Apparatus and method for SSP device and server to negotiate digital certificates

US11153752B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-11153752-B2
Application numberUS-201916565389-A
CountryUS
Kind codeB2
Filing dateSep 9, 2019
Priority dateSep 7, 2018
Publication dateOct 19, 2021
Grant dateOct 19, 2021

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

A method of a local bundle assistant (LBA) negotiating a certificate with a secondary platform bundle manager (SPBM) in a wireless communication system including: transmitting a request message requesting information of certificates supported by a secondary secure platform (SSP) to a secondary platform bundle loader (SPBL) of the SSP; receiving the information of certificates supported by the SSP including information of certificate issuers corresponding to a family identifier from the SPBL; transmitting the information of certificates supported by the SSP to the SPBM; and receiving a certificate of the SPBM for key agreement, information of public key identifiers of certificate issuers to be used by the SSP, and information of the family identifier from the SPBM.

First claim

Opening claim text (preview).

What is claimed is: 1. A method of a local bundle assistant (LBA) negotiating a certificate with a secondary platform bundle manager (SPBM) in a wireless communication system, the method comprising: transmitting a request message requesting information of certificates supported by a secondary secure platform (SSP) to a secondary platform bundle loader (SPBL) of the SSP; receiving the information of certificates supported by the SSP including information of certificate issuers corresponding to a family identifier from the SPBL; transmitting the information of certificates supported by the SSP to the SPBM; and receiving a certificate of the SPBM for key agreement, information of public key identifiers of certificate issuers to be used by the SSP, and information of the family identifier from the SPBM, wherein, the information of certificate issuers corresponding to a family identifier includes information of public key identifiers of certificate issuers that issued certificates included in a certificate chain of the SPBM and are verifiable by the SPBL, information of public key identifiers of certificate issuers that issued certificates included in a certificate chain of the SPBL and are verifiable by the SPBM, and the information of the family identifier. 2. The method of claim 1 , wherein the request message further includes the information of the family identifier. 3. The method of claim 1 , wherein the information of certificates supported by the SSP further includes information of a release of a specification implemented by the SPBL. 4. The method of claim 1 , further comprising: establishing a transport layer security (TLS) connection with the SPBM in a server authentication mode. 5. The method of claim 1 , wherein the certificate of the SPBM for key agreement, that is verifiable by a public key indicated by one of the public key identifiers included in the public key identifiers of certificate issuers that issued certificates included in a certificate chain of the SPBM and are verifiable by the SPBL, is determined at the SPBM based on the information of certificates supported by the SSP. 6. The method of claim 1 , wherein: one of public key identifiers included in the public key identifiers of certificate issuers that issued certificates included in a certificate chain of the SPBL and are verifiable by the SPBM is determined at the SPBM based on the information of certificates supported by the SSP; and the information of public key identifier of certificate issuers to be used at the SSP is set at the SPBM as the determined one of public key identifiers. 7. The method of claim 1 , further comprising: receiving sub certificates of the certificate of the SPBM for key agreement from the SPBM. 8. A method of a secondary platform bundle manager (SPBM) negotiating a certificate with a local bundle assistant (LBA) in a wireless communication system, the method comprising: receiving information of certificates supported by a secondary secure platform (SSP) including information of certificate issuers corresponding to a family identifier from the LBA; and transmitting a certificate of the SPBM for key agreement, information of public key identifiers of certificate issuers to be used by the SSP, and information of the family identifier to the LBA, wherein, the information of certificate issuers corresponding to a family identifier includes information of public key identifiers of certificate issuers that issued certificates included in a certificate chain of the SPBM and are verifiable by a secondary platform bundle loader (SPBL), information of public key identifiers of certificate issuers that issued certificates included in a certificate chain of the SPBL and are verifiable by the SPBM, and the information of the family identifier. 9. The method of claim 8 , wherein the information of certificates supported by the SSP further includes information of a release of a specification implemented by the SPBL. 10. The method of claim 8 , further comprising: establishing a transport layer security (TLS) connection with the LBA in server authentication mode. 11. The method of claim 8 , further comprising: determining the certificate of the SPBM for key agreement, that is verifiable by a public key indicated by one of the public key identifiers included in the public key identifiers of certificate issuers that issued certificates included in a certificate chain of the SPBM and are verifiable by the SPBL, based on the information of certificates supported by the SSP. 12. The method of claim 8 , further comprising: determining one of public key identifiers included in the public key identifiers of certificate issuers that issued certificates included in a certificate chain of the SPBL and are verifiable by the SPBM based on the information of certificates supported by the SSP, and setting the information of public key identifier of certificate issuers to be used at the SSP as the determined one of public key identifiers. 13. The method of claim 8 , further comprising: transmitting sub certificates of the certificate of the SPBM for key agreement to the LBA. 14. A local bundle assistant (LBA) negotiating a certificate with a secondary platform bundle manager (SPBM) in a wireless communication system, the LBA comprising: a transceiver; and at least one controller coupled with the transceiver, the at least one controller configured to: transmit a request message requesting information of certificates supported by a secondary secure platform (SSP) to a secondary platform bundle loader (SPBL) of the SSP; receive the information of certificates supported by the SSP including information of certificate issuers corresponding to a family identifier from the SPBL; transmit the information of certificates supported by the SSP to the SPBM; and receive a certificate of the SPBM for key agreement, information of public key identifiers of certificate issuers to be used by the SSP, and information of the family identifier from the SPBM, wherein, the information of certificate issuers corresponding to a family identifier includes information of public key identifiers of certificate issuers that issued certificates included in a certificate chain of the SPBM and are verifiable by the SPBL, information of public key identifiers of certificate issuers that issued certificates included in a certificate chain of the SPBL and are verifiable by the SPBM, and the information of the family identifier. 15. The LBA of claim 14 , wherein the request message further includes the information of the family identifier. 16. The LBA of claim 14 , wherein the certificate of the SPBM for key agreement, that is verifiable by a public key indicated by one of the public key identifiers included in the public key identifiers of certificate issuers that issued certificates included in a certificate chain of the SPBM and are verifiable by the SPBL, is determined at the SPBM based on the information of certificates supported by the SSP. 17. The LBA of claim 14 , wherein: one of public key identifiers included in the public key identifiers of certificate issuers that issued certificates included in a certificate chain of the SPBL and are verifiable by the SPBM is determined at the SPBM based on the information of certificates supported by the SSP; and the information of public key identifier of certificate issuers to be used at the SSP is set at the SPBM as the determined one of public key identifiers. 18. A secondary platform bundle manager (SPBM) negotiating a certificate with a loca

Assignees

Inventors

Classifications

  • based on priority criteria · CPC title

  • Key distribution or pre-distribution; Key agreement · CPC title

  • H04W4/60Primary

    Subscription-based services using application servers or record carriers, e.g. SIM application toolkits · CPC title

  • Negotiating wireless communication parameters · CPC title

  • Security arrangements using identity modules · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US11153752B2 cover?
A method of a local bundle assistant (LBA) negotiating a certificate with a secondary platform bundle manager (SPBM) in a wireless communication system including: transmitting a request message requesting information of certificates supported by a secondary secure platform (SSP) to a secondary platform bundle loader (SPBL) of the SSP; receiving the information of certificates supported by the S…
Who is the assignee on this patent?
Samsung Electronics Co Ltd
What technology area does this patent fall under?
Primary CPC classification H04W12/0431. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Oct 19 2021 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 6 related publications on this page (citations in our corpus or others sharing the same primary CPC).