Meta tags:
description= Anastasis key recovery system;
description= ;
author= ;
Headings (most frequently used words):
the, step, user, secret, with, of, system, authentication, to, derives, key, data, parts, id, encrypted, providers, can, decrypt, anastasis, upload, process, flow, recovery, in, core, is, provided, identity, material, keys, are, first, second, different, now, welcome, problem, solution, concept, unique, sales, propositions, benefits, flexible, defense, depth, privacy, has, split, several, two, generated, pieces, sets, up, methods, for, each, part, then, shares, distributed, same, as, per, sends, so, that, they, and, issue, an, authorization, challenge, performs, procedures, receives, derived, reassemble,
Text of the page (most frequently used words):
the (57), user (18), step (16), secret (14), #anastasis (13), key (12), providers (12), with (11), #authentication (10), data (8), can (7), recover (7), system (6), are (6), for (5), their (5), recovery (5), core (5), service (5), not (4), consumers (4), solution (4), different (4), and (4), derives (4), material (4), encrypted (4), any (4), only (4), security (3), based (3), decrypt (3), parts (3), that (3), keys (3), identity (3), itself (3), your (3), escrow (3), about (3), sarl (2), money (2), issuers (2), own (2), post (2), quantum (2), privacy (2), distributed (2), control (2), now (2), first (2), procedures (2), second (2), upload (2), provided (2), process (2), flow (2), shares (2), methods (2), each (2), part (2), split (2), several (2), has (2), from (2), except (2), details (2), using (2), secrets (2), users (2), cryptographic (2), provider (2), information (2), you (2), sms (2), question (2), mail (2), securely (2), electronic (2), lost (2), confidentiality (2), gnu (2), multi (2), home (2), copyright, 2021, 2026, funding, contact, 5421, erpeldange, 280, 1200, need, protect, customer, against, staff, customers, remain, anonymous, maximum, respect, generic, api, suitable, range, applications, ease, use, trust, instead, single, point, failure, increases, informational, self, determination, keeping, low, cost, scalable, cloud, minimal, environmental, impact, unique, sales, propositions, reassemble, derived, receives, performs, issue, authorization, challenge, sends, they, same, per, then, sets, pieces, two, generated, does, safe, few, needed, when, capable, pay, anonymously, switch, time, well, known, techniques, our, resulting, offers, compromised, database, individual, never, leaks, would, sufficient, defense, depth, lets, save, choose, combinations, these, various, provide, like, secure, which, supply, flexible, concept, authorized, following, standard, tan, video, identification, etc, learn, nothing, possibly, some, how, authenticate, across, multiple, assume, able, remember, preserve, enable, always, funds, devices, european, wallets, must, unable, simultaneously, ensure, availability, splitting, solutions, far, usable, requires, consumer, problem, allows, deposit, open, set, protected, giving, additionally, encrypting, unknown, package, benefits, keep, crypto, custody, password, less, via, factor, party, welcome, español, italiano, deutsch, english, documentation, news, skip, main, content,
Text of the page (random words):
skip to main content home documentation news about english en deutsch de italiano it español es gnu anastasis home welcome to anastasis a keep your own key crypto custody solution with password less key recovery via multi factor multi party authentication benefits of anastasis anastasis is a key recovery system that allows the user to securely deposit shares of a core secret with an open set of escrow providers to recover it if the secret is lost the core secret itself is protected from the escrow providers by giving each provider only part of the information and additionally by encrypting it with an identity based key unknown to the providers anastasis is a gnu package the problem confidentiality requires only consumer is in control of key material cryptographic key splitting solutions so far are not usable consumers are unable to simultaneously ensure confidentiality availability of keys european e money issuers using electronic wallets must enable consumers to always recover their electronic funds i e if devices are lost not assume consumers are able to remember or securely preserve key material the solution users split their encrypted secrets across multiple service providers service providers learn nothing about the user except possibly some details about how to authenticate the user only the authorized user can recover the key by following standard authentication procedures sms tan video identification security question e mail etc the concept flexible anastasis lets you save your secret on several escrow providers you can choose different combinations of these providers to recover your secret the various providers provide different authentication methods like sms secure question or e mail which the user has to supply to recover their secret defense in depth anastasis is based on well known cryptographic techniques our resulting solution offers post quantum security a compromised database of an individual anastasis service provider by itself never leaks information that would be by itself sufficient to recover any core secret of any user privacy anastasis does not safe any data from the user except for the few details needed for authentication and recovery of the secret when using anastasis only the user is capable to recover their secrets users can pay anonymously for the service and switch service providers at any time upload process flow step 1 user has a core secret step 2 the core secret is split in several parts step 3 the system derives the user id with the provided identity material step 4 the system derives two keys with the generated user id step 5 the pieces of the secret are encrypted with the first key step 6 the user sets up authentication methods for each part of the secret step 7 the authentication data is then encrypted with the second key step 8 encrypted shares of the recovery data are distributed to different providers recovery process flow step 1 the system derives the user id with the provided identity material step 2 the system derives the same keys as per the upload step 3 the user sends the second key to the providers so that they can decrypt the authentication data step 4 the providers decrypt the authentication data and issue an authorization challenge to the user step 5 the user performs the different authentication procedures step 6 the user receives the parts of the secret step 7 the user can now decrypt the parts with the first derived key step 8 the system can now reassemble the secret unique sales propositions low cost scalable cloud based solution with minimal environmental impact increases informational self determination by keeping consumers in control of their data distributed trust instead of single point of failure ease of use generic api suitable for a range of applications maximum privacy with respect to authentication data customers can remain anonymous post quantum security e money issuers do not need to protect customer data against own staff 41 44 280 1200 anastasis sarl l 5421 erpeldange contact anastasis lu copyright 2021 2026 anastasis sarl funding
|