CN1953368A

Distribution type dynamic secret key management method

Abstract

The invention claims a distributed dynamic key management method, the credible centre during the netinit, a to be each user of network first distribution sub-key and production sub-key base, and generating network key; The method comprising further following steps: A, determining for sending sub-key user, engages the network the new user to the releasing user request to according to the sub-key sending the sub-wire the key; THE sub-key and publishing the user to the t to obtain the sub-wire key user to compose the sub-key to the distribution device,C and sub-key distribution each user use in from each sub-keys, distribution connected to the new user the key main part and sub-key body component. The method for (t, n) threshold secret sharing processor is realized to be network user the first distribution sub-key the distribution network, a arm the network user newly eight rotor of the jumping-like method via the round-trip the key, and periphery validated user for network renewed the process of sub-key, claims a device for sharing multi-key.

CN1953368A, drawing sheet 1
Sheet 1 of 4

Term

No projected expiry on record.

  1. Priority and filed
  2. Published
  3. Today

25 claims: 1 independent, 24 dependent

  1. 1
    Distributed 1.1 dynamic key management method, the is characterised of; the credible centre during the netinit, a to be each user of network first distribution sub-key and production sub-key base, and generating network key; The method comprising further following steps:A, determining for sending sub-key user, engages the network the new user to the releasing user request to according to the sub-key sending the sub-wire the key;THE sub-key and publishing the user to the t to obtain the sub-wire key user to compose the sub-key to the distribution device,C and sub-key distribution each user use in from each sub-keys, distribution connected to the new user the key main part and sub-key body component. 1.一种分布式的动态密钥管理方法,其特征在于,可信中心在网络初始化时,为最初组成网络的每个用户分发子密钥、子密钥生成基,并生成网络密钥;该方法还包括以下步骤:A、确定子密钥颁发用户,加入网络的新用户向子密钥颁发用户请求颁发子密钥;B、子密钥颁发用户选择t个获得子密钥的用户组成子密钥颁发集合;C、子密钥颁发集合中的每个用户利用自各的子密钥,向新用户颁发子密钥主部分和子密钥次部分。