发明名称 Method and apparatus for verifiably providing key recovery information in a cryptographic system
摘要 A method and apparatus for verifiably providing key recovery information to one or more trustees in a cryptographic communication system having a sender and a receiver Each communicating party has its own Diffie-Hellman key pair comprising a secret value and corresponding public value, as does each trustee The sender non-interactively generates from its own secret value and the public value held by the receiver a first shared Diffie-Hellman key pair comprising a first shared secret value, shared with the receiver but not with any trustee, and a corresponding public value. For each trustee, the sender then non-interactively generates an additional shared secret value, shared with the receiver and the trustee, from the first shared secret value and the public value corresponding to the secret value held by the trustee. The sender uses the additional shared secret value to encrypt recovery information for each trustee, which is transmitted to the receiver along with the encrypted message. Each trustee can decrypt its recovery information by regenerating its additional shared secret value from its own secret value and the public value of the first shared Diffie-Hellman key pair. The receiver can verify the correctness of the recovery information for each trustee by decrypting the information using the additional shared secret value for that trustee, without having to recreate the recovery information or perform computationally expensive public key operations.
申请公布号 US5907618(A) 申请公布日期 1999.05.25
申请号 US19970775348 申请日期 1997.01.03
申请人 INTERNATIONAL BUSINESS MACHINES CORPORATION 发明人 GENNARO, ROSARIO;KARGER, PAUL ASHLEY;MATYAS, JR., STEPHEN MICHAEL;PEYRAVIAN, MOHAMMAD;SAFFORD, DAVID ROBERT;ZUNIC, NEVENKO
分类号 H04L9/08;(IPC1-7):H04L9/00 主分类号 H04L9/08
代理机构 代理人
主权项
地址