Implicitly certified public keys

US10148422B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-10148422-B2
Application numberUS-201213463965-A
CountryUS
Kind codeB2
Filing dateMay 4, 2012
Priority dateJun 10, 2011
Publication dateDec 4, 2018
Grant dateDec 4, 2018

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

Methods, systems, and computer programs for using an implicit certificate are described. In some aspects, an implicit certificate is accessed. The implicit certificate is associated with an entity and generated by a certificate authority. The implicit certificate includes a public key reconstruction value of the entity. Certificate authority public key information is accessed. The certificate authority public key information is associated with the certificate authority that issued the implicit certificate. A first value is generated based on evaluating a hash function. The hash function is evaluated based on the certificate authority public key information and the public key reconstruction value of the entity. A public key value of the entity can be generated or otherwise used based on the first value.

First claim

Opening claim text (preview).

What is claimed is: 1. A method comprising: accessing an implicit certificate associated with an entity and generated by a subordinate certificate authority that is subordinate to a root certificate authority, wherein the implicit certificate includes a public key reconstruction value of the entity; accessing subordinate certificate authority public key information associated with the subordinate certificate authority; accessing root certificate authority public key information associated with the root certificate authority; generating a first value based on evaluating a hash function, wherein evaluating the hash function produces a hash function output from hash function inputs comprising the subordinate certificate authority public key information, the root certificate authority public key information, and the public key reconstruction value of the entity; and generating a public key value of the entity based on the first value. 2. The method of claim 1 , wherein the subordinate certificate authority comprises a first subordinate certificate authority that is intermediate the root certificate authority and a second certificate authority, the entity comprises the second subordinate certificate authority, and the implicit certificate is based on a chain of implicit certificates. 3. The method of claim 1 , wherein the entity comprises a correspondent. 4. The method of claim 1 , wherein generating the public key value comprises at least one of: validating the public key value; or using the public key value to verify a digital signature from the entity. 5. The method of claim 1 , wherein generating the public key value comprises evaluating a cryptographic function that uses the public key value. 6. The method of claim 5 , wherein evaluating the cryptographic function does not explicitly compute the public key value. 7. The method of claim 1 , wherein the first value and the public key value are generated by the entity. 8. The method of claim 1 , wherein the first value and the public key value are generated by the subordinate certificate authority. 9. The method of claim 1 , wherein the first value and the public key value are generated by a second, different entity that relies on the public key value. 10. The method of claim 1 , wherein the subordinate certificate authority public key information comprises at least one of a public key value of the subordinate certificate authority or a public key reconstruction value of the subordinate certificate authority. 11. A non-transitory computer-readable medium storing instructions that are operable when executed by data processing apparatus to perform operations comprising: accessing an implicit certificate associated with an entity and generated by a subordinate certificate authority that is subordinate to a root certificate authority, wherein the implicit certificate includes a public key reconstruction value of the entity; accessing subordinate certificate authority public key information associated with the subordinate certificate authority; accessing root certificate authority public key information associated with the root certificate authority; generating a first value based on evaluating a hash function, wherein evaluating the hash function produces a hash function output from hash function inputs comprising the subordinate certificate authority public key information, the root certificate authority public key information, and the public key reconstruction value of the entity; and generating a public key value of the entity based on the first value. 12. The computer-readable medium of claim 11 , wherein the subordinate certificate authority comprises a first subordinate certificate authority that is intermediate the root certificate authority and a second certificate authority, the entity comprises the second subordinate certificate authority, and the implicit certificate is based on a chain of implicit certificates. 13. The computer-readable medium of claim 11 , wherein generating the public key value comprises at least one of: validating the public key value; or using the public key value to verify a digital signature generated by the entity. 14. The computer-readable medium of claim 11 , wherein generating the public key value comprises evaluating a cryptographic function that uses the public key value, and evaluating the cryptographic function does not explicitly compute the public key value. 15. A computing system comprising: memory; and one or more processors operable to perform operations, the operations comprising: accessing an implicit certificate associated with an entity and generated by a subordinate certificate authority that is subordinate to a root certificate authority, wherein the implicit certificate includes a public key reconstruction value of the entity; accessing subordinate certificate authority public key information associated with the subordinate certificate authority; accessing root certificate authority public key information associated with the root certificate authority; generating a first value based on evaluating a hash function, wherein evaluating the hash function produces a hash function output from hash function inputs comprising the subordinate certificate authority public key information, the root certificate authority public key information, and the public key reconstruction value of the entity; and generating a public key value of the entity based on the first value. 16. The computing system of claim 15 , wherein the one or more processors are operable to perform the operations of a signature generation module. 17. The computing system of claim 15 , wherein the one or more processors are operable to perform the operations of a signature verification module. 18. The computing system of claim 15 , wherein the one or more processors are operable to perform the operations of certificate generation module.

Assignees

Inventors

Classifications

  • involving a third party or a trusted authority · CPC title

  • involving algebraic varieties, e.g. elliptic or hyper-elliptic curves · CPC title

  • involving digital signatures · CPC title

  • H04L9/007Primary

    involving hierarchical structures · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US10148422B2 cover?
Methods, systems, and computer programs for using an implicit certificate are described. In some aspects, an implicit certificate is accessed. The implicit certificate is associated with an entity and generated by a certificate authority. The implicit certificate includes a public key reconstruction value of the entity. Certificate authority public key information is accessed. The certificate a…
Who is the assignee on this patent?
Zaverucha Gregory Marc, Kravitz David William, Brown Daniel Richard L, and 1 more
What technology area does this patent fall under?
Primary CPC classification H04L9/007. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Dec 04 2018 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 8 related publications on this page (citations in our corpus or others sharing the same primary CPC).