AUTHENTICATION SYSTEM

To provide an authentication system configured to easily manage a key and determine authenticity of a transmitting user or a receiving user.SOLUTION: An authentication system 1 includes a node of a user A which transmits a message, a node of a user B which receives the message, and a central managem...

Full description

Saved in:
Bibliographic Details
Main Authors FUJIWARA MIKIO, KATO TAKESHI, SASAKI MASAHIDE, TSURUMARU TOYOHIRO
Format Patent
LanguageEnglish
Japanese
Published 14.05.2024
Subjects
Online AccessGet full text

Cover

Loading…
More Information
Summary:To provide an authentication system configured to easily manage a key and determine authenticity of a transmitting user or a receiving user.SOLUTION: An authentication system 1 includes a node of a user A which transmits a message, a node of a user B which receives the message, and a central management node which performs counterparty authentication and message authentication between the users, which are provided in a quantum key distribution network. A transmission node 2 includes a counterparty authentication request unit, a secret data transmission unit which transmits secret data encrypted with OTP, and a message authentication unit which performs message authentication. A management node 3 includes: a secret communication control unit; a secret data receiving unit which receives and decrypts the encrypted secret data; a share transmission unit which transmits a share of a receiving user encrypted with OTP to a receiving node; and a message authentication unit which performs message authentication. The receiving node 4 includes a counterparty authentication processing unit, a share receiving unit which decrypts the encrypted share, and a message authentication unit which performs message authentication.SELECTED DRAWING: Figure 1 【課題】鍵の管理が容易で、送信ユーザ又は受信ユーザの真偽を判定する認証システムを提供する。【解決手段】認証システム1は、メッセージを送信するユーザAのノード、メッセージを受信するユーザBのノード及びユーザ間の相手認証及びメッセージ認証を行う中央管理ノードを量子鍵配送ネットワーク内に備える。送信ノード2は、相手認証要求部と、OTPで秘密データを暗号化して送信する秘密データ送信部及びメッセージ認証を行うメッセージ認証部を備える。管理ノード3は、秘匿通信制御部、暗号化された秘密データを受信して復号する秘密データ受信部、閾値秘密分散を用いて、OTPで受信ユーザのシェアを暗号化して受信ノードに送信するシェア送信部及びメッセージ認証を行うメッセージ認証部を備える。受信ノード4は、相手認証処理部、暗号化されたシェアを復号するシェア受信部及びメッセージ認証を行うメッセージ認証部を備える。【選択図】図1
Bibliography:Application Number: JP20220173274