G&D Company has developed an innovative product based on traditional smart card technology. USB Key replaces the traditional smart card. The microprocessor, USB controller and connector are all embedded in a small shell. USB Key is an extension of card function, which does not need a card reader. The use of USB Key is very extensive, and the concept of USB Key has been successfully introduced in online banking, e-government, e-commerce and other fields.
USB Key and PKI technology
The relationship between PKI technology and USB Key is that the storage of private keys and digital certificates issued by third-party certification bodies can be realized on the extremely safe smart chip in USB Key. Although many people now store the private key and digital certificate in the hard disk or floppy disk of the computer, for security reasons, it will be better and safer to automatically generate the private key and safely store the USB Key of the digital certificate. This can prevent hackers from planting virus programs, pretending to be legitimate users, signing digital signatures on the network, stealing the private keys of legitimate users, and conducting fraud and illegal transactions. In addition, from the point of view of ease of use, the use of USB Key is also easy to carry, and people can use it at any time in the office, at home and on the road.
1, two-factor authentication
Each USB flash drive is protected by a hardware password. PIN code and hardware constitute two necessary factors for users to use USB keys, namely "two-factor authentication". Users can log in to the system only after obtaining USB Key and user PIN code. Even if the user's PIN code is leaked, as long as the USB Key held by the user is not stolen, the identity of the legitimate user will not be impersonated; If the user's USB flash drive is lost, the discoverer can't impersonate a legitimate user because he doesn't know the user's PIN code.
2. Safe storage space.
USB Key has 8K- 128K secure data storage space, which can store secret data such as digital certificates and user keys. The reading and writing operation of this storage space must be realized through the program, and the user can't read it directly, and the user's private key can't be exported, thus eliminating the possibility of copying the user's digital certificate or identity information.
3. Hardware implementation of encryption algorithm.
USB Key has built-in CPU or smart card chip, which can realize various algorithms of data collection, data encryption and decryption and signature used in PKI system. The encryption and decryption operations are carried out in the USB Key, which ensures that the user key will not appear in the computer memory, thus eliminating the possibility that the user key will be intercepted by hackers. Support RSA, DES, SSF33 and 3DES algorithms.
4, easy to carry, safe and reliable
The thumb-sized USB flash drive is very convenient to carry around, and the key and certificate can't be exported, and the hardware of the key can't be copied, which is more safe and reliable.
Online shopping can ensure safety.