Nova Patents
EP1250774B1

Public key validation service

Abstract

A public key validation agent (PKVA) includes a registration authority which issues a first unsigned public key validation certificate (unsigned PKVC) off-line to a subject that binds a public key of the subject to a first public key serial number (PKVN). The registration authority maintains a certificate database of unsigned PKVCs in which it stores the first unsigned PKVC. A credentials server issues a disposable public key validation certificate (disposable PKVC) on-line to the subject. The disposable PKVC binds the public key of the subject from the first unsigned PKVC to the first PKVN from the first unsigned PKVC. The credentials server maintains a table that contains entries corresponding to valid unsigned PKVCs stored in the certificate database. The PKVA can be employed in a public key validation service to validate the public key of the subject before a private/public key pair of the subject is used for authentication purposes.

EP1250774B1, drawing sheet 1
Sheet 1 of 17

Term

Term ended

Expired 16 January 2021, 5.7 years ago.

  1. Priority
  2. Filed
  3. Granted
  4. Expired
  5. Today

28 claims: 28 independent, 0 dependent

  1. 1
    A public key validation system PKVA (701) comprising:an off-line registration authority (702) for issuing a first unsigned public key validation certificate unsigned PKVC (800) off-line to a subject (706) that binds a public key (801) of the subject to a first public key serial number PKVN (802), the registration authority maintaining a certificate database of unsigned PKVCs in which it stores the first unsigned PKVC;andan on-line credentials server (703) for issuing a disposable public key validation certificate disposable PKVC (900) on-line to the subject, the disposable PKVC binds the public key of the subject from the first unsigned PKVC to the first PKVN from the first unsigned PKVC, wherein the credentials server maintains a table (704) that contains entries corresponding to valid unsigned PKVCs stored in the certificate database. Ein Öffentlicher-Schlüssel-Validierungssystem PKVA (701), das folgende Merkmale umfasst: eine Off-Line-Registrierungsautorität (702) zum Ausgeben eines ersten nicht-unterzeichneten Öffentlicher-Schlüssel-Validierungszertifikats, nicht-unterzeichnetes PKVC, (800) off-line zu einem Subjekt (706), das einen öffentlichen Schlüssel (801) des Subjekts an eine erste Öffentlicher-Schlüssel-Seriennummer PKVN (802) bindet, wobei die Registrierungsautorität eine Zertifikatdatenbank von nicht-unterzeichneten PKVCs beibehält, in der dieselbe das erste nicht-unterzeichnete PKVC speichert;undeinen On-Line-Berechtigungsnachweisserver (703) zum Ausgeben eines einmaligen Öffentlicher-Schlüssel-Validierungszertifikats, Einmal-PKVC, (900) on-line an das Subjekt, wobei das Einmal-PKVC den öffentlichen Schlüssel des Objekts von der ersten nicht-unterzeichneten PKVC an die erste PKVN von dem ersten nicht-unterzeichneten PKVC bindet, wobei der Berechtigungsnachweisserver eine Tabelle (704) beibehält, die Einträge enthält, die gültigen nicht-unterzeichneten PKVCs entsprechen, die in der Zertifikatdatenbank gespeichert sind. Système de validation de clé publique PKVA (701) comprenant : une autorité d'enregistrement hors ligne (702) pour délivrer un premier certificat de validation de clé publique non signé PKVC (800) hors ligne à un sujet (706) qui relie une clé publique (801) du sujet à un premier numéro de série de clé publique PKVN (802), l'autorité d'enregistrement mettant à jour une base de données de certificats PKVC non signés dans laquelle elle enregistre le premier PKVC non signé ;etun serveur d'accréditations en ligne (703) pour délivrer un certificat de validation de clé publique jetable PKVC (900) en ligne au sujet, le PKVC jetable relie la clé publique du sujet, à partir du premier PKVC non signé au premier PKVN à partir du premier PKVC non signé, dans lequel le serveur d'accréditations met à jour une table (704) qui contient des entrées correspondant à des PKVC non signés valides stockés dans la base de données de certificats.
  2. 2
