EP0111489A1

Encryption system key distribution method and apparatus.

Abstract

Encryption systems are generally based on the distribution of digit keys between the terminals for the scrambling and descrambling of transmitted messages. Sophisticated security precautions are necessary to protect digit keys since a gap in the key could result in a transmission gap. A method and a key distribution device is described using a channel (14, 15, 18) from identified terminals (A, B, X) and going to a key distribution center (KDC) for setting, on the basis of a session, the key that should be used for the next session between these same terminals. The key establishment link (16) is also encoded using a digit key that varies after each use. It is possible to check,

Term

Term ended

Projected expiry passed 11 January 2003, 23.7 years ago.

  1. Priority
  2. Filed
  3. Published
  4. Projected expiry
  5. Today

9 claims: 3 independent, 6 dependent

  1. 1
    Claims of equivalent WO 8304461 A1 - 17 -, Claims 1. A key distribution method for communicating cipher keys between two terminals via a key distribution center, KDC, said method comprising establishing between any one terminal and said key distribution center a terminal-unique cipher key, cooperating between said KDC and said one terminal on a subsequent connection between said KDC and said one terminal to establish a session key for use by said one terminal in a subsequent secure transmission between said one terminal and a second terminal, and changing in response to said subsequent connection between said one terminal and said KDC said priorly established terminal-unique cipher key.
  2. 5
    A key distribution center for controlling the dissemination of session cipher keys between remotely located terminals, said center arranged for switched access to a plurality of said terminals, said center comprising means for establishing communication cipher keys between said center and each said terminal having access thereto, each cipher key unique to each said terminal, means operative when one of said terminals accesses said center for bidirectional asymmetrically exchanging information with said accessed terminal using, as a foundation for said exchange, said priorly established communication cipher keys, and "&URJΞ means responsive to said exchanged information for communicating to said terminal information allowing said terminal to establish a session cipher key for use with an identified other terminal also having access to said center.
  3. 9
    A key distribution center for controlling the distribution of cipher control information among a number of terminals, said center comprising means for individually exchanging encoded information between any of said terminals, said exchange for any particular terminal based partially upon a last information exchange between said particular terminal and said center, means for identifying at least two terminals where encrypted session information is to be exchanged and for accepting from said identified terminals certain encryption control information, and means for modif ing, according to a pre-established pattern, accepted information from said identified terminals and for communicating said modified information to the other of said terminals so as to allow each of said terminals to thereafter establish, independent of any information available at said center, a cipher key allowing said session information to be encrypted. SUB