Method and system for controlling key for electronic signature
Abstract
Two keys which are changed in the same updating cycle at different times are prepared as signature keys (main key and auxiliary key) for electronic signature and the updating cycle of each key is divided into, for example, three periods. Electronic signature is executed with the main key by using the first and last periods right after the change for the auxiliary key and the intermediate period for the main key. The electronic signature is confirmed by using either of the two confirmation keys which are changed synchronously with the change of the two keys used as the signature keys. Thus, the need of stopping the issuance of electronic signature or limiting provided service at the time of updating the signature keys is eliminated.

Term
No projected expiry on record.
- Priority and filed
- Published
- Today
24 claims: 19 independent, 5 dependent
- 1請求の範囲 1 . 各々異なる時期に周期的に内容が更新される複数の鍵を用意してお き、 前記複数の鍵を、 各々の鍵の更新周期よりも短い切替周期で 1個づ つ切り替え、 切り替えた鍵を電子署名用の署名鍵としての使用に供する ことを特徴とする、 電子署名用の鍵管理方法。
- 2前記切替周期がすべての鍵について同一長さの期間であることを特 徴とする、 請求項 1記載の鍵管理方法。
- 3各々異なる時期に周期的に内容が更新される複数の鍵について、 個 々の鍵の更新周期を 3つの区間に分割して最初及び最後の分割区間を予 備区間、 中間の分割区間を電子署名用の署名鍵として使用するための使 用区間とし、 各鍵についての前記使用区間を、 他の鍵の使用区間と時間 的に連続させ且つ互いに重複しないように切り替えることを特徴とする 鍵管理方法。
- 4前記署名鍵に基づく電子署名の有効期間が、 前記最初の分割区間と 最後の分割区間のうち短い方の区間以下の長さの期間であることを特徴 とする、 請求項 3記載の鍵管理方法。
- 5各鍵についての前記最初及び最後の分割区間の和が当該鍵について の前記中間の分割区間と同じ長さの期間であることを特徴とする、 請求 項 3記載の鍵管理方法。
- 6各鍵についての前記最初の分割区間と最後の分割区間とがそれぞれ 同じ長さの期間であることを特徴とする、 請求項 3記載の鍵管理方法。
- 7一の鍵についての最後の分割区間と他の鍵についての最初の分割区 間とが同じ長さの区間であることを特徴とする、 請求項 3記載の鍵管理 方法。
- 8—の鍵についての前記使用区間中に他の鍵を更新しておき、 前記一 の鍵についての前記使用区間の終了時点で前記更新された他の鍵につい ての前記使用区間を開始させることを特徴とする、 請求項 3記載の鍵管 理方法。
- 9前記複数の鍵の各々が、 前記切り替えにかかわらず、 前記署名鍵と しての使用が可能なものであることを特徴とする、 請求項 1または 3記 載の鍵管理方法。
- 101 0 . 周期的に更新される第 1の鍵と、 この第 1の鍵と異なる時期に周 期的に更新される第 2の鍵とを用意しておき、 前記第 1の鍵及び第 2の 鍵のいずれかを、 各々の鍵の更新周期より も短い切替周期で交互に切り 替えて、 電子署名用の署名鍵としての使用に供するとともに、 前記第 1の鍵の更新時期に同期して更新され当該第 1の鍵が署名鍵の ときに確認鍵となる第 3の鍵と、 前記第 2の鍵の更新時期に同期して更 新され当該第 2の鍵が署名鍵のときに確認鍵となる第 4の鍵とをペアで 公開し、 前記第 3の鍵及び第 4の鍵のペアを、 前記電子署名の確認用に 供することを特徴とする、 電子署名用の鍵管理方法。
- 111 1 . 前記第 3の鍵及び第 4の鍵に各々当該鍵の使用終了期限を付加す ることを特徴とする、 請求項 1 0記載の鍵管理方法。
- 121 2 . 前記更新周期が、 当該鍵の安全性が確保できる平均的な期間から 当該鍵をもとに生成した電子署名の有効期間を減じた期間以下であるこ とを特徴とする、 請求項 1、 3または 1 0記載の鍵管理方法。
- 131 3 . それぞれ異なる時期に周期的に更新される M個 (Mは 2以上の自 然数) の署名鍵を用意するとともに、 個々の署名鍵の更新時期に同期し て更新される M個の確認鍵を同時期に公開する段階と、 前記用意した M個の署名鍵から 1個の署名鍵を当該署名鍵の更新周期 よりも短い周期で所定順に選択して所定の署名対象データの電子署名を 行う段階と、 前記公開された M個の確認鍵のいずれかを用いて前記電子署名を確認 する段階とを含む、 電子署名用の鍵管理方法。
- 141 4 . 電子署名の署名鍵として用いる複数の鍵を保持する鍵保持手段と、 前記複数の鍵の内容をそれぞれ異なる時期に周期的に更新する鍵更新手 段と、 前記鍵更新手段でその内容が更新された鍵を所定規則に従って前 記鍵保持手段より読み出し、 読み出した鍵を前記署名鍵として、 所定の 署名対象データについての電子署名を行う署名手段と、 を備えたことを 特徴とする、 電子署名用の鍵管理システム。
- 151 5 . 電子署名の署名鍵として用いる第 1の鍵及び第 2の鍵を保持する 鍵保持手段と、 前記第 1の鍵及び第 2の鍵の内容をそれぞれ異なる時期 に同一周期で更新する鍵更新手段と、 前記鍵更新手段でその内容が更新 された鍵を所定規則に従って前記鍵保持手段より読み出し、 読み出した 第 1または第 2の鍵を前記署名鍵として、 所定の署名対象デ一夕につい ての電子署名を行う署名手段と、 を備えたことを特徴とする、 電子署名 用の鍵管理システム。
- 161 6 . 前記第 1の鍵に同期して更新され当該第 1の鍵が署名鍵であると きの確認鍵となる第 3の鍵、 及び前記第 2の鍵に同期して更新され当該 第 2の鍵が署名鍵であるときの確認鍵となる第 4の鍵を保持する鍵保持 手段を備え、 前記第 1の鍵または第 2の鍵を用いて前記電子署名を行つ たとときに前記第 3の鍵及び第 4の鍵を同時期に公開するように構成さ れていることを特徴とする、 請求項 1 5記載の鍵管理システム。
- 171 7 . 前記鍵更新手段は、 前記更新期間を 3区間に分割するとともに、 各鍵の更新を当該鍵についての分割区間よりも短い時間内に行うように 構成されていることを特徴とする、 請求項 1 4または 1 5記載の鍵管理 システム。
- 181 8 . 前記鍵更新手段は、 一つの分割区間の鍵内容を後続の分割区間に 引き継ぐ第 1のモー ドと、 直前の分割区間から後続の分割区間に移行す る際に直前の分割区間の鍵内容を互いに置換する第 2のモー ドとを選択 して適用するモ一ド選択手段とを有し、 一つの鍵について前記第 1のモ ―ドを適用しているときに他の鍵の鍵内容を更新するように構成されて いることを特徴とする、 請求項 1 7記載の鍵管理システム。
- 191 9 . 前記署名手段は、 前記複数の鍵の各々について、 更新後の最初の 分割区間の終期から最後の分割区間の始期までの間、 当該鍵を電子署名 用の署名鍵として用いるように構成されていることを特徴とする、 請求 項 1 7記載の鍵管理システム。
- 202 0 . 前記電子署名が会員間で会員認証に用いられる場合、 前記署名手 段は、 前記署名対象データに、 当該電子署名の有効期間と当該会員の署 名確認鍵を含む個人情報とを含めて前記電子署名を行うように構成され ていることを特徴とする、 請求項 1 4または 1 5記載の鍵管理システム c
- 212 1 . 前記電子署名が会員間で使用可能な電子チケッ 卜の認証に用いら れる場合、 前記署名手段は、 前記署名対象データに、 当該電子チケッ ト に基づくサービスを識別するための情報と会員の署名確認鍵とを含めて 前記電子署名を行うように構成されていることを特徴とする、 請求項 1 4または 1 5記載の鍵管理システム。
- 222 2 . 前記署名対象データに、 当該電子チケッ トに基づくサービス情報 の提供主体が管理する通番情報をさらに含めることを特徴とする、 請求 項 2 1記載の鍵管理システム。
- 232 3 . M個 (Mは 2以上の自然数) の署名鍵のいずれかによつて生成さ れた電子署名と、 前記電子署名に用いられた署名鍵を含む M個の署名鍵 の更新に同期して更新される M個の確認鍵を受領する署名受領手段と、 前記受領した電子署名を前記 M個の確認鍵のいずれかで確認する署名確 認手段とを備え、 前記署名確認手段で確認がとれた電子署名を正当と判 定することを特徴とする、 電子署名の認証システム。
- 242 4 . M個 (Mは 2以上の自然数) の署名鍵のうち異なる時期に更新さ れた署名鍵に.よって生成された複数の電子署名と、 前記複数の電子署名 に用いられた署名鍵を含む M個の署名鍵の更新に同期して更新される M 個の確認鍵を受領する署名受領手段と、 前記受領した電子署名を前記 M 個の確認鍵のいずれかで確認する署名確認手段とを備え、 前記署名確認 手段で確認がとれた電子署名を正当と判定することを特徴とする、 電子 署名の認証システム。
Independent claims24
139 paragraphs, as filed
0001Specification The key management method and system for electronic signatures Technical field
0002issue of the present invention and an electronic signature, and offer of the various services based on an electronic signature etc. -- being possible in updating the contents of the key for electronic signatures, without restricting it carries out -- Si suitable for the key management method for electronic signatures, and operation of this key management method It is related with a stem.
