Information processing device, information processing method, computer program product, and information processing system
An information processing device is connected to at least a first communication device. The information processing device includes a processor. The first communication device acquires, from a first key management device, an encryption key shared between the first key management device and a second key management device. A second communication device acquires the encryption key from the second key management device. The processor acquires first attribute information indicating an attribute of the encryption key from the first communication device or from a message transmitted and received through communication. The processor acquires second attribute information indicating an attribute of the encryption key on the basis of the information acquired from the first key management device. The processor outputs information related to the first attribute information and the second attribute information.
1 . An information processing device connected to at least a first communication device out of the first communication device and a second communication device, the first communication device acquiring, from a first key management device, an encryption key shared by quantum key distribution between the first key management device and a second key management device, the encryption key being to be used for communication with the second communication device, the second communication device acquiring the encryption key to be used for communication with the first communication device from the second key management device, the information processing device comprising:
one or more hardware processors configured to:
acquire first attribute information indicating an attribute of the encryption key to be used for communication between the first communication device and the second communication device, the first attribute information being acquired from the first communication device or from a message transmitted and received in communication between the first communication device and the second communication device,
acquire second attribute information indicating an attribute of the encryption key to be used for communication between the first communication device and the second communication device, the second attribute information being acquired on the basis of information acquired from the first key management device, and
output information related to the first attribute information and the second attribute information so that the information is used by a device of an output destination to confirm a state of the quantum encryption, wherein
at least one of first attribute of the encryption key or the second attribute of the encryption key is a size of data transmitted and received by using the encryption key.
2 . The information processing device according to claim 1 , wherein the one or more hardware processors are configured to
acquire, from the first key management device, a remaining amount of encryption keys at each of plural time points,
determine a consumption amount of encryption keys on the basis of the remaining amount, and
acquire the size corresponding to the consumption amount.
3 . The information processing device according to claim 1 , the one or more hardware processors are configured to
acquire a consumption amount of encryption keys from the first key management device, and
acquire the size corresponding to the consumption amount.
4 . The information processing device according to claim 1 , the one or more hardware processors are configured to
determine whether an attribute indicated by the first attribute information matches with an attribute indicated by the second attribute information, and
output, as the information to be output, a result of the determination on the attribute.
5 . The information processing device according to claim 1 , further comprising the first key management device.
6 . The information processing device according to claim 1 , wherein the one or more hardware processors are configured to:
if an encryption method in which a size of an encryption key matches a size of data to be encrypted is used, determine a value of a consumption amount of one or more encryption keys as the size of the data.
7 . The information processing device according to claim 1 , wherein the one or more hardware processors are configured to:
if an encryption method in which a size of an encryption key and a size of data to be encrypted are represented by a specific relation is used, determine the size of the data from a consumption amount of one or more encryption keys in accordance with the specific relation.
8 . The information processing device according to claim 1 , wherein the one or more hardware processors are configured to:
output the information that includes both of the first attribute information and the second attribute information.
9 . An information processing method to be executed by an information processing device connected to at least a first communication device out of the first communication device and a second communication device, the first communication device acquiring, from a first key management device, an encryption key shared by quantum key distribution between the first key management device and a second key management device, the encryption key being to be used for communication with the second communication device, the second communication device acquiring the encryption key to be used for communication with the first communication device from the second key management device, the method comprising:
acquiring first attribute information indicating an attribute of the encryption key to be used for communication between the first communication device and the second communication device, the first attribute information being acquired from the first communication device or from a message transmitted and received in communication between the first communication device and the second communication device;
acquiring second attribute information indicating an attribute of the encryption key to be used for communication between the first communication device and the second communication device, the second attribute information being acquired on the basis of information acquired from the first key management device; and
outputting information related to the first attribute information and the second attribute information so that the information is used by a device of an output destination to confirm a state of the quantum encryption, wherein
at least one of first attribute of the encryption key or the second attribute of the encryption key is a size of data transmitted and received by using the encryption key.
