 xor H(a',c1). A fourth function unit 126d generates a hash functional value G(s') of the decryption random number s', and generates a verification value a'' and a shared key K' from the functional value G(s') A comparison unit 127d outputs the shared key K' if the decryption verification value a' is equal to the verification value a''.
申请公布号 US7471792(B2) 申请公布日期 2008.12.30
申请号 US20030725102 申请日期 2003.12.02
申请人 PANASONIC CORPORATION 发明人 YAMAMICHI, LEGAL REPRESENTATIVE MASAMI;YAMAMICHI, LEGAL REPRESENTATIVE SATOMI;YAMAMICHI, LEGAL REPRESENTATIVE KEIKO;FUTA YUICHI;OHMORI MOTOJI;TATEBAYASHI MAKOTO
分类号 H04K1/00;H04L9/00;H04L9/08;H04L9/28;H04L9/30 主分类号 H04K1/00
代理机构 代理人
主权项
地址