Authentication Methods and Devices for Allowing Access to Private Data
US-2019130082-A1 · May 2, 2019 · US
US11295565B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-11295565-B2 |
| Application number | US-202117244812-A |
| Country | US |
| Kind code | B2 |
| Filing date | Apr 29, 2021 |
| Priority date | Jun 28, 2019 |
| Publication date | Apr 5, 2022 |
| Grant date | Apr 5, 2022 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
The present application provides an unlocking solution. In this solution, after obtaining a digital key seed, a user mobile device can generate a digital key for multiple times by using the digital key seed and first check data corresponding to a current unlocking operation, and then send the digital key to a smart door lock for verification and unlocking. Because the digital key includes the first check data only corresponding to the current unlocking operation, an attacker cannot use the digital key to perform unlocking again even if the attacker obtains the digital key. In addition, because the digital key seed can be used for multiple times, a smart door lock server does not need to be connected each time to obtain the digital key. Therefore, both security and ease of use are satisfied.
Opening claim text (preview).
What is claimed is: 1. A computer-implemented method comprising: obtaining, by a smart door lock, a server public key of a smart door lock server; receiving, by the smart door lock from a user mobile device that generates a digital key from a digital key seed received from the smart door lock server, the digital key comprising the digital key seed and first check data; performing, by the smart door lock, verification on the digital key seed corresponding to the digital key using the server public key of the smart door lock server; performing, by the smart door lock, verification on the first check data of the digital key; and based on performing verification on the digital key seed and the first check data, performing, by the smart door lock, unlocking of the smart door lock. 2. The method of claim 1 , wherein the digital key seed comprises a user public key corresponding to a user of the user mobile device, the digital key comprises a first signature generated by a user private key corresponding to the user of the user mobile device, and performing verification on the digital key seed corresponding to the digital key comprises: obtaining, by the smart door lock, the user public key in the digital key seed by using the server public key; and performing, by the smart door lock, verification on the first signature by using the user public key. 3. The method of claim 1 , wherein the first check data comprises unlocking count information. 4. The method of claim 3 , wherein the unlocking count information is computed according to a number of times the user mobile device generates a digital key based on the digital key seed. 5. The method of claim 1 , wherein the server public key is determined by a manufacturer of the smart door lock. 6. The method of claim 5 , wherein the smart door lock obtains the server public key after a process of manufacturing the smart door lock. 7. The method of claim 1 , wherein the digital key seed is generated using a server private key by a smart door lock server communicably connected to the smart door lock. 8. A non-transitory, computer-readable storage medium storing one or more instructions executable by a computer system to perform operations of a smart door lock comprising: obtaining, by the smart door lock, a server public key of a smart door lock server; receiving, from a user mobile device that generates a digital key from a digital key seed received from the smart door lock server, the digital key comprising the digital key seed and first check data; performing verification on the digital key seed corresponding to the digital key using the server public key of the smart door lock server; performing verification on the first check data of the digital key; and based on performing verification on the digital key seed and the first check data, performing unlocking of the smart door lock. 9. The non-transitory, computer-readable storage medium of claim 8 , wherein the digital key seed comprises a user public key corresponding to a user of the user mobile device, the digital key comprises a first signature generated by a user private key corresponding to the user of the user mobile device, and performing verification on the digital key seed corresponding to the digital key comprises: obtaining the user public key in the digital key seed by using the server public key; and performing verification on the first signature by using the user public key. 10. The non-transitory, computer-readable storage medium of claim 8 , wherein the first check data comprises unlocking count information. 11. The non-transitory, computer-readable storage medium of claim 10 , wherein the unlocking count information is computed according to a number of times the user mobile device generates a digital key based on the digital key seed. 12. The non-transitory, computer-readable storage medium of claim 8 , wherein the server public key is determined by a manufacturer of the smart door lock. 13. The non-transitory, computer-readable storage medium of claim 12 , wherein the smart door lock obtains the server public key after a process of manufacturing the smart door lock. 14. The non-transitory, computer-readable storage medium of claim 8 , wherein the digital key seed is generated using a server private key by a smart door lock server communicably connected to the smart door lock. 15. A computer-implemented system, comprising: one or more computers; and one or more computer memory devices interoperably coupled with the one or more computers and having tangible, non-transitory, machine-readable media storing one or more instructions that, when executed by the one or more computers, perform one or more operations of a smart door lock comprising: obtaining, by the smart door lock, a server public key of a smart door lock server; receiving, from a user mobile device that generates a digital key from a digital key seed received from the smart door lock server, the digital key comprising the digital key seed and first check data; performing verification on the digital key seed corresponding to the digital key using the server public key of the smart door lock server; performing verification on the first check data of the digital key; and based on performing verification on the digital key seed and the first check data, performing unlocking of the smart door lock. 16. The system of claim 15 , wherein the digital key seed comprises a user public key corresponding to a user of the user mobile device, the digital key comprises a first signature generated by a user private key corresponding to the user of the user mobile device, and performing verification on the digital key seed corresponding to the digital key comprises: obtaining the user public key in the digital key seed by using the server public key; and performing verification on the first signature by using the user public key. 17. The system of claim 15 , wherein the first check data comprises unlocking count information. 18. The system of claim 17 , wherein the unlocking count information is computed according to a number of times the user mobile device generates a digital key based on the digital key seed. 19. The system of claim 15 , wherein the server public key is determined by a manufacturer of the smart door lock. 20. The system of claim 15 , wherein the digital key seed is generated using a server private key by a smart door lock server communicably connected to the smart door lock.
operated by interacting with a central unit · CPC title
keyless data carrier having more than one function · CPC title
With time considerations, e.g. temporary activation, valid time window or time limitations · CPC title
involving additional secure or trusted devices, e.g. TPM, smartcard, USB or software token (network architectures or network communication protocols for supporting authentication of entities using an additional device in a packet data network H04L63/0853) · CPC title
where the code of the data carrier can be programmed · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.