0003using a key with an electronic signature peculiar to a user here -- a user -- This which is the person himself/herself The electronic signature to prove is said. Background art
0004for example, meeting as which a member is specified with a membership card (or organization) it sets -- it is very important the enabling-it [ to evaluate the justification of a membership card between members ], and management top of a meeting. It is for example, a I C car about these days and a membership card. It is like Do. Electronic status which is published in the form of the medium of high security nature, and only a member can possess It is considered as a certificate or is on-rye. On A, Forgery is difficult using electronic signature art. Member registration certificate (electronic identification card) Electronic Tickett To consider it as A is tried. It is.
0005a member registration certificate and electronic Ticket etc. (in the following explanation, member registration certificate is called for convenience) Those who use not only intrinsic evaluation of the contents but also a member registration certificate a member -- it enables it to check correctly that he is the person himself/herself things are required -- is there. Therefore, the electronic signature which only the person himself/herself can generate is used conventionally, and it is the meeting. Whether the member registration certificate is forged and place of the member registration certificate It is performed that a Possession person checks whether you are the just member. The encoding technology by a public key system is usually used for an electronic signature. namely, a predetermined member registration agency -- secret key of a self-organization (signature key) using -- electron signing . -- public key corresponding to the signature key (check key) Member of All It receives and distributes. A check key is used when each member attests an electronic signature. Electronic signature is checked.
0006It is a table about it being a public key with a member registration agency just in the check lock itself. Since Information is not contained, the justification of the check key is checked separately beforehand. There is necessity.
0007With an above-mentioned public key system, it is the computational complexity in the case of a decipherment about one of the bases of safety. It has set to numerousness. Therefore, using the same signature key and a check key is continued for a long period of time. Since it leads to the fall of safety, To is [ each key and ] To update for every fixed time. To is desirable. therefore, a signature key can be updated periodically conventionally it carries out for obtaining -- the check key updated synchronizing with renewal of a signature key at that time -- each member It is common to enable it to receive.
0008as a means by which the updated check key comes to hand -- a member registration agency -- a member -- all -- It is possible to distribute a new check key to a member simultaneously. New Sure Registering Authorization key into a predetermined public key certificate issue center is also considered. the case of the latter -- a public key certificate issue center -- the data for a signature -- self Secret key (center secret key) it signs to make a public key certificate -- suitably -- this public key A certificate is distributed to a member. The distributed member and public key certificate notified beforehand Public key of a Written statement issue center (center public key) An electronic signature is checked.
0009a member acquires a public key certificate the case where a certain member wants a third party to check his own member registration certificate -- the acquired public key certificate -- the member registration certificate It attaches. Member registration new in the side which checks an electronic signature by this The justification of the public key of an organization can be easily checked now.
0010in addition -- when it must always attach to a public key certificate and an electronic signature, it is the time of obtaining and not a thing but a signature key and a check key being updated -- 1 time -- To attach It is a Be enough thing.
0011When a certain member transmits a member registration certificate on-line to other members In order to lessen data volume at the time of transmission, attachment of a public key certificate is omitted. It may carry out. In this case, it acquires by the public key certificate and member side who received. It will carry out.
0012Anyway, a check key is More the case where it is going to use a public key certificate. The member who uses a member registration certificate whenever new is carried out, or its member registration certificate The member who checks accesses a public key certificate issue center, and it is a public key certificate. It is necessary to acquire.
0013As mentioned above, one act of the followings is performed between a member registration agency and members or between members the case where a signature key is updated.
0014(1) A member registration agency distributes a new check key to all the members.
0015(2) When a certain member uses a member registration certificate first, it is Take about a public key certificate. It gains and attaches.
0016(3) Acquire a public key certificate suitably by the member side who checks an electronic signature. However, the problem of the following in the three above-mentioned forms respectively is To generateo.
0017the case where a key update process is performed in the form of (1) in a member registration agency -- all the users It was which accesses a member registration agency by making a check key new all at once into acquisition You The processing for it concentrates on the system with which the member registration agency side is equipped. There are the end and a possibility that operation of a system may become unstable. especially -- the membership Up which finishes distributing a new key to the renewal back of a key, and all the users the case where it is very large Then. -- it must stop having to stop issue of a member registration certificate
0018It is a public key while the data volume in the case of transmission and reception in the form of (2) increases. It takes the time for acquisition of a certificate too much. A public key certificate forges. Since a false center public key will be distributed if carried out, a risk opens to the public. Are dependent on the safety of the center public key in a key certificate issue center. To
0019Member registration of the member who checks an electronic signature in the form of (3), for example, a certain member, The member who checks Recording and makes a certain service offer Learn more, and a certain member After receiving a member registration certificate, a public key certificate will be acquired. therefore -- until it acquires a public key certificate and checks a member registration certificate the case where the renewal back of a key and a certain member ask for the check of a member registration certificate for the first time -- being concerned -- others -- a member and service offer must be restricted. It is instancy about acquisition of a public key certificate. In order to carry out, it is on-line to a public key certificate issue center or a member registration agency.
0020* When accessing, communication charges will increase that much.
0021Thus, whenever a signature key is updated conventionally, they are one of systems. Fault of having a bad influence on employment or a member's service use being restricted There was Synthesis.
0022The key management method [ be / the present invention and the above-mentioned fault ] for electronic signatures, and this key It aims at providing a system suitable for operation of a controlling method. The indication of an invention
0023Periodic at the key management method of the present invention which achieves the above-mentioned object, and respectively different time A plurality of keys with which the contents are updated are prepared, a plurality of above-mentioned keys -- each -- Updating cycle of a key it changes one short change cycle at a time -- changed key The use as a signature key for electronic signatures is presented. The above-mentioned change When considering it as the period of the same length about a cycle, for example, all the key, makes renewal of a key easy, it is effective.
