Patent ReferencesCryptographic apparatus and method Cryptographic communications system and method Method of distributing and utilizing enciphering keys Cryptographic communication method and system Public key cryptosystem key management based on control vectors Cryptographic facility environment backup/restore and replication in a public key cryptosystem Fair cryptosystems and methods of use Cryptographic key management apparatus and method 5373559 InventorsAssigneeApplicationNo. 227871 filed on 04/15/1994US Classes:380/30, Public key380/277, KEY MANAGEMENT380/283, User-to-user key distributed over data link (i.e., no center)380/286Key escrow or recoveryExaminersPrimary: Cangialosi, SalvatoreAttorney, Agent or FirmInternational ClassH04L 009/30AbstractNovel cryptographic key distribution techniques to be used in large computer networks are disclosed. The techniques require trusted key release agent systems in each security domain. The encryptor of a data message nominates the set of authorized decryptors, using a set of access control attributes recognized by a key release agent in a target security domain. Data enabling the message decryption key and the access control attributes to be recovered are sent to the decryptor in an access controlled decryption block, which is encrypted under a separate key. The access controlled decryption block can only be decrypted by a key release agent in the correct security domain. The key release agent recovers the decryption key and supplies it to an authorized decryptor, which allows the decryptor to recover the original data message.Field of SearchPublic key | |