IP Library Granted Patent US 9,049,012
Granted Patent B2
US 9,049,012 · App. 13/788,078 · Granted Jun 2, 2015

Secured cryptographic communication system

Inventors: Shinichi Baba (Bristol, GB); Yoshimichi Tanizawa (Kanagawa, JP); Hideaki Sato (Kanagawa, JP)
Assignee: Kabushiki Kaisha Toshiba
H04L9/0861H04L9/083H04L9/0827
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,049,012
App. No.
13/788,078
Granted
Jun 2, 2015
Kind
B2
Abstract

According to an embodiment, a communication apparatus includes a finding unit; a negotiating unit; and a communicating unit. The finding unit is configured to, in response to a request from an application that makes use of key information, find out a key generating device that generates the key information. The negotiating unit is configured to perform a negotiation operation with respect to the key generating device to determine conditions for key information that is to be generated. The communicating unit is configured to receive, from the key generating device, the key information that is generated based on the conditions determined in the negotiation operation, and send the received key information to the application.

Claims (39)

1. A communication apparatus comprising:

a finding unit configured to, in response to a request from an application that makes use of key information, find out a key generating device that generates the key information by generating and sharing a random number with another key generating device;

a negotiating unit configured to perform a negotiation operation with respect to the key generating device to determine conditions for key information that is to be generated, the conditions including throughput indicating a bit length of key information usable per unit time by the application among the key information generated by the key generating device; and

a communicating unit configured to

receive, from the key generating device, the key information that is generated based on the conditions determined in the negotiation operation, and

send the received key information to the application;

a verifying unit verifies the presence or absence of a security function applicable to communication between the apparatus and the key generating device, and

if the security function is present, the verifying unit determines that the verification is successful.

2. The apparatus according to claim 1 , further comprising the verifying unit configured to verify the validity of the key generating device, wherein the communication unit establishes communication with the key generating device that the verification is successful.

3. The apparatus according to claim 1 , wherein in response to a request from the application, the finding unit verifies the presence or absence of a security function applicable to communication between the apparatus and the key generating device to find out the key generating device that has the security function.

4. The apparatus according to claim 1 , wherein the communicating unit receives, from the key generating device, available conditions for key information that is to be generated, and sends the received conditions to the application.

5. A communication method comprising:

in response to a request from an application that makes use of key information, finding out a key generating device that generates the key information by generating and sharing a random number with another key generating device;

performing a negotiation operation with respect to the key generating device to determine conditions for key information that is to be generated, the conditions including throughput indicating a bit length of key information usable per unit time by the application among the key information generated by the key generating device;

receiving, from the key generating device, the key information that is generated based on the conditions determined in the negotiation operation; and

sending the received key information to the application;

verifying the presence or absence of a security function applicable to communication between an apparatus and the key generating device, and

if the security function is present, the verifying determines that the verification is successful.

6. A non-transitory computer-readable medium containing a program which when executed by a computer cause the computer to perform a method, comprising:

finding, in response to a request from an application that makes use of key information, out a key generating device that generates the key information by generating and sharing a random number with another key generating device;

performing a negotiation operation with respect to the key generating device to determine conditions for key information that is to be generated, the conditions including throughput indicating a bit length of key information usable per unit time by the application among the key information generated by the key generating device;

receiving, from the key generating device, the key information that is generated based on the conditions determined in the negotiation operation; and

sending the received key information to the application;

verifying the presence or absence of a security function applicable to communication between an apparatus and the key generating device, and if the security function is present, the verifying determines that the verification is successful.

7. A communication system comprising: a communication apparatus; and

a key generating device that generates key information by generating and sharing a random number with another key generating device, wherein

the communication apparatus includes

a finding unit configured to, in response to a request from an application that makes use of key information, find out the key generating device;

a first negotiating unit configured to perform a negotiation operation with respect to the key generating device to determine conditions for key information that is to be generated, the conditions including throughput indicating a bit length of key information usable per unit time by the application among the key information generated by the key generating device; and

a communicating unit configured to

receive, from the key generating device, the key information that is generated based on the conditions determined in the negotiation operation, and

send the received key information to the application, and

the key generating device includes

a second negotiating unit configured to perform the negotiation operation with respect to the communication apparatus; and

a generating unit configured to

generate the key information based on the conditions determined in the negotiation operation, and

send the key information to the communication;

a verifying unit that verifies the presence or absence of a security function applicable to communication between the apparatus and the key generating device, and

if the security function is present, the verifying unit determines that the verification is successful.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 7, 2013
From: BABA, SHINICHI; TANIZAWA, YOSHIMICHI; SATO, HIDEAKI
To: KABUSHIKI KAISHA TOSHIBA
Reel/Frame 029939/0987 →
Priority Claims (1)
JP 2012-176209 · Aug 8, 2012 · national
Continuity (1)
Related Publication 20140044260A1 · Feb 13, 2014