Invention Grant
- Patent Title: Account management system, root-account management apparatus, derived-account management apparatus, and program
- Patent Title (中): 账户管理系统,根账户管理装置,衍生账户管理装置和程序
-
Application No.: US12501169Application Date: 2009-07-10
-
Publication No.: US08499147B2Publication Date: 2013-07-30
- Inventor: Tatsuro Ikeda , Koji Okada , Tomoaki Morijiri , Minoru Nishizawa , Hidehisa Takamizawa , Yoshihiro Fujii , Asahiko Yamada
- Applicant: Tatsuro Ikeda , Koji Okada , Tomoaki Morijiri , Minoru Nishizawa , Hidehisa Takamizawa , Yoshihiro Fujii , Asahiko Yamada
- Applicant Address: JP Tokyo JP Tokyo
- Assignee: Kabushiki Kaisha Toshiba,Toshiba Solutions Corporation
- Current Assignee: Kabushiki Kaisha Toshiba,Toshiba Solutions Corporation
- Current Assignee Address: JP Tokyo JP Tokyo
- Agency: Oblon, Spivak, McClelland, Maier & Neustadt, L.L.P.
- Priority: JP2007-235711 20070911
- Main IPC: H04L9/00
- IPC: H04L9/00

Abstract:
A root-account management apparatus generates an electronic signature based on a survival condition and a secret key when an authentication result of a user of a client apparatus is proper, and transmits derived-account credence element information including the survival condition, the electronic signature and a public key certificate to a derived-account management apparatus. The derived-account management apparatus creates derived-account information which becomes valid when the survival condition is satisfied so that the derived-account information includes both the derived-account credence element information which becomes invalid when a validity term of the public key certificate expires and a biometric information template of the user which is valid regardless of this validity term. Accordingly, even if an authentication element as a root (public key certificate) becomes invalid, a derived authentication element (biometric information template) can be prevented from becoming invalid.
Public/Granted literature
Information query