0024other key management methods of the present invention, and respectively different time -- periodic -- the contents -- updating -- Key of To be plurality dividing the updating cycle of each key into the three sections -- the maximum -- the first and the last division section -- the reserve section, the middle division section -- signature for electronic signatures it is considered as the use section for using it as a key -- cutting the above-mentioned use section about each key so that the use section of other keys may be made to follow in time and it may not overlap mutually It changes.
0025Other key management methods of the present invention, the key of The 1 updated periodically, and the key of The 2 updated periodically at different time from the key of this The 1 are prepared, either the key of above-mentioned The 1, and the key of The 2 -- updating cycle of each key short -- it is and changes by turns a change cycle -- the use as a signature key for electronic signatures -- For While carrying out The key of The 3 which is updated synchronizing with the updating period of the key of above-mentioned The 1, and serves as a check key when the 1st key concerned is a signature key, Updating period of the key of above-mentioned The 2 The key of The 4 which synchronizes, is updated, and serves as a check key when the key of The 2 concerned is a signature key is exhibited in a pair, and it is the above-mentioned electronic office about the pair of the key of above-mentioned The 3, and the key of The 4. The check of a name is presented. In this case, it may be made to add the end term of use of the key concerned to the key of above-mentioned The 3, and the key of The 4 respectively.
0026average period which can secure the above-mentioned updating cycle and the safety of the key concerned , -- this -- this -- a key -- other key management methods of c present invention carried out below the period that reduced the term of validity of the electronic signature generated on the basis, It is updated periodically at time different, respectively. While preparing the signature key of M To (M is two or more natural numbers), Each office M check keys updated synchronizing with the updating period of a name key are exhibited at the period. Stage, M to one signature key -- More of the signature key concerned choosing in predetermined order a cycle shorter than a new cycle -- electron of the predetermined data for a signature using either the stage of signing or M check keys which were exhibited [ above-mentioned ] -- front -- The stage of checking an account electronic signature is included. [ which prepared / above-mentioned ] [ signature ]
0027A plurality of keys used as each above-mentioned key management method and a signature key to an electronic signature are held. Key holding mechanism to carry out, Periodic at the time to differ the contents of a plurality of above-mentioned keys, respectively Key renewal means to update, key with which the contents were updated by the above-mentioned key renewal means the key read and read from the above-mentioned key holding mechanism in accordance with the predetermined rule -- the above-mentioned office it is considered as a name key -- signature means which performs the electronic signature about the predetermined data for a signature It is feasible by the key managerial system for electronic signatures which it had. It is To hold about the key of The 1 and the key of The 2 which are used as a signature key to an electronic signature. The key holding mechanism, When the contents of the key of above-mentioned The 1 and the key of The 2 are differed, respectively Key renewal means updated by a same synchronization at a term, The contents are More at the above-mentioned key renewal means. The key by which new was carried out is read and read from the above-mentioned key holding mechanism in accordance with a predetermined rule. Let the key of The 1 or The 2 be the above-mentioned signature key, It is One to the predetermined data for a signature. The key managerial system provided with the signature means which performs the electronic signature to require, and the present invention It becomes suitable when enforcing a key management method.
0028it sets to such a key managerial system -- desirable the key of above-mentioned The 1 -- said -- Key of The 3 which is expected and updated and serves as a check key in case the key of The 1 concerned is a signature key, And it is updated synchronizing with the key of above-mentioned The 2, and the key of The 2 concerned is a signature key. It further has the key holding mechanism holding the key of The 4 used as the check key at the time, Above It constitutes so that the key of above-mentioned The 3 and the key of The 4 may sometimes be exhibited at the period as having performed the above-mentioned electronic signature using the 1st key or the key of The 2.
0029the present invention and the time of receiving an electronic signature and a check key again -- the electronic office concerned it can be judged whether it is what has a just name -- attestation Sis of an electronic signature Tem is provided.
0030this authentication system -- M signature keys (M is two or more natural numbers) -- someday -- or -- generated electronic signature, Signature key used for the above-mentioned electronic signature M check keys updated synchronizing with renewal of M included signature keys are received. Signature receipt means, It is either of the M above-mentioned check keys about the electronic signature received [ above-mentioned ]. Electricity in which the check was able to take the signature verifying means to check by the preparation and the above-mentioned signature verifying means Child attestation is judged to be a just electronic signature.
0031A signature receipt means and signature key updated at different time among M signature keys W
00327 being used for a plurality of electronic signatures generated as be alike, and a plurality of above-mentioned electronic signatures M check keys updated synchronizing with renewal of M signature keys containing Signature key It may constitute so that it may receive. place which was able to take the check by this authentication system Synthesis and the electronic signature concerned -- few -- Both -- it generated with the key managerial system of the present invention Things are understood easily. Brief explanation of the drawings
0033the schematic structure figure of the member system by which, as for Drawing 1, the present invention is applied, and Drawing 2 -- key etc. -- procedure explanatory view showing a delivery sequence, Drawing 3 is a renewal schedule of a key. Sequence che 1 which showed the simplest example A, Place where, as for Drawing 4, a cycle changes Sequence che 1 which showed the example of the renewal schedule of a key of Yes, Drawing 5 is a circumference. Sequence which showed the example of other renewal schedules of a key in case a term changes A 1 ♪, Drawing 6 shows the example of the renewal schedule of a key in the case of using five keys. It was sequence chart, Drawing 7 is Show about the example of composition of the key managerial system of the present invention. The information processing control part in a key managerial system of a To Plock figure and The 8A figure is full. Thin Plock figure, The 8 B figures are a detailed construction drawing of a data file device, and Drawing 9. Plock figure showing the forms of employment of a member system, The 1 Member Si of The 9 figure [ figures / 0 ] The key distribution in a stem, and procedure explanatory view of renewal of a key, The 1 The procedure explanatory view of the mutual recognition between the members in the member system of The 9 figure [ figure / 1 ], and the 1st 2 figures -- The 9 figure The procedure explanatory view of the mutual recognition between the members in a member system, and the 1st 3 figures -- other -- The Plock figure showing the forms of employment of a member system, and the 1st 4 figures, The 1st 3 figure Sequence che which showed the example of a schedule of the renewal of a key in a member system It is 1 A. The best form for inventing
0034First, the outline of the member system by which the present invention is applied is explained. A plurality of member operations in which this member system has only an operational member System, Member registration Si with whom the member registration agency which does generalization management of the member is equipped Stem, the form in which two-way communication is possible respectively, for example, the means of communication which is not illustrated, is connected for a public key certificate issue center through a public network -- attestation communication (authen ticated communicat ion) performs key distribution. however -- each -- between a member operating system and member registration systems -- place in which attestation communication is possible Synthesis and a public key certificate issue center -- it is not necessarily required.
0035A common key system, i.e., a signature key, and a check key are the same keys at attestation communication. Although a method is also employable, by the following explanation, it is the above-mentioned public key system for convenience. It is premised on using.
0036It responds to a member registration system and the member application-for-registration information from a member, and is member registration. Function to perform, It is a secret key of a self-organization to each member who registered. (that is, signature key) The function to use and to issue a member registration certificate, and function which updates a signature key periodically Public key corresponding to a signature key (that is, check key) Function generated and updated It has. The details of these functions are mentioned below.
0037A public key certificate issue center, a member registration agency name, and a member registration system are raw. The accomplished check key, other information (a signature algorithm, the term of validity of a signature, etc.) It is considered as the data for a signature, self secret key (center secret key) Electronic signature it generates -- while holding this as a public key certificate -- this public key proof It responds in quest of writing from a member, and publishes suitably.
0038direct or public key certificate from each member operating system and a member registration system a check key is acquired through a Written statement issue center -- it is what makes a member application for registration -- is there. the case where it acquires through a public key certificate issue center -- public key certificate Written statement -- public key of a public key certificate issue center (center secret key) It was to check Because -- processing is needed.
