CN1953369A

A method, system and device to initiate and identify secret key update request

Abstract

The invention claims a causing the key updating request method, wherein the method comprises: The network requirement updating key generation, the new key, according to the novel key gain authentication parameter with, authentication parameter and a gain transmitted to the terminal. The invention further claims an identification a request updating method for key, wherein the method comprises: The terminal receiving authentication parameter for transmitting network, the first novel key according are according to preserves makes the first button and device for generating, authentication parameter of uniformity of receiving, and determining whether the network request the key updating. The invention further claims an is implemented as to the updating system for request key, a and vibrates upgrading device and recognition of the key request a request upgrades key device. The invention claims method, system and device, network equipments according to the existing authentication method updating the support of key, a terminal identification network contains request the key updating.

Term

No projected expiry on record.

  1. Priority and filed
  2. Published
  3. Today

31 claims: 5 independent, 26 dependent

  1. 1
    1 Or and vibrates the key updating request method, the is composed characterised, wherein the method comprises:The network of need to the upgrade key, a device for confirming need to the upgrade key, a generating novel key, and according to the new key gain authentication parameter with, authentication parameter and a gain transmitted to the terminal. 1.一种发起更新密钥请求的方法,其特征在于,该方法包括:网络判断是否需要更新密钥,如果确定需要更新密钥,则产生新密钥,然后根据所产生的新密钥获取鉴权参数,并将所获取的鉴权参数发送给终端。
  2. 7
    Method for updating key request 7.1 or a distinguishing claim 1, wherein the is composed characterised, wherein the method comprises:The terminal receiving authentication parameter for transmitting network, authentication parameter uniformity according to preserves makes the first button from receiving;and uniformity, and then for determining network is not request updating the key;And the uniformity does not pass;and generating first novel key, a authentication parameter of uniformity and according to for with the first novel key of for receiving;and uniformity, and then network determining updated request key. 7.一种用于识别权利要求1所述的更新密钥请求的方法,其特征在于,该方法包括:终端接收到网络发送的鉴权参数后,根据自身所保存的第一密钥判断所接收到的鉴权参数的一致性,如果一致性通过,则确定网络没有请求更新密钥;如果一致性不通过,则产生第一新密钥,并根据自身所产生的第一新密钥判断所接收到的鉴权参数的一致性,如果一致性通过,则确定网络请求更新密钥。
  3. 17
    1 Or of the key updating request system, the is characterised of; the system comprises:The key updating causing device and a upgrading request recognition system,The key is updating causing device is used to the gain authentication parameter, authentication parameter and a gain is the key upgrading to the support recognition system,The key is updating the authentication parameter of request recognition system is used for acting according to receiving, determining whether request the key updating. 17.一种实现更新密钥请求的系统,其特征在于,该系统包括:密钥更新发起装置和密钥更新请求识别装置;所述密钥更新发起装置用于获取鉴权参数,并将所获取的鉴权参数发送给所述密钥更新请求识别装置;所述密钥更新请求识别装置用于根据所接收到的鉴权参数,确定是否请求更新密钥。
  4. 25
    1 Or and vibrates the key updating request device, the is composed characterised, wherein the device comprises:Causing the support decision unit, the second guide key unit, a second novel key generation unit, a power of any of unit, a authentication parameter obtaining unit, a authentication parameter data transmission unit;The causing the support decision unit is used to fix the heating upgrading key is request, and a locating the inspection is the authentication parameter obtaining unit;The second guide key unit is used for balanced to the second key;The second novel key to generate unit is used to generate the novel key;The power of any of unit is provided with a random;theThe authentication parameter obtaining unit is used to act according to form causing a decision result of the support decision unit, obtained from the second guide key unit is for obtaining the second key or from the second novel key to generate the unit is for obtaining the novel key, wherein the generation of any device for obtaining to, and according to the key and a power of any of authentication parameter gained, transmitted to the authentication parameter data transmission unit;The authentication parameter of the authentication parameter transmission unit is used for receiving and sending to the key upgrading to the support recognition system. 25.一种发起更新密钥请求的装置,其特征在于,该装置包括:发起请求决定单元,第二密钥保存单元,第二新密钥产生单元,随机数产生单元,鉴权参数获取单元,鉴权参数发送单元;所述发起请求决定单元用于决定是否发起更新密钥请求,并将决定结果发送给所述鉴权参数获取单元;所述第二密钥保存单元用于保存第二密钥;所述第二新密钥产生单元用于产生第二新密钥;所述随机数产生单元用于产生随机数;所述鉴权参数获取单元用于根据从所述发起请求决定单元所得到的决定结果,从所述第二密钥保存单元获取第二密钥或从所述第二新密钥产生单元获取第二新密钥,从所述随机数产生单元获取随机数,并根据所获取的密钥和随机数产生鉴权参数,发送给所述鉴权参数发送单元;所述鉴权参数发送单元用于将所接收到的鉴权参数发送给所述密钥更新请求识别装置。
  5. 27
    A 27.1 pair of identifying request upgrades key device; the is composed characterised, wherein the device comprises:The authentication parameter receiving unit, uniformly data unit, a first guide key unit, a first novel key generation unit, a recognizing unit;, Wherein authentication parameter receiving unit is used for receiving the network transmission the authentication, parameterThe first guide key unit is used for balanced to the first key;The uniform data unit is provided with a first key according gained the first guide key unit is balanced, or the number of the first novel key to generate the first novel key according unit state, and authentication parameter uniformity according to the key apparatus according gained the authentication parameter receiving unit received, and a confirm the results to transmit the recognizing unit and first novel key to generate unit;The inspection apparatus for recognizing unit is used for acting according to receiving, wherein the determining network request updating the key;The first novel key comprises a data result of the device is used for acting according to receiving, a the first novel key. 27.一种识别是否请求更新密钥的装置,其特征在于,该装置包括:鉴权参数接收单元,一致性验证单元,第一密钥保存单元,第一新密钥产生单元,识别单元;其中,所述鉴权参数接收单元用于接收网络发送的鉴权参数;所述第一密钥保存单元用于保存第一密钥;所述一致性验证单元用于获取第一密钥保存单元所保存的第一密钥,或者获取所述第一新密钥产生单元所产生的第一新密钥,并根据所获取的密钥验证所述鉴权参数接收单元所接收到的鉴权参数的一致性,并将验证结果发送给所述识别单元和所述第一新密钥产生单元;所述识别单元用于根据所接收到的验证结果,确定网络是否请求更新密钥;所述第一新密钥产生单元用于根据所接收到的验证结果,产生第一新密钥。