EP1379052A2

Cryptographic method using dual encryption keys and a wireless local area network (LAN) system therefore

Abstract

A cryptographic method using dual encryption keys and a wireless local area network (LAN) system therefor includes (a) generating a first group key in N wireless terminals forming an ad-hoc group, where N is equal to or greater than two, (b) generating a second group key in a main wireless terminal to perform a key distribution center function among the N wireless terminals, and transmitting the second group key to (N-1) sub wireless terminal, and (c) encoding data using the second group key, and transmitting the encoded data between the N wireless terminals. Data security in a wireless LAN system of an ad-hoc network is increased by creating a first group key having a low frequency of use using a group password, and using a random key generation algorithm to create, distribute, and modify a second group key in a wireless terminal functioning as a key distribution center.

EP1379052A2, drawing sheet 1
Sheet 1 of 6

Term

Term ended

Projected expiry passed 4 July 2023, 3.2 years ago.

  1. Priority
  2. Filed
  3. Published
  4. Projected expiry
  5. Today

18 claims: 11 independent, 7 dependent

  1. 1
    A cryptographic method using dual keys in a wireless local area network (LAN) system comprising:(a) generating a first group key in N wireless terminals forming an ad-hoc group, where N is equal to or greater than two;(b) generating a second group key in a main wireless terminal to perform a key distribution center function among the N wireless terminals, and transmitting the second group key to (N-1) sub wireless terminals;and (c) encoding data using the second group key, and transmitting the encoded data between the N wireless terminals.
  2. 4
    The method as claimed in any one of claims 1 to 3, wherein the main wireless terminal is a creator of the ad-hoc group.
  3. 5
    The method as claimed in any one of claims 1 to 4, wherein when the main wireless terminal is withdrawn from the ad-hoc group, the main wireless terminal transfers a function of key distribution center to a sub wireless terminal selected from among the (N-1) sub wireless terminals, so that the sub wireless terminal acts as the main wireless terminal.
  4. 6
    The method as claimed in any one of claims 1 to 5, further comprising:(d) modifying the second group key in the main wireless terminal according to a predetermined modification time period, and transmitting the modified second group key to the (N-1) sub wireless terminals.
  5. 8
    The method as claimed in any one of claims 1 to 7, wherein (b) comprises:(b1) if the first group key is created, encoding a second group key request message from one of the (N-1) sub wireless terminals, and transmitting the encoded second group key request message to the main wireless terminal;(b2) decoding the second group key request message, using the first group key, in the main wireless terminal;and (b3) creating a second group key according to the decoded second group key request message, in the main wireless terminal.
  6. 9
    A computer readable medium having embodied thereon a computer program for performing the method according to any claim of claims 1 through 8.
  7. 10
    A wireless local area network (LAN) system comprising:N, where N is equal to or greater than two, wireless terminals which form an ad-hoc group and create a first group key, wherein the N wireless terminals include: a main wireless terminal for performing a key distribution center function in the ad-hoc group, for creating a second group key and encoding data using the second group key, and for transmitting the encoded data between the remaining wireless terminals;and (N-1) sub wireless terminals for receiving the second group key from the main wireless terminal and encoding data using the second group key, and for transmitting the encoded data between the remaining wireless terminals.
  8. 13
    The system as claimed in any one of claims 10 to 12, wherein the main wireless terminal is a creator of the ad-hoc group.
  9. 14
    The system as claimed in any one of claims 10 to 13, wherein when the main wireless terminal is withdrawn from the ad-hoc group, the main wireless terminal transfers a function of key distribution center to a sub wireless terminal selected from among the (N-1) sub wireless terminals, so that the sub wireless terminal acts as the main wireless terminal.
  10. 15
    The system as claimed in any one of claims 10 to 14, wherein the sub wireless terminal comprises:a first group key generator for creating a first group key using a group password input from a user;a first encryption unit for storing the first group key, for encoding a second group key request message, using the first group key, for decoding a second group key response message from the main wireless terminal using the first group key, and for encoding data input from a user using a second group key;and a first key management unit for generating the second group key request message to output to the first encryption unit, for extracting a second group key from the second group key response message decoded in the first encryption unit, and for outputting the extracted second group key to the first encryption unit.
  11. 16
    The system as claimed in any one of claims 10 to 15, wherein the main wireless terminal comprises:a second group key generator for creating a first group key using a group password input from a user;a second encryption unit for storing the first group key, for decoding the second group key request message transmitted from the sub wireless terminal using the first group key, for encoding the second group key response message for transmitting to the sub wireless terminal using the first group key, and for encoding data input from a user using the second group key;and a second key management unit for receiving the second group key request message decoded from the second encryption unit, for creating the second group key, and for outputting the second group key response message including the created second group key to the second encryption unit.