0039The necessity which shows a system configuration and its component by the following explanation is Ah. A To case is removed and it is a member operating system. "member" It is a member registration system "meeting member registration agency" A public key certificate issue center is called "center."
0040Electricity of the key performed between Drawing 1, a member registration agency, a member, and a center, and others It is the figure which expressed the situation of transfer of child information typically. Part about center CA A part and mind referred to as it not being indispensable as already stated, but using it in this example Being clever and a dashed line have shown.
0041in Drawing 1 -- "S k T l" , "S k T 2" -- the signature key before and behind updating, and "P kT l" "P k T 2" -- a check key and "S k C A" -- a center secret key and "P k C A" -- a center public key and "C E R T" -- a public key certificate and "L 1,
0042L 2" is member U l and a member registration certificate issued to U 2. In the case of issue of an electronic signature with a signature key (S k T l, S k T2), and a member registration certificate, it is a line. It is divided. the case where it is called issue of a member registration certificate by future explanation -- an electronic signature -- said -- Too
0043Delivery sequences, such as a key in Drawing 1, are as being shown in Drawing 2. as a premise, member U l, U 2, and center public key P k C A are acquired beforehand -- when a public key certificate is acquired, a public key certificate shall be checked First, signature key S k T l and check key P k T l are prepared in member registration agency T. (Step S 101) to carry out. About check key P kT l, it is in the center CA. (Step S 102, S 103) to register. A member application for registration is made to member registration agency T after [ ] acquiring public key certificate C E RT (P k T 1) from member U 1 and center C A (step S 1 04). (Step S 105) which sends out the check key (P k U 1) of self that time. member registration agency T receives this member's check key (P k U 1), and other information -- (Step S 106) which publishes member registration certificate L 1 using signature key S k T 1.
0044(Step S 107) which updates signature key S k T 1 to signature key S k T 2 after prescribed period progress and in member registration agency T. And signature key S k T after updating (Step S 108, S 109) which re-registers check key P k T 2 corresponding to 2 into center CA.
0045It is Take about member U 2 and center C A to public key certificate C E R T (P k T 2). A member application for registration is made to member registration agency T after [ ] gaining (step S 1 10).<sub>c</sub> (step S 1 1 1) which sends out check key of self (P k U 2) that time. as opposed to member registration agency T and this member application for registration -- using signature key S k T 2 Member registration certificate L 2 are published (step S 1 12). Then, member U 1 and 112 perform member registration certificate 1^1 and mutual recognition based on L 2. (step S 1 13) o
0046thus, when a key etc. are delivered, it sets -- few -- Both -- following This It enables it to carry out.
0047(1) Member Registered agency wants to update periodically signature key S k T and check key P kT, without interrupting issue of a member registration certificate.
0048(2) Member registration published between member U 1 and U 2 using signature key S k T 1 It is Wow about Recording L 1 and member registration certificate L 2 which were published using signature key S k T 2. I would like to carry out a mutual check correctly by Hlaing.
0049(3) In the case of member registration certificate L l and the check of L 2, it is additional information, for example, public key proof. There is nothing about the time and effort which sends writing C ERT (P k T) etc. to the other party. I would like to carry out.
0050Key management of the present invention performed in member registration agency T in order to solve these A method is explained below.
0051first -- as the simplest example -- one side of two keys -- the main key and another side -- auxiliary key it carries out -- it is considered as the signature key to an electronic signature, changing both in accordance with a fixed rule -- two check keys corresponding to two signature keys in the check of an electronic signature -- a pair -- business The example in the case of being is given. that is, signature key S kT and check key P k T -- it every two pieces, the But main key and an auxiliary key, -- preparing . Hereinafter, an explanation top, the main key, and an auxiliary key When it is necessary to distinguish, Check key P k T as the main key for a check and an auxiliary key is called [ signature key S k T as a main key / signature key S k T as the main key for a signature, and an auxiliary key ] the auxiliary key for a check for check key P k T as the auxiliary key for a signature, and a main key.<sub>c</sub>It is updated periodically at each key and time different, respectively. An updating cycle is Must. To does not need to be the same period, either. moreover Each key respectively -- safe -- Use Average period which can carry out for (safe usable years) It is set up. Updating circumference of a key. Term, From safe usable years of the key concerned, Electronic signature generated based on the key concerned It is made to become below the period that reduced the term of validity. This does not have the decipherment of a key. Re is because the safety of the key was made into secured Learn more by updating while there was nothing, and it is Ah. To. A setup of safe usable years, one security parameter evening of a key, and a metaphor It can carry out by adjusting the length of The key, etc. an electronic signature -- an owner -- the inside of the division section of an effect period and the beginning, and the last division section -- below the section of the shorter one It is a period of length.
0052. which is Drawing 3 and a figure showing the updating schedule of each key concretely. The main key Since it is common to a relation with an auxiliary key, and signature key S k check key P k T, it is one side. It has illustrated only about the key. here -- for convenience -- updating pair of two keys the elephant section -- both -- one year and the above-mentioned safe usable years -- five years and an updating cycle -- All four years it is considered as Partition -- one year of the first one year and the last -- an auxiliary key and two middle years -- the main key It is used by carrying out. the inside of a figure, and "a 0" , "a l" , "a 3" , "a 4" -- respectively -- Kagiuchi Capacity (value) it is .
0053the case of the example of Drawing 3 -- each key -- the use section of one key -- other keys the use section to attach is followed in time -- and it does not overlap mutually -- as -- Being. The sum of a period which is an auxiliary key is Ah at the period of the same length as the use section. The beginning about the auxiliary key after one year of the last as one year of the beginning as Ri and also a main key, one year of the last as an auxiliary key before updating, and a main key, and updating One year is the same period. this -- key management is mainly easy the sex was taken into consideration -- it is a sake. It carries out at renewal of a key, and the starting point for one year of the last which one key is the main key and continues. and it is at the end time of the use section about one key -- the updated key -- just -- It is made to make the use section of The start.
0054It differs from the combination of the contents of the main key in each section for updating, and the auxiliary key, and the combination in other sections. That is, a certain division for updating In between, in a 0, a 1, and other sections for updating, they are a l, a O or a 1, a 2 and - - -, and intermediary To have.
0055the case where the above-mentioned renewal of a key is made about key for a signature (S k T) -- it it synchronizes -- corresponding key for a check (P k T) is updated. an electronic signature -- raw -- the main key for a signature is used for issue of Formation, i.e., a member registration certificate, -- Sure of an electronic signature a private seal, i.e., the check of a member registration certificate, -- pair of the main key for a check, and the auxiliary key for a check It carries out by either. The use as a key for a signature is possible irrespective of each of each key, and the above-mentioned change.
0056renewal of a key is made to the above-mentioned schedule -- it was published using the main key for a signature One year, it is got blocked with the term of validity of a member registration certificate, and the longest, and will be the one section by them. Therefore, it is published in being above, and what was published in them and the same section the case where two members Ul and U 2 made check Learn more mutual member registration certificate L 1 and L 2 and the section which got mixed up only one piece. It is published in the section distant two pieces. A Members registration certificate and either become that in which the term of validity went out. Effective A member, and the main key for a check and for a check By using one of the auxiliary keys, the member registration certificate which other members possess is checked. It can carry out. [ that possess two member registration certificates with which a period overlaps ]
0057the end term of use of the key concerned is added to the main key for a check, and the auxiliary key for a check -- the time of a member checking other members' member registration certificate -- this end term of use -- fault It is also possible to make it not use it for a check about Key. It is a line by decoding the key over which the end term of use passed, if it does in this way. It can respond now also to the breaking unjust alteration easily.
0058At the example of Drawing 3, all of the updating cycle of two keys will be Buddy at intervals of four years. Like and the updating cycle of two keys A and B which It was shows in The 4 figure and The 5 figure are That. Even when not the same in Each, it is possible to enforce the key management method of the present invention. It is.
