EP0482371A2

Method and apparatus for controlling the use of a public key, based on the level of integrity for the key.

Abstract

A method and apparatus in a public cryptographic system, control the use of a public key, based on the level of integrity for the public key. The method and apparatus generate a control vector associated with the public key, having a first field. The public key and the control vector are transmitted from the location of generation over a communications link to a receiving location, using the selected one of a plurality of levels of integrity for the transmission. At the receiving location, the public key and the control vector are tested to determine the received level of integrity for the transmission. Then, a value is written into the first field of the control vector which characterizes the received level of integrity. Thereafter, cryptographic applications for the public key are limited by control vector checking, to only those applications which have a required level of integrity which is not greater than the received level of integrity characterized by the first field in the control vector.

EP0482371A2, drawing sheet 1
Sheet 1 of 9

Term

Term ended

Projected expiry passed 25 September 2011, 15 years ago.

  1. Priority
  2. Filed
  3. Published
  4. Projected expiry
  5. Today

12 claims: 4 independent, 8 dependent

  1. 1
    In a public key cryptographic system including a pair of cryptographic devices communicating using a public key algorithm, a method for limiting the use of a public key to applications not requiring a level of integrity greater than a received level of integrity for the public key, comprising the steps of:generating a public key and private key as a pair;storing said public key at a first device in said system;storing at said first device a control vector associated with said public key, having a first field;transmitting from said first device, over a communications link to a second cryptographic device, said public key and said control vector, using a selected one of a plurality of levels of integrity for the transmission;testing at said second device said public key and said control vector to determine a received level of integrity thereof, as it is received at said second device;writing at said second device a value into said first field of said control vector characterizing said received level of integrity;and limiting cryptographic applications for said public key, to said received level of integrity characterized by said first field in said control vector.
  2. 2
    In a data processing network including a pair of communicating cryptographic devices, a method for limiting the use of a communicated key to applications not requiring a level of integrity greater than a received level of integrity for the key, comprising the steps of:storing a key in a first cryptographic device in said network;storing at said first device a control vector associated with said key, having a first field;transmitting from said first device, over a communications link to a second cryptographic device in said network, said key and said control vector, using a selected one of a plurality of levels of integrity for the transmission;testing at said second device said key and said control vector to determine a received level of integrity thereof;writing at said second device a value into said first field of said control vector characterizing said received level of integrity;and limiting cryptographic applications for said key, to said received level of integrity characterized by said first field in said control vector.
  3. 3
    In a data processing network including a pair of communicating cryptographic devices, a method for limiting the use of a communicated key to applications not requiring a level of integrity greater than a received level of integrity for the key, comprising the steps of:storing a key at a first cryptographic device in said network;storing at said first device a control vector associated with said key, having a first field;transmitting from said first device, over a communications link to a second cryptographic device in said network, said key and said control vector, using a selected one of a plurality of levels of integrity for the transmission;testing at said second device said key and said control vector to determine a received level of integrity thereof;writing at said second device a value into said first field of said control vector characterizing said received level of integrity;encrypting at said second device said key under a key expression which is the exclusive OR product of a master key and said control vector, forming an encrypted form of said key;receiving at said second device a request to perform a cryptographic application with said key, characterized by a required level of integrity;checking at said second device said first field of said control vector and determining that said required level of integrity is not greater than said received level of integrity;decrypting at said second device said encrypted form of said key under said key expression if said required level of integrity is not greater than said received level of integrity;and performing at said second device said cryptographic application with said key, said key being preferably a public key which is a member of a pair consisting of said public key and a private key.
  4. 9
    In a public key cryptographic system including a pair of cryptographic devices communicating using a public key algorithm, an apparatus for limiting the use of a public key to applications not requiring a level of integrity greater than a received level of integrity for the public key, comprising:first means for generating a public key and private key as a pair;second means coupled to said first means, for storing said public key at a first device in said system;third means coupled to said second means, for storing at said first device a control vector associated with said public key, having a first field;fourth means coupled to said second and third means, for transmitting from said first device, over a communications link to a second cryptographic device, said public key and said control vector, using a selected one of a plurality of levels of integrity for the transmission;fifth means coupled to said communications link, for testing at said second device said public key and said control vector to determine a received level of integrity thereof;sixth means coupled to said fifth means, for writing at said second device a value into said first field of said control vector characterizing said received level of integrity;and seventh means coupled to said sixth means, for limiting cryptographic applications for said public key, to said received level of integrity characterized by said first field in said control vector.