CA2304342C

Method and system for transient key digital time stamps

Abstract

Irrefutable public key digital signature time-stamps (1040) are created and used based upon, for example, the concept of transienttime-interval-related secret cryptographic keys (2010), which are used to digitally sign (2030) submitted data during specific time intervals,and then permanently destroyed (2040). The public-key correlate for each time interval is saved for future authentication of the content oftime-stamped data and time of creation of time-stamped data. The validity of the public keys is ensured through the certification of eachtime interval's public key using the previous time interval's secret key, immediately before that secret key is destroyed.

CA2304342C, drawing sheet 1
Sheet 1 of 8

Term

Term ended

Expired 22 September 2018, 8 years ago.

  1. Priority
  2. Filed
  3. Granted
  4. Expired
  5. Today

18 claims: 4 independent, 14 dependent

  1. 1
    CA 02304342 2007-12-19 THE EMBODIMENTS OF THE INVENTION FOR WHICH AN EXCLUSIVE PROPERTY OR PRIVILEGE IS CLAIMED ARE DEFINED AS FOLLOWS:1. A method for certifying data, said method comprising the steps of : generating a key pair at a first time interval, the key pair including a private key and a public key;receiving a certification request;determining whether the certification request is received within the first time interval;when the certification request is received within the first time interval, automatically responding to the certification request by digitally signing data associated with the certification request using the private key;and deleting the private key.
  2. 8
    A method for certifying data, said method comprising the steps of :generating a first key pair at a first time interval, the first key pair including a first public key and a first private key;CA 02304342 2007-12-19 generating a second key pair at a second time interval, the second key pair including a second public key and a second private key;signing the second public key using the first private key;deleting the first private key;determining whether a certification request is received within the second time interval;when a certification request is received within the second time interval, processing the certification request during the second time interval using the second private key;and deleting the second private key.
  3. 15
    A system for certifying data, said system comprising:a general purpose computer;and an I/O device coupled to the general purpose computer, wherein the general purpose computer includes a memory containing a program executable by the general purpose computer, the executable program instructing the general purpose computer to: generate a key pair at a first time interval, the key pair including a private key and a public key, receive a certification request, determine whether the certification request is received within the first time interval, when the certification request is received within the first time interval, automatically respond to the certification request by digitally signing data associated with the certification request using the private key, and delete the private key.
  4. 17
    A system for certifying data, said system comprising:a general purpose computer;and CA 02304342 2007-12-19 an I/O device coupled to the general purpose computer, wherein the general purpose computer includes a memory containing a program executable by the general purpose computer, the executable program instructing the general purpose computer to: generate a first key pair at a first time interval, the first key pair including a first public key and a first private key, generate a second key pair at a second time interval, the second key pair including a second public key and a second private key, sign the second public key using the first private key, delete the first private key, determine whether a certification request is received within the second time interval, when a certification request is received within the second time interval, process the certification request during the second time interval using the second private key, and delete the second private key.