Key management for decentralized computer network services

The authors propose an efficient scheme for key management, incorporating smart card technology and the master key concept, for both users and providers in multiservice environments over a large-scale network. This scheme has the following features. Every service can handle its own authentication and administration. Every user has a smart card with a single master key. The service keys can be regenerated within the card in a very secure manner. Users can also update their master keys by themselves without third-party intervention. As there is no need for storing any user password in the service center (except, perhaps, for a user PIN number), security is greatly enhanced. >