EP0735720A3

Method for key distribution and verification in a key management system

Abstract

A method of token verification in a Key Management System (10) provides a logical device identifier and a master key created in a logical security domain to a transaction evidencing device, such as a digital postage meter (36). The method creates a master key record in a key verification box, securely stores the master key record in a Key Management System archive (25), and produces in the transaction evidencing device (36) evidence in the logical security domain of transaction information integrity. The method inputs the evidence of the transaction information integrity to a token verification box (21), and inputs in the token verification box the master key record from the Key Management System archive (25). The method determines in the token verification box that the master key is valid in logical security domain, uses in the token verification box (21) the master key to verify the evidence of transaction information integrity, and outputs from the token verification box (21) an indication of the result of the verification of the evidence of transaction information integrity. The master key record includes the logical device identifier, the master key and a digital signature associating the logical device identifier and the master key. The method checks the digital signature to verify the association of the logical device identifier and the master key within the logical security domain.

EP0735720A3, drawing sheet 1
Sheet 1 of 1

Term

Term ended

Projected expiry passed 1 April 2016, 10.5 years ago.

  1. Priority
  2. Filed
  3. Published
  4. Projected expiry
  5. Today

1 sheet

  1. Sheet 1