0059For example, it is the circumference although the updating cycle of keys A and B will be cycle-like like - -' in the example of the renewal schedule of a key of Drawing 4 for five years, six years, five years, and six years. A term changes. the section where one key is used as a main key in the case of this example the point that the key of another side turns into an auxiliary key -- a figure -- although it is the same as that of the example of 3 -- about each key It differs in that is not necessarily constant. [ of the use section ] That is, place for two years in five years If there is also Synthesis, it may be three years in five years. However, it is one side also this case. It updates, while the key of another side is the main key and continues a key, In the key of another side It is [ making it make the use section about key after updating (till then auxiliary key) start, when the use section to attach is completed, and ] smoothly about renewal of a key. It can carry out now. safe usable years about each key The above-mentioned updating cycle long -- it carries out -- and the term of validity of an electronic signature -- the main key for a signature As -- considering it as one year or less from the time of becoming usable -- use top of a key Security It is securable. the check key in this case, and the object for a check -- main -- it opens to the public in the pair of a key and the auxiliary key for a check -- a check person -- either of the check keys of a pair It uses and enables it to check an electronic signature.
0060the example of the renewal schedule of a key of Drawing 5 -- the updating cycle of key A -- five years, six years, five years, six years, and .. a cycle changes like five years, five years, six years, six years, and - - * in - and the updating cycle of key B. The same rule as the above is followed also in this case, and it is renewal of a key. Drawing 3 and the same effect as the example of The 4 figure are expectable by changing a deed, the main key, and an auxiliary key by turns.
0061When it prepares the object for a signature, and two keys for a check at a time in an above-mentioned example It is To implement even if the key management method of the present invention and a key are three or more pieces, although it is an example. To is possible. For example, renewal Schedule of a key at the time of using five keys -- The example of Le is shown in The 6 figure.
0062the example of Drawing 6 -- for convenience -- five key A*E -- all -- the cycles of five years -- updating -- Re -- he is trying to change to the main key annually, respectively That is, assistance It has been use section (one year) order two years during the period used as a key, respectively. If the safe usable years of each key A* E are made into seven years or more, it will be the term of validity of an electronic signature. It can be considered as two years at the maximum, and is an example of Drawing 3. (when there are two keys) It can be made longer than the term of validity (one year or less).
0063Check after generating an electronic signature the case of the example of the renewal schedule of a key of Drawing 6 It is set to five by the check key opened to for at the period, and the maximum. These five check keys The point that an electronic signature can be checked using either is an example of Drawing 3. It is the same as that of a case. the updating cycle of each key A*E -- not necessarily -- the same length Do not carry out. Both -- it is a good thing and as above-mentioned.
0064Next, the key managerial system for enforcing the above-mentioned key management method is explained. It carries out.
0065Each organization of this key managerial system and a member system, for example, the above-mentioned meeting, Independent to member Registered agency, it distributes to it, and prepares for it, It is Show to Drawing 7. To, arithmetic processing unit 1, display output device 2, data I/O device 3, communication network connection device 4, information processing control part 5, data file device 6, time management It has device 7 and key generating device 8.
0066A recorded on arithmetic processing unit 1, the external storage which is not illustrated, or R O M In a kind of Computer evening which realizes a necessary function by performing log rum It is Visualize about the processing result by There, display output device 2, and arithmetic processing unit 1 grade. It is a To display device. Data I/O device 3, a mouse, other Po In tee Device 1 Vo 1 Do, etc. an external storage, and these The An intention face of a between is included. Communication interface apparatus 4 and various members The communication performed between centers C A is controlled. Time management devices 7 are a timer, * generating device 8, and a device that generates a key.
0067Information processing control part 5, For example, arithmetic processing unit 1 reads the above-mentioned program. It is a functional block which is crowded and is formed by performing. As [ show / in Drawing 8 (a) ] Moh Opportunity grant treating part which gives the opportunity of renewal of Do 5 1, Updating process part which performs renewal of A 1 Do. 5 2, The main key - auxiliary key is replaced. Substitute treating part 5 3, The main key. Substitution treating part which replaces Hiroshi Kagiuchi of - auxiliary key 5 4, Generation part which performs an electronic signature 5 5, An electronic signature and the main key Transmission processing part which transmits - auxiliary key to the exterior It has 5 6.
0068Opportunity grant treating part 5 The division section of the succession to Hiroshi Kagiuchi of the one division section in 1 It shifts to the following division section from mode A to inherit and the last division section. Opportunity for applying alternatively Moh K B which replaces Hiroshi Kagiuchi mutually in the case It outputs.
0069one year passes in the example shown in the renewal schedule of a key of Drawing 3 -- the 2nd year the time of shifting -- Mode B is applied -- Kagiuchi Capacity a 0 and a 1 -- main key and auxiliary key It is replaced mutually. the time of the 2nd year passing and shifting in 3rd -- Mode A is applied -- although Kagiuchi Capacity a 1 of the main key is succeeded, Kagiuchi Capacity a 0 of an auxiliary key is updated by "a 2." Mode A and mode B are applied periodically. Following it accumulates, by explanation, they are mode A back and A 1. Cycle until a cycle until Do B is applied is applied to cycle A and mode B back and mode A Cycle B may be called.
0070updating process part 5 2 and above-mentioned A-- a Do change is performed -- the present cycle is expressed Moh recording Defragmentation (cycle A/B) on data file device 6 -- it comes -- future Moh The time of renewal of Do (at the time of a cycle change) enabling it to refer to it -- To. Exchange treating part 5 It is the main key about each of 3, a signature key, and a check key. W 9
007116 an auxiliary key is replaced -- substitution treating part 5 New in 4 and Hiroshi Kagiuchi It replaces by a thing. generation part 5 5 and the main key for a signature are used -- signature . specification performs the electronic signature of the data for a signature carried out for every generation demand. data file device 6 -- The 8 figure -- as [ show / in (b) ] -- Mode Flag 6 1 and the main key 6 for a check 2 and the main key 6 for a signature 3 and auxiliary key 6 for a check 4 and the assistant one for a signature Assistant key 6 5 is stored, respectively. member registration agency T -- the main key 6 for a check 2 and auxiliary key 6 for a check it does not call at holding 4 and center C A -- direct member It is because a check key may be distributed.
0072Next, the forms of employment of the member system adapting the above-mentioned key managerial system are explained. It carries out.
0073as [ show / in the schematic diagram of Drawing 9 / this member system ] -- he is the member, respectively A certain Ticket marketing board B, user member U, and purveyor-of-service I -- communications network It leads, and is connected and constituted by member registration agency T. Key management System of the present invention Beam is a style so that other members may have simultaneously, although prepared for member registration agency T. It may accomplish. each member -- few -- Both -- the attestation communication using encoding technology is possible it is -- it is considered as a thing.
0074The employment procedure of this member system is the 1st. 0 figure * The 1 It is as being shown in 2 figure. Aho
0075(1) Member registration
0076Drawing 1 refer to 0 -- member registration agency T and the day which updates a key first -- To set up (for example, January [ every year ] 1). Main key P k T m 6 for a check 2, for a signature Main key S k T m 6 3, auxiliary key P k T s 6 for a check 4 and auxiliary key S k T s 6 for a signature 5 is prepared -- mode flag 6 (Step S 2 0 1) 0 which sets 1 as "cycle A"
0077It makes and checks user member U, its signature key S k U, and check key P k U. Member application-for-registration information which consists of member information, including key P k U, a user name, etc., I d U W
007817 (step S 2 0 2) which transmits to The member registration agency T.
