AUTHENTICATION SYSTEM
To provide an authentication system configured to easily manage a key and determine authenticity of a transmitting user or a receiving user.SOLUTION: An authentication system 1 includes a node of a user A which transmits a message, a node of a user B which receives the message, and a central managem...
Saved in:
Main Authors | , , , |
---|---|
Format | Patent |
Language | English Japanese |
Published |
14.05.2024
|
Subjects | |
Online Access | Get full text |
Cover
Loading…
Summary: | To provide an authentication system configured to easily manage a key and determine authenticity of a transmitting user or a receiving user.SOLUTION: An authentication system 1 includes a node of a user A which transmits a message, a node of a user B which receives the message, and a central management node which performs counterparty authentication and message authentication between the users, which are provided in a quantum key distribution network. A transmission node 2 includes a counterparty authentication request unit, a secret data transmission unit which transmits secret data encrypted with OTP, and a message authentication unit which performs message authentication. A management node 3 includes: a secret communication control unit; a secret data receiving unit which receives and decrypts the encrypted secret data; a share transmission unit which transmits a share of a receiving user encrypted with OTP to a receiving node; and a message authentication unit which performs message authentication. The receiving node 4 includes a counterparty authentication processing unit, a share receiving unit which decrypts the encrypted share, and a message authentication unit which performs message authentication.SELECTED DRAWING: Figure 1
【課題】鍵の管理が容易で、送信ユーザ又は受信ユーザの真偽を判定する認証システムを提供する。【解決手段】認証システム1は、メッセージを送信するユーザAのノード、メッセージを受信するユーザBのノード及びユーザ間の相手認証及びメッセージ認証を行う中央管理ノードを量子鍵配送ネットワーク内に備える。送信ノード2は、相手認証要求部と、OTPで秘密データを暗号化して送信する秘密データ送信部及びメッセージ認証を行うメッセージ認証部を備える。管理ノード3は、秘匿通信制御部、暗号化された秘密データを受信して復号する秘密データ受信部、閾値秘密分散を用いて、OTPで受信ユーザのシェアを暗号化して受信ノードに送信するシェア送信部及びメッセージ認証を行うメッセージ認証部を備える。受信ノード4は、相手認証処理部、暗号化されたシェアを復号するシェア受信部及びメッセージ認証を行うメッセージ認証部を備える。【選択図】図1 |
---|---|
Bibliography: | Application Number: JP20220173274 |