EP0739560B1

Cryptographic system and method with key escrow feature

Abstract

This record has no abstract on file.

EP0739560B1, drawing sheet 1
Sheet 1 of 28

Term

Term ended

Expired 13 January 2015, 11.7 years ago.

  1. Priority
  2. Filed
  3. Granted
  4. Expired
  5. Today

20 claims: 6 independent, 14 dependent

  1. 1
    A method for generating verifiably trusted, stream-oriented communications among a plurality of users, comprising the steps of:escrowing at a trusted escrow centre (153, 165) an asymmetric cryptographic key (151) associated with each of a plurality of users;verifying each of the keys (151) at the escrow centre (153, 165);certifying each of the keys (151) upon verification;and generating an encrypted stream-oriented communication from an initiating user to a receiving user using said initiating user's cryptographic key (151),    characterised in that said communication comprises (a) an initial packet having message decryption key access information to allow an outside party to decrypt the stream, and (b) a stream of subsequent packets, each subsequent packet containing information identifying the subsequent packet as associated with the stream, and wherein at least one of said subsequent packets does not include said message decryption key access information.
  2. 5
    The method of any one of the preceding claims, wherein the message decryption key access information includes a hash of the initial packet.
  3. 10
    The method of any one of the preceding claims, further comprising the steps of:receiving, at the initiating user, information relating to a quality of a channel carrying the stream-oriented communication;and selectively including message identifying information in subsequent packets at a rate determined by the quality of the channel.
  4. 11
    The method of any one of the preceding claims, wherein packets include information associating them with the initiating user.
  5. 12
    A method for generating verifiably trusted, stream-oriented communications among a plurality of users, comprising the steps of:escrowing at a trusted escrow centre (153, 165) an asymmetric cryptographic key (151) associated with each of a plurality of users: verifying each of the keys (151) at the escrow centre (153, 165);certifying each of the keys (151) upon verification;and receiving, at a receiving user, a first encrypted stream-oriented communication from an initiating user, said communication having been encrypted using said initiating user's cryptographic key (151),    characterised in that said first communication comprises (a) an initial packet having message decryption key access information to allow an outside party to decrypt the stream, and (b) a stream of subsequent packets, each subsequent packet containing information identifying the subsequent packet as associated with the stream, and wherein at least one subsequent packet of the first stream does not include said message decryption key access information.
  6. 19
    The method of any of claims 13-18, further comprising the steps of:receiving, at the receiving user, information relating to a quality of a channel carrying the stream-oriented communication;and selectively including message identifying information in subsequent packets at a rate determined by the quality of the channel.