    Das PKVA gemäß Anspruch 1, bei dem die erste PKVN anders ist als alle vorhergehenden PKVNs, die durch die Registrierungsautorität erzeugt werden. PKVA selon la revendication 1, dans lequel le premier PKVN est différent de tous les PKVN précédents générés par l'autorité d'enregistrement. The PKVA of claim 1 wherein the first PKVN is different than all previous PKVNs generated by the registration authority.
  3. 3
    Das PKVA gemäß Anspruch 1, bei dem der Berechtigungsnachweisserver auf eine Aufhebungsanforderung von dem Subjekt anspricht, um den ersten nicht-unterzeichneten PKVC-Eintrag in der Tabelle des Berechtigungsnachweisservers ungültig zu machen. PKVA selon la revendication 1, dans lequel le serveur d'accréditations est sensible à une requête de révocation provenant du sujet pour invalider la première entrée de PKVC non signée dans la table du serveur d'accréditations. The PKVA of claim 1 wherein the credentials server is responsive to a revocation request from the subject to invalidate the first unsigned PKVC entry in the table of the credential server.
  4. 4
    Das PKVA gemäß Anspruch 3, bei dem die Registrierungsautorität einen Öffentlicher-Schlüssel-Aufhebungscode PKRC erzeugt, der durch das Subjekt in seiner Aufhebungsanforderung verwendet wird. PKVA selon la revendication 3, dans lequel l'autorité d'enregistrement génère un code de révocation de clé publique PKRC que le sujet doit utiliser dans sa requête de révocation. The PKVA of claim 3 wherein the registration authority generates a public key revocation code PKRC to be used by the subject in its revocation request.
  5. 5
    Das PKVA gemäß Anspruch 4, bei dem die Registrierungsautorität den PKRC über einen sicheren Kanal, der Datenvertrauenswürdigkeit liefert, an das Subjekt sendet. PKVA selon la revendication 4, dans lequel l'autorité d'enregistrement envoie le PKRC au sujet sur un canal sécurisé qui fournit une confidentialité des données. The PKVA of claim 4 wherein the registration authority sends the PKRC to the subject over a secure channel that provides data confidentiality.
  6. 6
    Das PKVA gemäß Anspruch 1, bei dem das Einmal-PKVC ein Ablaufdatum/Zeit umfasst. PKVA selon la revendication 1, dans lequel le PKVC jetable comprend une date / heure d'expiration. The PKVA of claim 1 wherein the disposable PKVC includes an expiration date/time.
  7. 7
    Das PKVA gemäß Anspruch 6, bei dem eine Gültigkeitsperiode, von dem Zeitpunkt, wann der Berechtigungsnachweisserver das Einmal-PKVC ausgibt, zu dem Ablaufdatum/Zeit ausreichend kurz ist, sodass das Einmal-PKVC keiner Aufhebung unterzogen werden muss. PKVA selon la revendication 6, dans lequel une période de validité, partant du moment où le serveur d'accréditations délivre le PKVC jetable jusqu'à la date / heure d'expiration, est suffisamment courte pour que le PKVC jetable n'ait pas besoin d'être soumis à une révocation. The PKVA of claim 6 wherein a validity period from when the credentials server issues the disposable PKVC to the expiration date/time is sufficiently short such that the disposable PKVC does not need to be subject to revocation.
  8. 8
    Das PKVA gemäß Anspruch 6, bei dem das Einmal-PKVC keiner Aufhebung unterzogen wird. PKVA selon la revendication 6, dans lequel le PKVC jetable n'est pas soumis à une révocation. The PKVA of claim 6 wherein the disposable PKVC is not subject to revocation.
  9. 9
    Das PKVA gemäß Anspruch 1, bei dem die Tabelle, die durch den Berechtigungsnachweisserver beibehalten wird, eine Hash-Tabelle ist, die kryptografische Hash-Werte von gültigen nicht-unterzeichneten PKVCs enthält, die in der Zertifikatdatenbank gespeichert sind, und einen kryptografischen Hash-Wert des ersten nicht-unterzeichneten PKVC umfasst. PKVA selon la revendication 1, dans lequel la table mise à jour par le serveur d'accréditations, est une table de hachage contenant des hachages cryptographiques de PKVC non signés valides stockés dans la base de données de certificats et comprenant un hachage cryptographique du premier PKVC non signé. The PKVA of claim 1 wherein the table maintained by the credentials server is a hash table containing cryptographic hashes of valid unsigned PKVCs stored in the certificate database and including a cryptographic hash of the first unsigned PKVC.
  10. 10
