Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

15results about "Public key infrastructure trust models" patented technology

A method for handling connection loss during a sharing process of a digital vehicle access key, a system for carrying out the method and a hardware token

The invention relates to a method for handling connection loss during a sharing process of a digital vehicle access key from a sharing device to a hardware token in a digital , comprising detecting a loss of communication between the hardware token and the sharing device during the sharing process of a digital key; attempting to restore the communication and retrying the failed sub-sequence of commands; continuing the sharing process once the communication is successfully re-established. The invention also relates to a system for carrying out this method and to a hardware token.
Owner:BAYERISCHE MOTOREN WERKE AG

Certificate chain compression to extend node operational lifetime

PendingEP4718773A3User identity/authority verificationPublic key infrastructure trust models
A battery-powered device (BPD) node compresses certificate chains to generate compressed certificate chains. The BPD node includes a compression dictionary that indexes various data entries that occur across many certificate chains and / or repeat within a particular certificate chain. The BPD node compresses a given certificate chain by replacing data entries within the given certificate chain with indices to corresponding data entries in the compression dictionary. The indices are smaller in size than the corresponding data entries. A neighboring BPD node also includes the compression dictionary and decompresses a compressed certificate chain by replacing indices included in the compressed certificate chain with the indexed data entries stored in the compression dictionary. Performing certificate exchanges with compressed certificate chains reduces the amount of limited battery power that is depleted during certificate exchanges, thereby extending BPD node operational lifetime and helping to prevent the need for premature battery replacement.
Owner:ITRON INC

Software distribution in wireless AD HOC networks for AD-HOC data processing at source nodes

This application relates to software distribution in wireless AD HOC networks for AD-HOC data processing on source nodes, a method of acquiring software by a source node in a wireless ad hoc network is disclosed. The method includes the source node executing an application software, identifying from the application software a need to process a particular data modality, and determining that the source node is unable to process the particular data modality. In response to the determination, the source node searches a local module repository (MR) of the source node for a software module usable to process the particular data modality, and in response to the source node failing to locate the software module in the local MR, broadcasts a request for the software module to a neighbor node of a plurality of nodes within radio range of the source node. The source node receives the software module from the neighbor node and processes the particular data modality using the software module.
Owner:THE BOEING CO

Software integrity protection and verification method, and device

Embodiments of this application disclose a software integrity protection method and apparatus, and a software integrity verification method and apparatus. A protection process includes: A first device obtains a first software package, where the first software package includes a first signature made by a first party for a second software package by using a first private key; and the first device performs a signing operation on the first software package by using a second private key, to obtain a third software package including a second signature, where the first private key is controlled by the first party, and the second private key is controlled by a second party. After the third software package is sent to a second device, a verification process includes: The second device obtains the first software package, where the first software package includes the first signature, the second signature, and the second software package; and the second device verifies the first signature and the second signature respectively based on a first public key and a second public key that are prestored, to obtain a verification result. In this way, software integrity protection is performed by using keys provided by a manufacturer and a user, to provide the user with a dual software integrity verification basis, and a trust issue is resolved for the user.
Owner:HUAWEI TECH CO LTD

Cryptographic apparatus administrated remotely from a high-security trust center

Cryptographic apparatus (41) administrated remotely from a high-security trust center (30) comprising, - a service interface (43) configured to receive a request for processing a data object, and to output in return at least a resulting data object, - a processing module (45) comprising an access-controlled storage element (47) storing at least one cryptographic key and a cryptographic processing element (46) configured for processing the data object using the at least one cryptographic key, and - an administration interface (44) configured to establish a mutually authenticated communication connection (49) with the high-security trust center (30) for administrating the processing module (45) by the high-security trust center (30).
Owner:SIEMENS AG

Authenticating network services provided by a network

ActiveEP3777073B1Public key infrastructure trust modelsSecurity arrangement
Particular embodiments described herein provide for an electronic device that can be configured to establish a connection with a router, obtain identification for the router, communicate the identification of the router to a network element, receive a hash of at least a portion of a certificate for the router, and disconnect the connection and establish a new connection with the router, where the hash is used to authenticate network services received from the router during the new connection. In an example, the hash is part of a subject public key infrastructure (SPKI) pin set.
Owner:MCAFEE LLC

Updating digital certificates associated with a virtual cloud network

PendingEP4748007A1User identity/authority verificationPublic key infrastructure trust models
Techniques for updating certificate bundles may include receiving, at an entity associated with a virtual cloud network, a certificate bundle that includes an updated set of certificate authority (CA) certificates. The techniques may include applying a validation process to an entity certificate based on the certificate bundle, with the entity certificate having been issued to the entity prior to the entity receiving the certificate bundle. The validation process may include validating, by the entity, a certificate chain that includes the entity certificate and a CA certificate included in the updated set of CA certificates. The techniques may include, responsive to validating the certificate chain, installing the certificate bundle in a storage medium associated with the entity, and utilizing, by the entity, the certificate bundle to authenticate at least one additional entity associated with the virtual cloud network.
Owner:ORACLE INT CORP

Multi-blockchain-based cross-chain processing method and apparatus, device, system, and medium