0079Member registration agency At tau, it is a check key from this transmitted member application-for-registration information. rho k U is extracted and it is generation part 5 of a key managerial system. Let what attached term-of-validity E 1 u to this be one De evening for a signature by 5. And this data for a signature is signed using the main key S k T m for a signature, and member registration certificate L u is issued. Then, transmission processing part 5 By 6, it is term-of-validity E 1 u about member registration certificate L u, Check key P k U, member information I d U, and the above-mentioned main key P k T m 6 for a check 2 and auxiliary key P k T s 6 for a check It transmits to 4 and user member U. (step S 2 0 3) o
0080enabling the receptionist of the claim of member registration agency T and member registration always it can do -- effective member registration certificate L u is issued for one year after the day of member registration. Ticket marketing board B and purveyor-of-service I -- it is made the same -- member registration it carries out -- issue of member registration certificate L b and L i is received.
0081if day of the 1st renewal of a key (January 1) comes -- member registration agency T and Moh refer to Defragmentation 61 -- updating process part 5 the cycle A present by 2 -- Sai (step S 2 0 4) updated to Kulu B. Then, exchange treating part 5 (step S 2 0 5) which replaces the main key and an auxiliary key by 3.
0082Day of the 2nd renewal of a key (next year January 1) When it comes, they are member registration agency T and updating process part 5. (Step S 2 0 6) which updates the present cycle B in cycle A by 2. Then, the new key generated with key generating device 8 is replaced. Treating part 5 (step S 2 0 7) saved as an auxiliary key by 4. This is updated. While [ four years ] being a cycle, it already repeats 1 cycle respectively (step S 2 0 8*S 2 1 1).
0083User member U, Tickett For the check to A marketing board B and purveyor-of-service I Distribution of a key (the main key P k T m for a check six 2 and auxiliary key P k T s for a check six 4 transmission) It is desirable to include processing by off-line for safety. For example It delivers by hand by meeting, or they are mailing and A facsimile. Methods, such as sending by Li etc. It will become safe if it uses together. It is [ case where it carries out only on-line ] some. It is necessary to perform attestation communication.
0084Since only one piece is contained, the check key which is a public key the case where the public key certificate of center C A is used at the usual public key certificate is a former of public key proof. There are a method corrects Tut and it makes it include two public keys, and a method of using two public key certificates. By this, it is a public key certificate of center C A. It can use.
0085(2) Registration of service offer information
0086the 1st refer to the 1 figure -- purveyor-of-service I, Service offer guarantee information C, Tickett Check key P k B of A marketing board B Term of validity E c of service, Tickett It is Tickett about item information issue serial number R c of ♪, member information I d I, other service-contents , amount of money, etc. and as occasion demands. (step S 3 0 1) which transmits to ♪ sales organization B. This and The 1 screw donor I power Tickett sent ex post Truth of ♪ It is the information which enables it to check an imitation ex post. It is Tickett beforehand about such information. It registers with A marketing board B. Tickett according to user member U at things ♪ Double use and Tickett It is service offer when A marketing board B carries out injustice. Me that detection becomes possible in front There is Lily.
0087(3) Tickett Sale of ♪
0088User member U and Tickett Between A marketing boards B, it becomes the following procedures the case where member registration certificate L u and L b are checked mutually.
0089user member U -- first -- member registration certificate L u, check key P k U, term-of-validity E 1 U, and challenge (authentication request) Tickett It transmits to A marketing board B (step S 3 0 2). Here, it is Tea. A range, and encoding technology and signature art It is used as an example.
0090Tickett Member registration certificate L sent by A marketing board B and user member U (step S3 0 3) which tries u etc. on both main key P k T m and auxiliary key P k T s for a check for a check which he is keeping. User member's U member registration certificate L u, and Tickett Member registration certificate Lb of A marketing board B and which were published previously. Even if it is a thing, it may be a case where member registration agency T updates a signature key between previous issue and next issue again. Both can perform the check of a signature with the check key of which or one of the two, as long as it is effective member registration certificate L u and L b. saying for taking a public key certificate in the public key certificate issue center C A Or -- user from -- it is not necessary to transmit The check of a signature can be performed with check key of either one of the two. It progresses to It was and others and the next processing. the case where it is not able to check -- member registration certificate L u -- an owner -- since it means not being an effect -- Tickett (step S 3 0 4 : No, S 3 0 5) which refuses sale of ♪.
0091Next, Ticket marketing board B and its own member registration certificate L b, Check key P k B, term-of-validity E1 B, and Chia sent by user member U As opposed to a range The and Tickett He is a user about the signature generated using signature key S k B of A marketing board B. (step S 3 0 6) which transmits to member U.
0092User member U and Tickett (step S 30 7) which tries member registration certificate L b sent from A marketing board B on both main key P k T m and auxiliary key P k T s for a check for a check which he is keeping. With check key of either one of the two, it is a signature. If a check is possible, it will progress to the next processing. the case where it is not able to check -- member registration proof b means not being effective -- false Tickett it is ♪ sales organization -- good (step S 3 0 7 : No and S 3 08) o which cancels purchase since there is Potential
0093Chia which he sent when the check of member registration certificate L b was completed A range is received. Tickett It is Tickett about the signature of A marketing board B. It checks with check key P k B of A marketing board B. It carries out. When it is able to check, it progresses to the next. Check key P k B is Tickett. Sales It is Tickett that it is a just public key of Sales organization B. Member registration of A marketing board B W
009420 It is checked by checking proof L b.
0095User member U and Tickett to purchase It is Tickett to information H on ♪. Information and Chi of Ke List which A marketing board B generated User member's U signature key to a range The generated electronic signature is attached, Tickett it transmits to A marketing board B -- Chick which applies for the purchase of At (step S 3 0 9).
0096Check sent by A marketing board B and user member U Information (Step S 3 1 0) which checks the electronic signature with user member's U check key P k U. Tickett which he follows to the next processing when the check of Information and its electronic signature is completed (step S 3 1 1 : Yes). Since it means that data is altered the case where it is not able to check, during the power in which things other than the just possessor of member registration certificate L u are proposing to purchase, and communication, it is Tickett. (step S 3 1 1 : No, S 3 1 2) which refuses sale of ♪.
0097Ticket marketing board B and user member's U check key P k U Service offer guarantee information C, term of validity E c, issue serial number R c, member information I d I, and Tickett Ticket selling serial number R f of A marketing board B, and Tickett let what united A term of validity E f be data for a signature -- Ticket signature information F -- Generate. here -- Ticket signature information F and Tickett it is to a separate value for every A -- it can kick since there is nothing if it is The -- one De evening for a signature -- Ticket sales serial number R f is included -- as -- It carries out. Then, member registration certificate L i of purveyor-of-service I, check key P k I and term-of-validity E 1 i, and Ticket sales serial number R f and Ticket term of validity E f and ticket signature information F are transmitted to user member U. (step S 3 1 3) o
0098User member U and member registration certificate L i of purveyor-of-service I are Check(ed) with check key P kT of member registration agency T. case where the check of member registration certificate L i is completed the above-mentioned service offer guarantee information C is checked with check key P k I of purveyor-of-service I -- further -- Tickett check key P k B of A marketing board B -- the above-mentioned Ticket office Name information F is checked. Tickett (Step S 314) which makes payment of fee $ when the check of A signature information F etc. is completed.
0099(4) Tickett Use of ♪
0100Drawing 1 refer to 2 -- user member U, member registration certificate L u, check key P kU, term-of-validity E 1 u, and Tea (Step S 401) which transmits a range to The 1 screw donor I.
