IP Library Granted Patent US 9,197,410
Granted Patent B2
US 9,197,410 · App. 13/968,885 · Granted Nov 24, 2015

Key management system

Inventors: Takuya Yoshida (Inagi, JP); Yoshihiro Fujii (Fuchu, JP)
Assignees: KABUSHIKI KAISHA TOSHIBA; TOSHIBA SOLUTIONS CORPORATION
H04L9/0861G06F21/602G06F21/62H04L9/0825H04L9/0827H04L9/14H04L63/06H04L2209/76
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,197,410
App. No.
13/968,885
Granted
Nov 24, 2015
Kind
B2
Abstract

According to one embodiment, a master key management device generates, by using a first secret key stored in a first storage unit and a third public key, a re-encryption key used to re-encrypt a second secret key which is stored in a second storage unit and which is encrypted with a first public key to the second secret key encrypted with the third public key. A key management server device receives the generated re-encryption key from the master key management device while the master key management device and the key management server device are connected to each other, and stores the received re-encryption key in a third storage unit. The master key management device and the key management server device are disconnected after the re-encryption key is stored in the third storage unit.

Claims (16)

1. A key management system which comprises a master key management device having a first storage unit configured to store a first secret key, a system device having a secret key storage unit configured to store a second secret key and an encryption unit configured to encrypt the second secret key with a first public key which is paired with the first secret key, and a key management server device having a second storage unit configured to store the second secret key which is encrypted with the first public key and which is received from the system device,

the master key management device including

a re-encryption key generation unit configured to generate, by using the first secret key stored in the first storage unit and a third public key, a re-encryption key used to re-encrypt the second secret key which is stored in the second storage unit and which is encrypted with the first public key to a second secret key encrypted with the third public key,

the key management server device including

a reception unit configured to receive the generated re-encryption key from the master key management device while the master key management device and the key management server device are connected to each other, and

a third storage unit configured to store the received re-encryption key,

wherein the master key management device and the key management server device are disconnected after the re-encryption key is stored in the third storage unit.

2. The key management system according to claim 1 , further comprising a client device having a fourth storage unit configured to store a third secret key paired with the third public key,

wherein the key management server device further includes

a re-encryption unit configured to re-encrypt, by using the re-encryption key stored in the third storage unit, the second secret key which is stored in the second storage unit and which is encrypted with the first public key to a second secret key encrypted with the third public key, and

the client device includes

a decryption unit configured to decrypt the re-encrypted second secret key by using the third secret key stored in the fourth storage unit.

3. The key management system according to claim 2 , further comprising a key generation device which generates the first secret key and the first public key as well as the third secret key and the third public key, wherein

the first storage unit stores the first secret key generated by the key generation device,

the second storage unit stores the second secret key encrypted with the first public key generated by the key generation device,

the re-encryption key generation unit generates the re-encryption key by using the third public key generated by the key generation device, and the fourth storage unit stores the third secret key generated by the key generation device.

Assignments (5)
CHANGE OF CORPORATE NAME AND ADDRESS Recorded Feb 8, 2021
From: TOSHIBA SOLUTIONS CORPORATION
To: TOSHIBA DIGITAL SOLUTIONS CORPORATION
Reel/Frame 055259/0587 →
CORRECTIVE ASSIGNMENT TO CORRECT THE RECEIVING PARTY'S ADDRESS PREVIOUSLY RECORDED ON REEL 048547 FRAME 0098. ASSIGNOR(S) HEREBY CONFIRMS THE CHANGE OF ADDRESS. Recorded May 28, 2019
From: TOSHIBA SOLUTIONS CORPORATION
To: TOSHIBA SOLUTIONS CORPORATION
Reel/Frame 051297/0742 →
CHANGE OF ADDRESS Recorded Mar 8, 2019
From: TOSHIBA SOLUTIONS CORPORATION
To: TOSHIBA SOLUTIONS CORPORATION
Reel/Frame 048547/0098 →
CHANGE OF NAME Recorded Mar 8, 2019
From: TOSHIBA SOLUTIONS CORPORATION
To: TOSHIBA DIGITAL SOLUTIONS CORPORATION
Reel/Frame 048547/0215 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 16, 2014
From: YOSHIDA, TAKUYA; FUJII, YOSHIHIRO
To: KABUSHIKI KAISHA TOSHIBA; TOSHIBA SOLUTIONS CORPORATION
Reel/Frame 031985/0822 →
Priority Claims (1)
JP 2011-032078 · Feb 17, 2011 · national
Continuity (2)
Continuation PCTJP2012053546 · Feb 15, 2012
Related Publication 20140161251A1 · Jun 12, 2014