Abstract:
A system and a method for connecting to an EC(Electronic Commerce) site with an OTP(One-Time Password) are provided to perform authentication by connecting a password module, such as a USB(Universal Serial Bus) or PC card, to a PC, obtaining the available OTP from the password module with a program downloaded from the system, and inserting the OTP into a user ID/password. A password module(100) outputs a password by executing an encoding algorithm when a plain sentence for generating the password is received. A terminal(300) requests authentication to a user authentication server(400) through the network, extracts an OTP from the password module by communicating with the password module through password module operation software downloaded from an EC site, and transmits the extracted OTP to the user authentication server. The password module comprises an interface connected to the terminal in a USB or PCI(Peripheral Component Interconnect) mode, an encoder encoding the extracted OTP, and a key storing part storing public certificate and secret keys.
Abstract:
PURPOSE: A method for distributing encoding/decoding programs and a symmetric key and devices for partitioning and injecting data for the same in a security domain environment are provided to improve the safety of the distribution method by dividing the encoding/decoding programs and the symmetric key in a top level security domain and subsequently distributing the divided encoding/decoding programs and symmetric key to a lower level domain. CONSTITUTION: A data base(310) stores encoding/decoding programs and a symmetric key. A data base administrator(320) performs a communication with the data base in order to store or access the encoding/decoding programs and the key. A program selection module(330) selects the encoding/decoding programs from the data base through a user interface. A key selection module(340) selects the key from the data base through the user interface. A division module(350) divides the selected encoding/decoding programs and key into the number of lower level security domains.
Abstract:
본 발명은 보안 도메인 환경에서 암/복호화 프로그램 및 대칭키를 안전하게 배포하기 위한 방법 및 장치에 관한 것이다. 본 발명에 따른 암/복호화 프로그램 및 대칭키 배포 방법은, 최상위 보안 도메인에서 1개 이상의 하위 보안 도메인에 배포할 암/복호화 프로그램 및 대칭키를 선택하는 단계; 상기 선택된 암/복호화 프로그램 및 대칭키를 상기 하위 보안 도메인의 개수만큼 분할하는 단계; 및 상기 분할된 암/복호화 프로그램 및 대칭키를 상기 하위 보안 도메인에 배포하는 단계를 포함한다. 보안 도메인, 암/복호화 프로그램, 대칭키