发明名称 SECURE MANAGEMENT OF KEYS USING EXTENDED CONTROL VECTORS
摘要 MA9-88-023 SECURE MANAGEMENT OF KEYS USING EXTENDED CONTROL VECTORS A method and apparatus are disclosed for use in a data processing system which executes a program which outputs cryptographic service requests for operations with cryptographic keys which are associated with control vectors defining the functions which each key is allowed by its originator to perform. The improved method and apparatus enable the use of control vectors having an arbitrary length. It includes a control vector register having an arbitrary length, for storing a control vector of arbitrary length associated with an N-bit cryptographic key. It further includes a control vector checking means having an input coupled to the control vector register, for checking that the control vector authorizes the cryptographic function which is requested by the cryptographic service request. It further includes a hash function generator having an input coupled to the control vector register and an N-bit output, for mapping the control vector output from the control vector register, into an N-bit hash value. A key register is included for storing the N-bit cryptographic key. It further includes a logic block having a first input coupled to the N-bit output of the hash function generator, and a second input connected to the key register, for forming at the output thereof a product of the N-bit key and the N-bit hash value. Finally, an encryption device is included having a first input for receiving a cleartext data stream and a key input coupled to the output of the logic block, for forming a ciphertext data stream at the output thereof from the cleartext data stream and the product. A decryption device can be substituted for the encryption device to perform decryption operations in a similar manner.
申请公布号 CA1319198(C) 申请公布日期 1993.06.15
申请号 CA19890600674 申请日期 1989.05.25
申请人 INTERNATIONAL BUSINESS MACHINES CORPORATION 发明人 MATYAS, STEPHEN M.;ABRAHAM, DENNIS G.;ARNOLD, WILLIAM C.;JOHNSON, DONALD B.;KARNE, RAMESH K.;LE, AN V.;PRYMAK, ROSTISLAW;WHITE, STEVE R.;WILKINS, JOHN D.
分类号 G09C1/00;H04L9/08 主分类号 G09C1/00
代理机构 代理人
主权项
地址