Patent · US Active

Establishing mutual authentication and secure channels in devices without previous credentials

US7646874B2 · kind B2 · utility

10Cited by
1References
12Claims
0Family size

Assignee

Inventors

Key dates

Filing dateDec 22, 2005
Grant dateJan 12, 2010
Priority date
Expiry dateMar 11, 2028

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L63/0853
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

The invention provides for installing encryption keys on a device not having any previous security credentials. An installation authority generates a security token to be used by the device for secure communications, and an installation credential for the device, and stores them in association with one another. A user of the device is provided with the installation credential, whereby the user inputs the installation credential into the device. The device utilizes the installation credential as a temporary security key, establishes a secure communication channel with the installation authority and requests provision of the security token. The installation authority provides the security token associated with the installation credential to the device over the established secure communication channel, and the device installs the security token, after which the device erases the installation credential from the device. The installation authority may also certify the security token and provide a certified token and a root verification certificate to the device.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.