    Das PKVA gemäß Anspruch 1, bei dem der Berechtigungsnachweisserver das Einmal-PKVC ansprechend auf eine Mitteilung von dem Subjekt ausgibt, die das ausgegebene erste nicht-unterzeichnete Zertifikat enthält. PKVA selon la revendication 1, dans lequel le serveur d'accréditations délivre le PKVC jetable en réponse à un message provenant du sujet contenant le premier certificat non signé délivré. The PKVA of claim 1 wherein the credential server issues the disposable PKVC in response to a message from the subject containing the issued first unsigned certificate.
  11. 11
    Das PKVA gemäß Anspruch 9, bei dem der Berechtigungsnachweisserver den kryptografischen Hash-Wert des ersten nicht-unterzeichneten PKVC mit einer kollisionsresistenten Hash-Funktion berechnet. PKVA selon la revendication 9, dans lequel le serveur d'accréditations calcule le hachage cryptographique du premier PKVC non signé avec une fonction de hachage qui résiste aux collisions. The PKVA of claim 9 wherein the credentials server computes the cryptographic hash of the first unsigned PKVC with a collision-resistant hash function.
  12. 12
    Das PKVC gemäß Anspruch 11, bei dem die kollisionsresistente Hash-Funktion eine SHA-1 Hash-Funktion ist. PKVC selon la revendication 11, dans lequel la fonction de hachage qui résiste aux collisions est une fonction de hachage SHA-1. The PKVC of claim 11 wherein the collision-resistant hash function is a SHA-1 hash function.
  13. 13
    Das PKVC gemäß Anspruch 11, bei dem die kollisionsresistente Hash-Funktion eine MD5-Hash-Funktion ist. PKVC selon la revendication 11, dans lequel la fonction de hachage qui résiste aux collisions est une fonction de hachage MD5. The PKVC of claim 11 wherein the collision-resistant hash function is a MD5 hash function.
  14. 14
    Das PKVC gemäß Anspruch 1, bei dem es das Einmal-PKVC dem Subjekt ermöglicht, das Einmal-PKVC einem Verifizierer für eine Authentifizierung zu präsentieren und zu zeigen, dass das Subjekt Kenntnis eines privaten Schlüssels hat, der dem öffentlichen Schlüssel in dem Einmal-PKVC entspricht. PKVC selon la revendication 1, dans lequel le PKVC jetable permet au sujet de présenter le PKVC jetable à un vérificateur afin de procéder à une authentification et de prouver que le sujet a connaissance d'une clé privée qui correspond à la clé publique dans le PKVC jetable. The PKVC of claim 1 wherein the disposable PKVC permits the subject to present the disposable PKVC to a verifier for authentication and for demonstrating that the subject has knowledge of a private key corresponding to the public key in the disposable PKVC.
  15. 15
    A method of validating a public key (801) of a subject (706), the method comprising:issuing a first unsigned public key validation certificate unsigned PKVC (800) off line to the subject that binds the public key of the subject to a first public key serial number PKVN (802);maintaining, off line, a certificate database of unsigned PKVCs including the first unsigned PKVC;issuing a disposable public key validation certificate disposable PKVC (900) on-line to the subject, wherein the disposable PKVC binds the public key of the subject from the first unsigned PKVC to the first PKVN from the first unsigned PKVC;maintaining, on-line, a table (704) that contains entries corresponding to valid unsigned PKVCs stored in the certificate database. Ein Verfahren zum Validieren eines öffentlichen Schlüssels (801) eines Subjekts (706), wobei das Verfahren folgende Merkmale umfasst: Ausgeben eines ersten nicht-unterzeichneten Öffentlicher-Schlüssel-Validierungszertifikats, nicht-unterzeichnetes PKVC, (800) off-line an das Subjekt, das den öffentlichen Schlüssel des Subjekts an eine erste Öffentlicher-Schlüssel-Seriennummer PKVN (802) bindet;Beibehalten einer Zertifikatdatenbank von nicht-unterzeichneten PKVCs off-line, die das erste nicht-unterzeichnete PKVC umfassen;Ausgeben eines Einmal-Öffentlicher-Schlüssel-Validierungszertifikats, Einmal-PKVC, (900) on-line an das Subjekt, wobei das Einmal-PKVC den öffentlichen Schlüssel des Subjekts von dem ersten nicht-unterzeichneten PKVC an die erste PKVN von dem ersten nicht-unterzeichneten PKVC bindet;Beibehalten einer Tabelle (704) on-line, die Einträge enthält, die