PendingUS20260149607A1User identity/authority verificationPublic key infrastructure trust modelsSoftware engineeringMechanical engineering
This application discloses a multi-blockchain-based cross-chain processing method performed by a computer device acting as an off-chain processing device in a multi-blockchain system. The method includes: obtaining a multi-blockchain, wherein the multi-blockchain comprises a management chain and at least one other blockchain; determining, in the multi-blockchain, at least two blockchains to be processed across chains; and collaborating with a management chain consensus node in the multi-blockchain system to perform cross-chain processing on the at least two blockchains based on chain information of the at least two blockchains. In this application, comprehensive management on the multi-blockchain is implemented in a cross-chain processing manner, which improves the processing efficiency of the multi-blockchain.
Owner:TENCENT TECHNOLOGY (SHENZHEN) CO LTD

Method for handling connection loss during a sharing process of a digital vehicle access key, system for performing the method and hardware token

The invention relates to a method for handling connection loss during a sharing process of a digital vehicle access key from a sharing device to a digital hardware token, comprising: detecting a loss of communication between the hardware token and the sharing device during the sharing process of the digital key; attempting to recover the communication and retrying a failed sub-sequence of commands; once the communication is successfully re-established, continuing the sharing process. The invention also relates to a system for implementing the method and to a hardware token.
Owner:BAYERISCHE MOTOREN WERKE AG

Method for Handling Connection Loss During a Sharing Process of a Digital Vehicle Access Key, a System for Carrying out the Method and a Hardware Token

The present disclosure relates to a method for handling connection loss during a sharing process of a digital vehicle access key from a sharing device to a hardware token in a digital, comprising detecting a loss of communication between the hardware token and the sharing device during the sharing process of a digital key; attempting to restore the communication and retrying the failed sub-sequence of commands; continuing the sharing process once the communication is successfully re-established. The present disclosure also relates to a system for carrying out this method and to a hardware token.
Owner:BAYERISCHE MOTOREN WERKE AG

PQC adaptation for 6g AKA procedure

The present disclosure relates to post quantum cryptography (PQC) enhancement of authentication and key agreement (AKA) procedures for use in communication networks. Aspects of the disclosure include use of a pre-shared post quantum key (PPK), or a selected PPK from a list of PPKs, or use of a home network public key (pk) and private key (sk) derived using a post-quantum cryptography (PQC) key generation function, defining PQC-based pk and sk, for authentication procedures between user equipment and a network entity. Aspects of the disclosure further include use of the PQC-based pk and sk for key generation of shared PQC-based keys.
Owner:NOKIA TECHNOLOGIES OY

METHOD AND DEVICE FOR INITIAL CERTIFICATE REGISTRATION IN A WIRELESS COMMUNICATION SYSTEM

Method for providing an initial certification registration in a wireless communication system, wherein the method comprises: Establishing an initial wireless connection to an infrastructure using an initial mobile device; Establishing a second wireless connection with a second mobile device through the first mobile device; Receiving an initial certification request by the first mobile device from the second mobile device and via the second wireless connection, wherein the initial certification request includes a request for a digital certificate for the second mobile device and for initial biometric data associated with a user of the first mobile device; Obtaining second biometric data, where the second biometric data is associated with a user of the second mobile device; Transmitting a second certification request to the infrastructure and over the first wireless connection, wherein the second certification request includes the request for the digital certificate for the second mobile device, the first biometric data, and the second biometric data; in response to the transmission of the second certification request to the infrastructure, receiving the digital certificate for the second mobile device from the infrastructure and via the first wireless connection, wherein a certification response includes the digital certificate for the second mobile device, wherein the certification response is signed with a third private key; Transferring the digital certificate to the second mobile device via the second wireless connection; Transferring a digital certificate associated with the first mobile device from the first mobile device to the second mobile device; in response to the transfer of the digital certificate associated with the first mobile device to the second mobile device, receiving a public key from the second mobile device; where receiving the first certification request includes receiving the first certification request signed by a private key that corresponds to the public key; where the private key includes a first private key and where the process involves submitting a second certification request to the infrastructure: Signing the second certificate request using a second private key to generate a signed second certificate request; and Transferring the signed second certification request to the infrastructure; the process still includes validating the initial certification request based on the public key.
Owner:MOTOROLA SOLUTIONS INC

Transitioning to and from crypto-agile hybrid public key infrastructures

ActiveUS12647285B2User identity/authority verificationPublic key infrastructure trust modelsRoot certificateInternet privacy
In a general aspect, digital certificates are generated. In some aspects, a method includes accessing a primary root certificate of a root certificate authority of a PKI system. The primary root certificate includes a first public key based on a first cryptosystem and a first signature generated with a private key that corresponds to the first public key. A secondary crypto-agile root certificate is generated. The secondary crypto-agile root certificate includes the first public key of the root certificate authority, a second public key of the root certificate authority that is based on a second cryptosystem, a second signature of the root certificate authority that is created with a second private key that corresponds to the second public key, and a third signature of the root certificate authority that is generated with the first private key. The secondary crypto-agile root certificate is propagated to subordinate entities in the PKI system.
Owner:ISARA CORP

Non-native blockchain signatures

A computer-implemented method for enabling non-native blockchain signatures to be verified in-script, wherein the method is performed by a first party and comprises: obtaining a second blockchain transaction, wherein the second blockchain transaction references a first blockchain transaction; generating a first signature based on at least the second blockchain transaction, wherein a first private key used to generate the first signature is set equal to one; generating a second signature based on the first signature, wherein the first signature is a native blockchain signature and the second signature is a non-native blockchain signature; including the first signature and the second signature in an unlocking script of the second blockchain transaction for verification when the unlocking script is executed together with a locking script of the first blockchain transaction; and causing the second blockchain transaction to be submitted to a blockchain network.
Owner:NCHAIN LICENSING AG