Nova Patents
CN103209075A

Password exchange method

Abstract

The invention discloses a password exchange method. The method comprises that two communication sides generate random strings of certain lengths respectively, use an asymmetric cryptographic algorithm to encrypt and sign the random strings and then send the random strings to each other, the two communication sides decipher, verify and sign the random string of the other side respectively and use exclusive or values of the random strings of the two sides as session keys for communication. The password exchange method is simple to implement and applicable to communication in various environments.

Term

No projected expiry on record.

  1. Priority and filed
  2. Published
  3. Today

1 claim: 1 independent, 0 dependent

  1. 1
    Password 1.1 exchange method, device comprises A and B device, device, comprising A private da key, a B's device of Pb key, device and B the key for asymmetric encryption is a a private key db and device of A key pa, da and pa db; and pb is the key for asymmetric encryption is; theMethod comprises the following steps:51: Device for generating A length of rlen of train, r1 52: A device for generating message El I I Vl to apparatus, BAnd El is an ethylene device of key pb encryption obtaining r1, Vl of r1 to signature;a given 53: The B device deciphers El obtaining R1 and comprising a private db;and signs Vl according to the R1, apparatus 54: The current generation length of rlen of train r2, obtaining session password D= © R1, r2 55: The current generating message E2 I IV2 to output device;AAnd E2 is a device of A key pa encryption r2, obtaining V2 to signature r2, obtaining 56: A device deciphers E2 obtaining R2 and comprising a private da, and signs V2 according to the R2, apparatus 57: A device for session calculation password C= © r1, R2 and generating ECI IVC by a apparatus, BAnd EC is an ethylene device of key pb encryption C obtaining, VC to signature C;a given 58: The device deciphers B the EC obtaining c1 with comprising a private db;and signs VC according to the fourth, apparatus 59: The current comparison c1 D;and two different password of successfully, otherwise password exchange failure. 1.一种密码交换方法,包括装置A和装置B,其中,装置A包括私钥da,和装置B的公钥Pb,装置B包括私钥db和装置A的公钥pa,da和pa构成非对称加密的密钥对,db和pb构成非对称加密的密钥对;所述的方法包括如下步骤: 51:装置A生成长度为rlen的随机串rl ; 52:装置A生成消息El I I Vl发送给装置B ;其中El是由装置B的公钥pb加密rl得到,Vl由对rl签名得到; 53:装置B用其自身的私钥db解密El得到Rl,并根据Rl验证签名Vl ; 54:装置B生成长度为rlen的随机串r2,得到会话密码D= Rl © r2 ; 55:装置B生成消息E2 I IV2发送给装置A ;其中E2是由装置A的公钥pa加密r2得到,V2由对r2签名得到; 56:装置A用其自身的私钥da解密E2得到R2,并根据R2验证签名V2 ; 57:装置A计算会话密码C= rl © R2,并生成ECI IVC发送给装置B ;其中EC是由装置B的公钥pb加密C得到,VC由对C签名得到; 58:装置B用其自身的私钥db解密EC得到Cl,并根据Cl验证签名VC ; 59:装置B比较Cl和D,如果两者相同则密码交换成功,否则密码交换失败。