gültigen nicht-unterzeichneten PKVCs entsprechen, die in der Zertifikatdatenbank gespeichert sind. Procédé de validation d'une clé publique (801) d'un sujet (706), le procédé comprenant : la délivrance d'un premier certificat de validation de clé publique non signé PKVC (800) hors ligne au sujet, qui relie la clé publique du sujet à un premier numéro de série de clé publique PKVN (802) ;la mise à jour, hors ligne, d'une base de données de certificats de PKVC non signés comprenant le premier PKVC non signé ;la délivrance d'un certificat de validation de clé publique jetable PKVC (900) en ligne au sujet, dans lequel le PKVC jetable relie la clé publique du sujet à partir du premier PKVC non signé au premier PKVN à partir du premier PKVC non signé ;la mise à jour, en ligne, d'une table (704) qui contient des entrées correspondant aux PKVC non signés valides stockés dans la base de données de certificats.
  16. 16
    Das Verfahren gemäß Anspruch 15, bei dem eine Registrierungsautorität den Schritt des Ausgebens des ersten nicht-unterzeichneten Zertifikats durchführt, und bei dem die erste PKVN anders ist als alle vorhergehenden PKVNs, die durch die Registrierungsautorität erzeugt werden. Procédé selon la revendication 15, dans lequel une autorité d'enregistrement procède à l'établissement de la première étape de certificat non signé, et, dans lequel le premier PKVN est différent de tous les PKVN précédents générés par l'autorité d'enregistrement. The method of claim 15 wherein a registration authority performs the issuing of the first unsigned certificate step, and wherein the first PKVN is different than all previous PKVNs generated by the registration authority.
  17. 17
    Das Verfahren gemäß Anspruch 15, das ferner folgenden Schritt umfasst:Ungültigmachen des ersten nicht-unterzeichneten PKVC-Eintrags in der Tabelle ansprechend auf eine Aufhebungsanforderung von dem Subjekt. Procédé selon la revendication 15 comprenant de plus : l'invalidation, en réponse à une requête de révocation provenant du sujet, de la première entrée de PKVC non signée dans la table. The method of claim 15 further comprising: invalidating, in response to a revocation request from the subject, the first unsigned PKVC entry in the table.
  18. 18
    Das Verfahren gemäß Anspruch 17, das ferner folgenden Schritt umfasst:Erzeugen eines Öffentlicher-Schlüssel-Aufhebungscodes PKRC, der durch das Subjekt in seiner Aufhebungsanforderung verwendet werden soll. Procédé selon la revendication 17 comprenant de plus : la génération d'un code de révocation de clé publique PKRC que doit utiliser le sujet dans sa requête de révocation. The method of claim 17 further comprising: generating a public key revocation code PKRC to be used by the subject in its revocation request.
  19. 19
    Das Verfahren gemäß Anspruch 18, das ferner folgenden Schritt umfasst:Senden des PKRC an das Subjekt über einen sicheren Kanal, der eine Datenvertraulichkeit liefert. Procédé selon la revendication 18 comprenant de plus : l'envoi du PKRC au sujet sur un canal sécurisé qui fournit une confidentialité des données. The method of claim 18 further comprising: sending the PKRC to the subject over a secure channel that provides data confidentiality.
  20. 20
    Das Verfahren gemäß Anspruch 15, bei dem das Einmal-PKVC ein Ablaufdatum/Zeit umfasst. Procédé selon la revendication 15, dans lequel le PKVC jetable comprend une date / heure d'expiration. The method of claim 15 wherein the disposable PKVC includes an expiration date/time.
  21. 21
    Das Verfahren gemäß Anspruch 20, bei dem eine Gültigkeitsperiode von dem Zeitpunkt, wenn die Einmal-PKVC ausgegeben wird, zu dem Ablaufdatum/Zeit ausreichend kurz ist, sodass das Einmal-PKVC keiner Aufhebung unterzogen werden muss. Procédé selon la revendication 20, dans lequel une période de validité, partant du moment où le PKVC jetable est délivré jusqu'à la date / heure d'expiration, est suffisamment courte pour que le PKVC jetable n'ait pas besoin d'être soumis à une révocation. The method of claim 20 wherein a validity period from when the disposable PKVC is issued to the expiration date/time is sufficiently short such that the disposable PKVC does not need to be subject to revocation.
