| CPC H04L 9/3247 (2013.01) [H04L 9/3271 (2013.01)] | 14 Claims |

|
1. An information interaction method, comprising:
sending, by a first device in response to a need to send an authorization request message to a second device, first security authentication information to the second device, wherein the first security authentication information is configured for the second device to evaluate whether the first device is a trusted device;
evaluating, by the first device, whether the second device is a trusted device based on second security authentication information sent by the second device;
obtaining, by the first device in response to determining mutual trust with the second device, an authorization pass message sent by the second device based on the authorization request message, wherein the authorization pass message is configured to authorize the first device to access the second device;
sending, by the first device, an access request message to the second device based on the authorization pass message, thereby requesting access to information on the second device;
sending, by the first device, first signature information to the second device, wherein the first signature information is configured for the second device to obtain a first signature verification result by performing signature verification on the first device;
obtaining, by the first device, a second signature verification result by performing signature verification on the second device based on second signature information sent by the second device;
generating, by the first device in response to passing of both the first signature verification result and the second signature verification result, the first security authentication information; and
generating, by the first device, the first security authentication information by combining the second challenge value with first trust state information of the first device,
wherein the second signature information comprises: a second challenge value randomly generated by the second device;
and a second signature value signed by the second device.
|