Electronic device and digital key provisioning method of electronic device
US-2021112407-A1 · Apr 15, 2021 · US
US11722307B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-11722307-B2 |
| Application number | US-201917263281-A |
| Country | US |
| Kind code | B2 |
| Filing date | Jul 17, 2019 |
| Priority date | Aug 31, 2018 |
| Publication date | Aug 8, 2023 |
| Grant date | Aug 8, 2023 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
The disclosure relates to an electronic device for processing a digital key and an operation method thereof. The electronic device for processing a digital key may include a communicator configured to receive a request from a digital key framework, verify a package, a signature information of the package, and a certificate information of the target device based on a first authentication information received from the digital key framework and a second authentication information stored in the secure element, and generate the digital key by using configuration information included in the package.
Opening claim text (preview).
The invention claimed is: 1. An electronic device for processing a digital key, the electronic device comprising: a communicator configured to communicate with an external device; a secure element (SE); a first memory storing a first program and data for processing the digital key; and a first processor configured to execute the first program stored in the first memory to provide a digital key framework, wherein the digital key framework is configured to: receive a request to generate the digital key from a target device or a user application, wherein the request includes a package, signature information of the package, and certificate information of the target device, and wherein the package includes configuration information for generating the digital key and challenge information for preventing reuse of commands; and transmit, to the secure element, the request to generate the digital key and first authentication information, wherein the secure element includes: a second memory storing a second program and data for processing the digital key; and a second processor configured to execute the second program stored in the second memory to provide a digital key application, and wherein the digital key application is configured to: verify the package, the signature information of the package, and the certificate information of the target device based on the first authentication information received from the digital key framework and a second authentication information stored in the secure element; and generate the digital key by using the configuration information included in the package. 2. The electronic device of claim 1 , wherein the generated digital key is stored in the secure element. 3. The electronic device of claim 1 , wherein the digital framework is further configured to: receive a request to manage the digital key stored in the secure element from the target device; check whether a service provider transmitting the request to manage the digital key is an authorized service provider; and in case that the service provider is the authorized service provider, transmit, to the digital key application of the secure element, the authentication information, which is stored in the digital key framework to verify the request to manage the digital key, and the request to manage the digital key, and wherein the digital key application of the secure element is configured to: verify the request to manage the digital key, based on the first authentication information received from the digital key framework and the second authentication information stored in the secure element; and manage the digital key. 4. The electronic device of claim 1 , wherein the first processor is further configured to transmit the generated digital key to a service provider server. 5. An operation method of an electronic device for processing a digital key, the operation method comprising: receiving a request to generate the digital key from a target device or a user application by using a digital key framework, wherein the request includes a package, signature information of the package, and certificate information of the target device, and wherein the package includes configuration information for generating the digital key and challenge information for preventing reuse of commands; transmitting, to a digital key application of a secure element, the request to generate the digital key and first authentication information to verify the package, the signature information of the package, and the certificate information of the target device; verifying, by the digital key application of the secure element, the package, the signature information of the package, and the certificate information of the target device based on the first authentication information received from the digital key framework and second authentication information stored in the secure element; and generating the digital key by using the configuration information included in the package. 6. The operation method of claim 5 , wherein the generated digital key is stored in the secure element. 7. The operation method of claim 5 , wherein receiving the request to process the digital key from the target device by using the digital key framework comprises receiving a request to manage the digital key stored in the secure element from the target device by using the digital key framework, wherein transmitting the request to generate the digital key and the first authentication information to the digital key application of the secure element comprises: checking whether a service provider transmitting the request to manage the digital key is an authorized service provider; and in case that the service provider is the authorized service provider, transmitting, to the digital key application of the secure element, the authentication information, which is stored in the digital key framework, to verify the request to manage the digital key, and the request to manage the digital key, and wherein generating the digital key by using the configuration information included in the package comprises: verifying the request to manage the digital key by using the digital key application executed in the secure element, based on the first authentication information received from the digital key framework and the second authentication information stored in the secure element; and managing the digital key. 8. The operation method of claim 5 , further comprising transmitting the generated digital key to a service provider server.
involving additional secure or trusted devices, e.g. TPM, smartcard, USB or software token (network architectures or network communication protocols for supporting authentication of entities using an additional device in a packet data network H04L63/0853) · CPC title
involving certificates, e.g. public key certificate [PKC] or attribute certificate [AC]; Public key infrastructure [PKI] arrangements (network architectures or network communication protocols for supporting authentication of entities using certificates in a packet data network H04L63/0823) · CPC title
using challenge-response · CPC title
using an additional device, e.g. smartcard, SIM or a different communication terminal (cryptographic mechanisms or cryptographic arrangements for entity authentication involving additional secure or trusted devices H04L9/3234) · CPC title
specially adapted for proprietary or special-purpose networking environments, e.g. medical networks, sensor networks, networks in vehicles or remote metering networks · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.