10 . The information processing method according to claim 9 , wherein the method further comprising:
if an encryption method in which a size of an encryption key matches a size of data to be encrypted is used, determining a value of a consumption amount of one or more encryption keys as the size of the data.
11 . The information processing method according to claim 9 , wherein the method further comprising:
if an encryption method in which a size of an encryption key and a size of data to be encrypted are represented by a specific relation is used, determining the size of the data from a consumption amount of one or more encryption keys in accordance with the specific relation.
12 . The information processing method according to claim 9 , wherein the method further comprising:
outputting the information that includes both of the first attribute information and the second attribute information.
13 . A computer program product comprising a non-transitory computer-readable recording medium on which a program executable by a computer is recorded, the computer being provided in an information processing device connected to at least a first communication device out of the first communication device and a second communication device, the first communication device acquiring, from a first key management device, an encryption key shared by quantum key distribution between the first key management device and a second key management device, the encryption key being to be used for communication with the second communication device, the second communication device acquiring the encryption key to be used for communication with the first communication device from the second key management device, the computer program causing the computer to perform processing, the program instructing the computer to:
acquire first attribute information indicating an attribute of the encryption key to be used for communication between the first communication device and the second communication device, the first attribute information being acquired from the first communication device or from a message transmitted and received in communication between the first communication device and the second communication device;
acquire second attribute information indicating an attribute of the encryption key to be used for communication between the first communication device and the second communication device, the second attribute information being acquired on the basis of information acquired from the first key management device; and
output information related to the first attribute information and the second attribute information so that the information is used by a device of an output destination to confirm a state of the quantum encryption, wherein
at least one of first attribute of the encryption key or the second attribute of the encryption key is a size of data transmitted and received by using the encryption key.
14 . The computer program product according to claim 13 , wherein the program further instructing the computer to:
if an encryption method in which a size of an encryption key matches a size of data to be encrypted is used, determine a value of a consumption amount of one or more encryption keys as the size of the data.
15 . The computer program product according to claim 13 , wherein the program further instructing the computer to:
if an encryption method in which a size of an encryption key and a size of data to be encrypted are represented by a specific relation is used, determine the size of the data from a consumption amount of one or more encryption keys in accordance with the specific relation.
16 . The computer program product according to claim 13 , wherein the program further instructing the computer to:
output the information that includes both of the first attribute information and the second attribute information.
17 . An information processing system comprising:
an information processing device connected to at least a first communication device out of the first communication device and a second communication device; and
a first key management device configured to:
share an encryption key with a second key management device by quantum key distribution, and
output the encryption key to be used for communication between the first communication device and the second communication device to the first communication device, the second communication device acquiring the encryption key to be used for communication with the first communication device from the second key management device,
wherein the information processing device includes one or more hardware processors configured to:
acquire first attribute information indicating an attribute of the encryption key to be used for communication between the first communication device and the second communication device, the first attribute information being acquired from the first communication device or from a message transmitted and received in communication between the first communication device and the second communication device,
acquire second attribute information indicating an attribute of the encryption key to be used for communication between the first communication device and the second communication device, the second attribute information being acquired on the basis of information acquired from the first key management device, and
output information related to the first attribute information and the second attribute information so that the information is used by a device of an output destination to confirm a state of the quantum encryption; and
at least one of first attribute of the encryption key or the second attribute of the encryption key is a size of data transmitted and received by using the encryption key.
18 . The information processing system according to claim 17 , wherein the one or more hardware processors are configured to:
if an encryption method in which a size of an encryption key matches a size of data to be encrypted is used, determine a value of a consumption amount of one or more encryption keys as the size of the data.
19 . The information processing system according to claim 17 , wherein the one or more hardware processors are configured to:
if an encryption method in which a size of an encryption key and a size of data to be encrypted are represented by a specific relation is used, determine the size of the data from a consumption amount of one or more encryption keys in accordance with the specific relation.
20 . The information processing system according to claim 17 , wherein the one or more hardware processors are configured to:
output the information that includes both of the first attribute information and the second attribute information.