Electronic device for processing digital key, and operation method therefor

US11722307B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-11722307-B2
Application numberUS-201917263281-A
CountryUS
Kind codeB2
Filing dateJul 17, 2019
Priority dateAug 31, 2018
Publication dateAug 8, 2023
Grant dateAug 8, 2023

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

The disclosure relates to an electronic device for processing a digital key and an operation method thereof. The electronic device for processing a digital key may include a communicator configured to receive a request from a digital key framework, verify a package, a signature information of the package, and a certificate information of the target device based on a first authentication information received from the digital key framework and a second authentication information stored in the secure element, and generate the digital key by using configuration information included in the package.

First claim

Opening claim text (preview).

The invention claimed is: 1. An electronic device for processing a digital key, the electronic device comprising: a communicator configured to communicate with an external device; a secure element (SE); a first memory storing a first program and data for processing the digital key; and a first processor configured to execute the first program stored in the first memory to provide a digital key framework, wherein the digital key framework is configured to: receive a request to generate the digital key from a target device or a user application, wherein the request includes a package, signature information of the package, and certificate information of the target device, and wherein the package includes configuration information for generating the digital key and challenge information for preventing reuse of commands; and transmit, to the secure element, the request to generate the digital key and first authentication information, wherein the secure element includes: a second memory storing a second program and data for processing the digital key; and a second processor configured to execute the second program stored in the second memory to provide a digital key application, and wherein the digital key application is configured to: verify the package, the signature information of the package, and the certificate information of the target device based on the first authentication information received from the digital key framework and a second authentication information stored in the secure element; and generate the digital key by using the configuration information included in the package. 2. The electronic device of claim 1 , wherein the generated digital key is stored in the secure element. 3. The electronic device of claim 1 , wherein the digital framework is further configured to: receive a request to manage the digital key stored in the secure element from the target device; check whether a service provider transmitting the request to manage the digital key is an authorized service provider; and in case that the service provider is the authorized service provider, transmit, to the digital key application of the secure element, the authentication information, which is stored in the digital key framework to verify the request to manage the digital key, and the request to manage the digital key, and wherein the digital key application of the secure element is configured to: verify the request to manage the digital key, based on the first authentication information received from the digital key framework and the second authentication information stored in the secure element; and manage the digital key. 4. The electronic device of claim 1 , wherein the first processor is further configured to transmit the generated digital key to a service provider server. 5. An operation method of an electronic device for processing a digital key, the operation method comprising: receiving a request to generate the digital key from a target device or a user application by using a digital key framework, wherein the request includes a package, signature information of the package, and certificate information of the target device, and wherein the package includes configuration information for generating the digital key and challenge information for preventing reuse of commands; transmitting, to a digital key application of a secure element, the request to generate the digital key and first authentication information to verify the package, the signature information of the package, and the certificate information of the target device; verifying, by the digital key application of the secure element, the package, the signature information of the package, and the certificate information of the target device based on the first authentication information received from the digital key framework and second authentication information stored in the secure element; and generating the digital key by using the configuration information included in the package. 6. The operation method of claim 5 , wherein the generated digital key is stored in the secure element. 7. The operation method of claim 5 , wherein receiving the request to process the digital key from the target device by using the digital key framework comprises receiving a request to manage the digital key stored in the secure element from the target device by using the digital key framework, wherein transmitting the request to generate the digital key and the first authentication information to the digital key application of the secure element comprises: checking whether a service provider transmitting the request to manage the digital key is an authorized service provider; and in case that the service provider is the authorized service provider, transmitting, to the digital key application of the secure element, the authentication information, which is stored in the digital key framework, to verify the request to manage the digital key, and the request to manage the digital key, and wherein generating the digital key by using the configuration information included in the package comprises: verifying the request to manage the digital key by using the digital key application executed in the secure element, based on the first authentication information received from the digital key framework and the second authentication information stored in the secure element; and managing the digital key. 8. The operation method of claim 5 , further comprising transmitting the generated digital key to a service provider server.

Assignees

Inventors

Classifications

  • H04L9/3234Primary

    involving additional secure or trusted devices, e.g. TPM, smartcard, USB or software token (network architectures or network communication protocols for supporting authentication of entities using an additional device in a packet data network H04L63/0853) · CPC title

  • H04L9/3263Primary

    involving certificates, e.g. public key certificate [PKC] or attribute certificate [AC]; Public key infrastructure [PKI] arrangements (network architectures or network communication protocols for supporting authentication of entities using certificates in a packet data network H04L63/0823) · CPC title

  • using challenge-response · CPC title

  • using an additional device, e.g. smartcard, SIM or a different communication terminal (cryptographic mechanisms or cryptographic arrangements for entity authentication involving additional secure or trusted devices H04L9/3234) · CPC title

  • H04L67/12Primary

    specially adapted for proprietary or special-purpose networking environments, e.g. medical networks, sensor networks, networks in vehicles or remote metering networks · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US11722307B2 cover?
The disclosure relates to an electronic device for processing a digital key and an operation method thereof. The electronic device for processing a digital key may include a communicator configured to receive a request from a digital key framework, verify a package, a signature information of the package, and a certificate information of the target device based on a first authentication informa…
Who is the assignee on this patent?
Samsung Electronics Co Ltd
What technology area does this patent fall under?
Primary CPC classification H04L9/3234. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Aug 08 2023 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 10 related publications on this page (citations in our corpus or others sharing the same primary CPC).