  22. 22
    Das Verfahren gemäß Anspruch 20, bei dem das Einmal-PKVC keiner Aufhebung unterzogen wird. Procédé selon la revendication 20, dans lequel le PKVC jetable n'est pas soumis à une révocation. The method of claim 20 wherein the disposable PKVC is not subject to revocation.
  23. 23
    Das Verfahren gemäß Anspruch 15, bei dem der Schritt des Beibehaltens der Tabelle das Beibehalten einer Hash-Tabelle umfasst, die kryptografische Hash-Werte von gültigen nicht-unterzeichneten PKVCs enthält, die in der Zertifikatdatenbank gespeichert sind, und einen kryptografischen Hash-Wert des ersten nicht-unterzeichneten PKVC umfasst. Procédé selon la revendication 15, dans lequel l'étape de mise à jour de la table comprend une mise à jour d'une table de hachage contenant des hachages cryptographiques de PKVC non signés valides stockés dans la base de données de certificats et comprenant un hachage cryptographique du premier PKVC non signé. The method of claim 15 wherein the maintaining the table step includes maintaining a hash table containing cryptographic hashes of valid unsigned PKVCs stored in the certificate database and including a cryptographic hash of the first unsigned PKVC.
  24. 24
    Das Verfahren gemäß Anspruch 15, bei dem der Schritt des Ausgebens des Einmal-PKVC ansprechend auf eine Mitteilung von dem Subjekt durchgeführt wird, die das ausgegebene erste nicht-unterzeichnete Zertifikat enthält. Procédé selon la revendication 15, dans lequel l'étape de délivrance du PKVC jetable est exécutée en réponse à un message provenant du sujet contenant le premier certificat non signé délivré. The method of claim 15 wherein the step of issuing the disposable PKVC is performed in response to a message from the subject containing the issued first unsigned certificate.
  25. 25
    Das Verfahren gemäß Anspruch 23, das ferner folgenden Schritt umfasst:Berechnen des kryptografischen Hash-Werts des ersten nicht-unterzeichneten PKVC mit einer kollisionsresistenten Hash-Funktion. Procédé selon la revendication 23 comprenant de plus : le calcul du hachage cryptographique du premier PKVC non signé avec une fonction de hachage qui résiste aux collisions. The method of claim 23 further comprising: computing the cryptographic hash of the first unsigned PKVC with a collision-resistant hash function.
  26. 26
    Das Verfahren gemäß Anspruch 25, bei dem der Berechnungsschritt das Berechnen des kryptografischen Hash-Werts des ersten nicht-unterzeichneten PKVC mit einer SHA-1 Hash-Funktion umfasst. Procédé selon la revendication 25, dans lequel l'étape de calcul comprend le calcul du hachage cryptographique du premier PKVC non signé avec une fonction de hachage SHA-1. The method of claim 25 wherein the computing step includes computing the cryptographic hash of the first unsigned PKVC with a SHA-1 hash function.
  27. 27
    Das Verfahren gemäß Anspruch 25, bei dem der Berechnungsschritt das Berechnen des kryptografischen Hash-Werts des ersten nicht-unterzeichneten PKVC mit einer MD5 Hash-Funktion umfasst. Procédé selon la revendication 25, dans lequel l'étape de calcul comprend le calcul du hachage cryptographique du premier PKVC non signé avec une fonction de hachage MD5. The method of claim 25 wherein the computing step includes computing the cryptographic hash of the first unsigned PKVC with a MD5 hash function.
  28. 28
    Das Verfahren gemäß Anspruch 15, bei dem es das Einmal-PKVC dem Subjekt ermöglicht, das Einmal-PKVC einem Verifizierer für eine Authentifizierung zu präsentieren, und zu zeigen, dass das Subjekt Kenntnis eines privaten Schlüssels hat, der dem öffentlichen Schlüssel in dem Einmal-PKVC entspricht. Procédé selon la revendication 15, dans lequel le PKVC jetable permet au sujet de présenter le PKVC jetable à un vérificateur pour procéder à une authentification et pour prouver que le sujet a connaissance d'une clé privée qui correspond à la clé publique dans le PKVC jetable. The method of claim 15 wherein the disposable PKVC permits the subject to present the disposable PKVC to a verifier for authentication and for demonstrating that the subject has knowledge of a private key corresponding to the public key in the disposable PKVC.
Independent claims28