Patent · US Expired

Using a portable security token to facilitate cross-certification between certification authorities

US7130998B2 · kind B2 · utility

16Cited by
0References
27Claims
0Family size

Assignee

Inventors

Key dates

Filing dateOct 14, 2004
Grant dateOct 31, 2006
Priority date
Expiry dateApr 19, 2025

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L9/3268
  • WIPO fieldIT methods for management
  • WIPO sectorElectrical engineering

Abstract

One embodiment of the present invention provides a system that uses a portable security token (PST) to facilitate cross-certification between a first certification authority (CA) and a second CA, wherein the first CA and associated subscriber devices constitute a first public-key infrastructure (PKI) domain, and wherein the second CA and associated subscriber devices constitute a second PKI domain. During operation, the system uses the PST to transfer certification information between the first CA and the second CA, wherein the PST communicates with the first CA and the second CA through a location-limited communication channel. Next, the system uses the certification information to issue a cross-certificate to the first CA. Note that the cross-certificate is signed by the second CA. Finally, the system propagates the cross-certificate from the first CA to the associated subscriber devices in the first PKI domain, thereby allowing the associated subscriber devices in the first PKI domain to authenticate themselves to the devices in the second PKI domain.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.