0101Purveyor-of-service I, Tickett It is user member's U meeting like A marketing board B. (Step S 402) which checks member registration certificate L u. the case where it is able to check -- The -- screw donor's I member registration certificate Li, and Chia the electronic signature to a range -- and -- Tea (step S 403 : Yes, S 4 05) 0 which transmits a range to user member U
0102user member U checks member registration certificate L i of purveyor-of-service I -- Chare (Step S 406) which checks the electronic signature of Nanji. Case (Step S 407 : Yes) where it is able to check, and user member U Ticket ♪ signature information F and sir It is its own signature key what united the challenge with screw donor's I check key, User signature information S, member registration certificate L b, check key P k B, term-of-validity E 1 b, Ticket ♪ signature information F, Ticket sales serial number R f, term of validity E f, service offer guarantee information C, issue serial number R c, term of validity E c, electron of member information I d I A signature is generated, It transmits to purveyor-of-service I. (step S 407:Ye s S 409) o
0103Purveyor-of-service I, service offer guarantee information C, Ticket signature information F, user signature information S, Ticket expiration date E f, E c, and Check is already. It is checked whether Learn more is carried out. Its service is given the case where it is able to check. (Step S 410) which starts offer. They are service offer and an application the case where the result of the mutual recognition of purveyor-of-service I and user member U is negative. (step S 403 : No, S 404, S 407 : No, S 4 0 8) o refused
0104(5) Tickett Transfer of A
0105It is Tickett by exchanging as follows among members. Transfer of A Carrying out is also possible.
0106member U 1 and Tickett the signature which shows transfer proof is attached to A -- member U 2 -- hand over. member U 2 and Tickett c The 1 screw donor I who transmits A and transfer proof to purveyor-of-service I -- Ticket and transfer proof are checked -- member U 2 -- The One screw is provided.
0107it sets, when employing a member system -- user member U shows Members registration certificate, it is [ whether it is what was published from member registration agency T, and ] -- it is whether [ that an electronic signature is just ] -- the above-mentioned Ticket marketing board B and Ticket offer There are being different from person I and a case where it will be necessary to check. In this case, the present invention The justification of the member registration certificate concerned is checked using an authentication system.
0108This authentication system, an electronic signature, and a plurality of check keys are received, and they are those contents. Check treating part of The 1 to check, The received electronic signature is in a plurality of check keys. It has a check treating part of The 2 checked by whether it is a gap, and checks by the 2nd check treating part. It judges with a thing with the just electronic signature the case where it is able to take. These checks A treating part, for example, the Computer evening, reads a predetermined program, and it is To execute. It is functional Plock formed within the one Computer evening concerned of To. The received electronic signature and the signature key updated at different time It may be generated.
0109next, the 1st refer to the 3 figures -- other examples of composition of a member system are shown.
0110Although fundamental operation is the same as that of the member system of composition of having been shown in The 9 figure, it is Tickett besides member registration agency T about the key managerial system of the present invention here. It has provided in A marketing board B. Member System of composition of having been shown in Drawing 9 At Beam, it is Tickett. The keys of A marketing board B are 2 sets of keys here, although it is 1 set. It has and charges issue of member registration certificate L.
0111namely, Ticket marketing board B -- Tickett the main key and two auxiliary keys prepare signature key for As (S k B m /S k B s : below ., Ticket signature key) -- this -- for example, a figure -- it updates to a key management schedule as shown in 3 -- as -- It carries out.
0112the updating opportunity of member registration certificate L, and Tickett the updating opportunity of a A signature key -- the same It may be the same although there is no necessity. However, Tickett A A signature key and member registration It is the same as the term of validity of proof L, or it is required to have the term of validity beyond it. The length here same at the updating opportunity of member registration certificate L as the member registration certificate L concerned Tickett with the term of validity A A signature key is used. April 1 [ for example, ] -- Member registration it will record -- suppose that it updates annually.
0113Tickett the time of term-of-validity E 1 b of member registration certificate L b of A marketing board B going out -- check key P k B m/P k B s of ticket selling organization B at that time -- member registration it sends to organization T -- I have new member registration certificate L b issued
0114purveyor-of-service I and service offer guarantee information C -- Tickett it carries out an opportunity [ depositing with A marketing board B ] -- Tickett Member registration certificate L b of A marketing board B, and check key P k B m A P k B s and term-of-validity E 1 b come to hand. The 1 screw Offer It may be one year or less after term of validity E c of Warranty information C, for example, issue. Member registration If the signature of Recording L b is checked, member registration certificate L b, check key P k B m /P k B s, and term-of-validity E 1 b are kept.
0115user member U and 'Tickett it carries out an opportunity [ the purchase of A ] -- Tickett Member registration certificate L b of A marketing board B comes to hand. Tickett which came to hand here Meeting of A marketing board B Member registration certificate L b and Tickett It is Tickett that it becomes unnecessary to keep it the check back of A. Me at the time of using the key managerial system of the present invention for A marketing board B It is one of the Lily.
0116User member U and Check is transmitted to purveyor-of-service I. Here Service offer guarantee information C, Ticket signature information F, user signature information S, and member registration certificate L u, Term of validity E c, issue serial number R c, member information I d I, Chick It is Sending about Sales serial number R f, term of validity Ef, check key P k U, and term-of-validity E 1 u. Trust will be carried out.
0117The 1 screw donor I and Tickett Member registration certificate L b of A marketing board B comes to hand. After It was, User member U is Tickett. Until the signature of ♪ sales organization B comes to hand Also by the case where renewal of the key of purveyor-of-service I is performed, it is Tickett. ♪ vending machine It is one of the main keys or auxiliary keys of Seki B, it comes out to check member registration certificate L b Since it cuts, it is not necessary to perform processing which acquires a key again.
0118Next, the renewal schedule of a key is explained.
0119A key shall be updated [ member registration agency T and ] also in this case annually. however As [ mentioned / above ] Member registration agency T -- valid for five years One key It generates every two years. This one key, The section of the beginning and the last, In other words 1 year It is used as an auxiliary key in the section for the 4th year, and is the meantime. The two sections, It is sand. Walk The 2nd year It is used as a main key in the section for the 3rd year. At this time, it is member registration. The term of validity of a proof is one year or less than one year. Tickett Thailand where A marketing board B differs from member registration agency T A key is updated by ming. At this time A cycle will be made into same every year. Tickett The term of validity of A signature information F is one year or less than one year.
0120member registration agency T and Ticket sales organizationB -- this will be registered into center CA if a key is updated, respectively. It is for considering it as substitution of this and attestation communication, and is Ah. To. Thus, they are user member U and service the case where it registers to center C A. Donor I Renewal of member registration certificate L, registration of service offer guarantee information C, and Tickett Ignited by the purchase of A signature information F, they are member registration agency T and Tickett. A vending machine The key of Seki B can be acquired now from center C A.
0121Hereinafter, it is The 1 about the situation of the actual renewal of a key. It explains according to the example of a schedule of 4 figure. It carries out.
0122Here, they are purveyor-of-service I and Chi at the time of making a deposit of The 1 screw offer guarantee information C. Kettle Between A marketing boards B, Tickett They are user member U and Tickett at the time of the purchase of ♪. Between A marketing boards B, the time of ticket use -- user member U and service offer The member registration certificate which member registration agency T issued among persons I, respectively is a check. it comes -- and Tickett the time of use of ♪ -- Check which A marketing board B published Let it be the main point to be able to check ♪ signature information F.
0123The 1st Suppose that the contents of check key P k T 1 in the first section (the 1st year) and the main key are [ t o and an auxiliary key ] t 1 in 4 figures. check key P k T 2, the main key, and auxiliary key in the 2nd section are replaced -- the main key is set to t 1 and an auxiliary key is set to t 0. Check key P k T 3 in the 3rd section and the main key are Up of t 1. Up and an auxiliary key are set to contents t 2 generated newly.
0124It is published in member registration certificate L 1 of user member U, and the 3rd section. Concrete It generates with the main key of signature key S k T 3 corresponding to main key t 1 of check key P k T 3 in the section concerned in a target. This time, he is the Lord of check key P k T 3 in the section concerned. Key t 1 and auxiliary key t 2 are distributed to user member U. It is published in member registration certificate L 2 and the 4th section. Being concrete and the check key in the section concerned? * : it generates with the main key of signature key S k T 4 corresponding to the main key 2 of dish 4. At this time, main key t 2 of check key P k T 3 and auxiliary key t 1 supply user member U widely. It is carried out.
