Method, apparatus, and system for identity authentication

US10038554B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-10038554-B2
Application numberUS-201615017416-A
CountryUS
Kind codeB2
Filing dateFeb 5, 2016
Priority dateFeb 16, 2015
Publication dateJul 31, 2018
Grant dateJul 31, 2018

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

An identity authentication method for a quantum key distribution process includes selecting, by a sender, preparation bases of an identity authentication bit string in accordance with a preset basis vector selection rule; sending, by a sender, quantum states of the identity authentication bit string and quantum states of a randomly generated key bit string by using different wavelengths. The identity authentication bit string is interleaved in the key bit string at a random position and with a random length. The method further includes measuring, by a receiver, the received quantum states in the quantum state information in accordance with the different wavelengths and measurement bases selected according to the preset basis vector selection rule to obtain identity authentication information from the measurement of the identity authentication bit string; and determining, by the receiver, whether the identity authentication information obtained through the measurement corresponds with the preset basis vector selection rule.

First claim

Opening claim text (preview).

What is claimed is: 1. An identity authentication method for a quantum key distribution process, the method performed by a receiver and comprising: receiving, from a sender, quantum state information including quantum states of an identity authentication bit string and quantum states of a randomly generated key bit string by using different wavelengths, the identity authentication bit string being interleaved in the key bit string at a random position and with a random length; measuring the received quantum states in the quantum state information in accordance with the different wavelengths and measurement bases selected according to a preset basis vector selection rule to obtain identity authentication information from a measurement of an identity authentication bit string; determining whether the identity authentication information obtained through the measurement corresponds with the preset basis vector selection rule; and in response to the determination that the identity authentication information obtained through the measurement corresponds with the preset basis vector selection rule: selecting a receiver authentication key from the identity authentication information; sending, to the sender, position information of the receiver authentication key in the identity authentication information obtained through the measurement and a preset shared key encrypted with the receiver authentication key, wherein the position information and the identity authentication bit string are used by the sender to select a corresponding sender authentication key and wherein the receiver authentication key is decrypted with a sender authentication key to obtain a new preset shared key; and ending the quantum key distribution process if the new preset shared key obtained by decrypting the receiver authentication key with the sender authentication key is not consistent with the local preset shared key. 2. The identity authentication method of claim 1 , further comprising publicizing the measurement bases for measuring a key quantum state via a classic channel. 3. The identity authentication method of claim 1 , further comprises: performing identity verification by using preset account information via a classic channel before the sender sends the quantum state information of the identity authentication bit string and of the randomly generated key bit string. 4. The identity authentication method of claim 3 , wherein the preset account information comprises identity information and a certificate. 5. The identity authentication method of claim 1 , wherein the preset basis vector selection rule comprises: selecting the preparation bases or the measurement bases in accordance with positions of identity authentication bits in the quantum state information. 6. The identity authentication method of claim 5 , wherein selecting the corresponding preparation bases or the measurement bases in accordance with the positions of the identity authentication bits in the quantum state information includes: selecting a corresponding horizontal polarization basis, a vertical polarization basis, a left-handed polarization basis or a right-handed polarization basis in accordance with different results of position information of each identity authentication bit in a quantum state information mod 4. 7. The identity authentication method of claim 1 , wherein measuring the received quantum states in the quantum state information in accordance with the different wavelengths and the measurement bases selected according to the basis vector selection rule includes: distinguishing identity authentication quantum state information and key quantum state information in accordance with the different wavelengths; measuring the identity authentication quantum state information by using the selected measurement bases; and eliminating parts of the selected measurement bases where no photon is detected to obtain the identity authentication information through the measurement. 8. The identity authentication method of claim 7 , wherein the identity authentication information corresponds with the basis vector selection rule, if a difference between the identity authentication information measured by the receiver and expected information is less than a preset threshold. 9. The identity authentication method of claim 1 , wherein selecting the receiver authentication key from the identity authentication information includes: taking the identity authentication information as the receiver authentication key; or selecting bits in different positions randomly from the identity authentication information, and taking a bit string made up of the selected bits as the receiver authentication key. 10. The identity authentication method of claim 1 , wherein sending position information of the receiver authentication key in the identity authentication information obtained through the measurement and the preset shared key encrypted with the receiver authentication key, comprises: sending position information of the receiver authentication key in the identity authentication information obtained through the measurement and a preset shared key and auxiliary authentication information encrypted with the receiver authentication key. 11. The identity authentication method of claim 10 , further comprising: receiving encrypted information via a classic channel; wherein the encrypted information is a variant of an auxiliary authentication information obtained by applying a preset policy to the auxiliary authentication information; decrypting the received encrypted information in a manner corresponding to the preset policy; and determining whether information obtained with the decryption is consistent with the variant of the auxiliary authentication information. 12. The identity authentication method of claim 11 , wherein the preset policy comprises: executing an encryption operation by using the local preset shared key; or executing an encryption operation by using the corresponding sender authentication key. 13. An identity authentication method for a quantum key distribution process comprising: receiving quantum state information including quantum states of an identity authentication bit string interleaved within a key bit string from a peer device, wherein the identity authentication bit string and the key bit string have different wavelengths; distinguishing the identity authentication bit string from the key bit string based on the different wavelengths; measuring the received quantum states using measurement bases in accordance with a preset basis vector selection rule to obtain identity authentication information through the measurement; determining if the obtained identity authentication information corresponds with the preset basis vector selection rule; and in response to the determination that the obtained identity information corresponds with the preset basis vector selection rule, selecting a receiver authentication key from the identity authentication information. 14. The identity authentication method claim 13 , wherein the identity authentication bit string is interleaved within the key bit string at a random position. 15. The identity authentication method claim 13 , wherein the identity authentication bit string has a random length. 16. The identity authentication method of claim 13 , wherein the preset basis vector selection rule comprises selecting bases in accordance with positions of identity authentication bits in the quantum state information. 17. The identity authentication method of claim 16 , wherein s

Assignees

Inventors

Classifications

  • for key distribution, e.g. centrally by trusted party (cryptographic mechanisms or cryptographic arrangements for key distribution involving a central third party H04L9/0819) · CPC title

  • with user authentication or key authentication, e.g. ElGamal, MTI, MQV-Menezes-Qu-Vanstone protocol or Diffie-Hellman protocols using implicitly-certified keys · CPC title

  • User authentication · CPC title

  • using different networks or channels, e.g. using out of band channels (cryptographic mechanisms or cryptographic arrangements for key distribution involving distinctive intermediate devices or communication paths H04L9/0827; cryptographic mechanisms or cryptographic arrangements for authentication using a plurality of channels H04L9/3215) · CPC title

  • Hierarchical key distribution, e.g. by multi-tier trusted parties · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US10038554B2 cover?
An identity authentication method for a quantum key distribution process includes selecting, by a sender, preparation bases of an identity authentication bit string in accordance with a preset basis vector selection rule; sending, by a sender, quantum states of the identity authentication bit string and quantum states of a randomly generated key bit string by using different wavelengths. The id…
Who is the assignee on this patent?
Alibaba Group Holding Ltd
What technology area does this patent fall under?
Primary CPC classification H04L9/0858. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Jul 31 2018 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 3 related publications on this page (citations in our corpus or others sharing the same primary CPC).