0125member registration certificate L 1 of purveyor-of-service I, and L -- 2, L 3, and .. . and Ticket member registration certificate L 1 of marketing board B, L 2, and L -- the same, even if attached to 3 and ... Because -- To .
0126However, it is Tickett here. The key of ♪ sales organization B is also Key change with the key management method of the present invention. new is performed. Drawing 1 It is Tickett at 4. The portions of P k B 1 indicated beside A marketing board B, P k B 2, and .. , and this are meant. Tickett It is member Registered agency about the check key by which A marketing board B, the main key, and the auxiliary key were set. I have sending and a member registration certificate issued.
0127next, a profit -- the attestation between * person member U and purveyor-of-service I -- explain
0128Member registration certificate L 2 of user member U are published with the signature key of t 1. member registration certificate L of The 1 screw donor I with the term of validity which overlaps with it -- since 2 acquires main key t 1 and auxiliary key t2 at the time of issue -- user member's U meeting member registration certificate L -- 1 can be checked by main key t 1. Service offer Since member registration certificate L 2 of person I, main key t 2, and auxiliary key t 1 are acquired, user member's U contents of a signature of member registration certificate L 1 are shortly checked by auxiliary t 1. Things are made.
0129On the contrary, since main key t 1 and auxiliary key t 2 are acquired at the time of user member U and issue of member registration certificate L 1, Member registration certificate L 1 of purveyor-of-service I currently generated by main key t 1 and member registration certificate L 2 which are generated with the main key t2 are checked. It can carry out. User member U and since main key t 2 and auxiliary key t 1 are acquired again at the time of member registration certificate L 2, member registration certificate L 2 of purveyor-of-service I can be checked in main key t 2.
0130Purveyor-of-service I and Ticket marketing board B, user member U, and Ticket sales It can check similarly about Sales organizationB.
0131thus, issue of a member registration certificate can be performed at any time -- again -- The One screw donor I and Ticket marketing board B, user member U, and Ticket vending machine Between Seki B, and user members U and purveyor-of-service I, Mutual member registration As long as proof L is effective, it is a partner's member registration in every combination always. Proof L can be checked with key (P k T n) which he has. Next, Tickett From A signature information F, it explains in detail.
0132Tickett In A marketing board B, it is considered as the thing of check key P k B 1, check key P k B 2, and ... which is carrying out renewal of a key at order. That is, the above-mentioned member Registered agency To the rule same with updating with check key P k T l, check key P k T 2, and ... Therefore, renewal of a key is performed.
0133It is Tickett about purveyor-of-service I and service offer guarantee information C. It registers with A marketing board B. it carries out an opportunity [ this ] -- Tickett Main key and auxiliary key of A marketing board B It receives. Service offer guarantee information C, Tickett The term of validity of A signature information F, for example, one year, is used.
0134User member U is Tickett. It is Tickett the case where A is purchased. It is Tickett with A marketing board B and the signature key of main key b 1 of check key P k B3. It is Generate about A signature information F-1. To. On the other hand, it is Tickett about purveyor-of-service I and service offer guarantee information C. Sales When registering with Sales organization B, Tickett (because, the term of validity of service Offer certificate information C, one year) which has obtained one of check key P k B 2 power [ of A marketing board B ], and check key P k B 3. User member U is Tickett. Before using A signature information F-1, check key P k B 4 may be obtained. It is absent. Even if it uses Re, it is purveyor-of-service I, user member U -- Tickett when using A signature information F-1, it has check key P k B 2, check key P k B 3, or check key P k B 4 -- either the main key or an auxiliary key -- b 1 -- ON One For a ing reason, a signature check can be performed.
0135User Member is Tickett. The 2nd example in the case of purchasing A is given. To. In this case, Ticket marketing board B and office of main key b 2 of check key P k B 4 With a name key, it is Tickett. A signature information F 2 are generated. On the other hand, it is Tickett about purveyor-of-service I and service offer guarantee information C. It is Tickett when registering with A marketing board B. One of check key P k B 3 power [ of A marketing board B ] and check key P k B4 comes to hand. ing. User member U is Tickett. It is Sure before using A signature information F-1. Authorization key P k B 5 may be obtained. In any case, its service is given. Donor I user member U -- Tickett Time of using A signature information F-1 Have check key P k B 3, check key P k B 4, or check key P k B 5. it is -- since b 2 are contained in either the main key or an auxiliary key -- Sure of a signature A private seal can be done. .
0136thus, Tickett updating the signature key of A marketing board B -- Tickett signature F which A marketing board B publishes to user member U -- purveyor-of-service I -- it can check at any time. Industrial applicability
0137With the present invention, Multiple keys used for a signature key are prepared, It is 1 about a key of these. While updating by a ruler rule A check key is also synchronized with renewal of these keys, and it is More. It carries out new and made it open to the public., The sake, Issue of an electronic signature is stopped in the case of updating. It is sufficient, It becomes unnecessary to restrict use of service after renewal of a key.
0138A key is ordered on-line at the time of attestation, or a public key certificate is acquired. It becomes unnecessary to carry out.
0139It is off-line about the mutual recognition of the electronic signature published at different time. It also becomes possible to carry out.
14 sheets
Sheet 1 Sheet 2 Sheet 3 Sheet 4 Sheet 5 Sheet 6 Sheet 7 Sheet 8 Sheet 9 Sheet 10 Sheet 11 Sheet 12 Sheet 13 Sheet 14
Every citation, both ways
| Document | Relation | Office | Category | Cited during |
|---|---|---|---|---|
| JPS6026387A | Cites | Japan | Y | International search |
| JPS6095475A | Cites | Japan | Y | International search |
| See also references of EP 0898260A4 | Non-patent | – | – | International search |
9 members in 5 offices
Members9
| Document | Office | Kind | |
|---|---|---|---|
| WO9832113A1This record | World Intellectual Property Organization (WIPO) | A1 | |
| JPH10260630A | Japan | A | |
| EP0898260A1 | European Patent Office (EPO) | A1 | |
| US6377692B1 | United States of America | B1 | |
| EP0898260A4 | European Patent Office (EPO) | A4 | |
| JP3640785B2 | Japan | B2 | |
| EP0898260B1 | European Patent Office (EPO) | B1 | |
| DE69835924D1 | Germany | D1 | |
| DE69835924T2 | Germany | T2 |
7 legal events, as the office reported them to INPADOC
Over the term
Point at a mark for the eventEvents
| Event | Code | |
|---|---|---|
| Wipo information: grant in national officeWWG | WWG | |
| Wipo information: entry into national phaseWWE | WWE | |
| Wipo information: published in national officeWWP | WWP | |
| Ep: the epo has been informed by wipo that ep was designated in this application121 | 121 | |
| Wipo information: entry into national phaseWWE | WWE | |
| Designated statesAK | AK | |
| Designated countries for regional patentsAL | AL |
Numbers
- Publication
- 98/32113
- Application
- 9800142
Titles2
- English
- METHOD AND SYSTEM FOR CONTROLLING KEY FOR ELECTRONIC SIGNATURE
- French
- PROCEDE ET SYSTEME DE CONTROLE DE CLE POUR SIGNATURE ELECTRONIQUE
Classification
- CPC, 2
- H04L9/3247
- H04L9/16
- IPC, 1
- H04L9 32
Designated states20
- Regional, 17
- Austria
- Belgium
- Switzerland
- Germany
- Denmark
- Spain
- Finland
- France
- United Kingdom
- Greece
- Ireland
- Italy
- Luxembourg
- Monaco
- Netherlands (Kingdom of the)
- Portugal
- Sweden
- National, 3
- Republic of Korea
- Singapore
- United States of America