End-to-end encryption with distributed key management in a tracking device environment
US-2021092607-A1 · Mar 25, 2021 · US
US2022158985A1 · US · A1
| Field | Value |
|---|---|
| Publication number | US-2022158985-A1 |
| Application number | US-202117536987-A |
| Country | US |
| Kind code | A1 |
| Filing date | Nov 29, 2021 |
| Priority date | Aug 30, 2011 |
| Publication date | May 19, 2022 |
| Grant date | — |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
Methods, systems, and apparatuses are described for secure communications. One of a plurality of keys with respective key types may be used to establish a secure communication between computing devices. Verification of an establishment of the secure communication may be sent to a trusted computing device.
Opening claim text (preview).
1 . A method comprising: receiving, from a first computing device, a message indicating a key and a type of key usage for the key, wherein the key corresponds to a pairing between the first computing device and a second computing device; generating confirmation of successful processing of the key and type of key usage of the key; and establishing, based on the confirmation of successful processing of the key and type of key usage of the key, based on the key, and based on the type of key usage of the key, a secure communication between the first computing device and the second computing device. 2 . The method of claim 1 , wherein the generating comprises generating an object indicating that the key was successfully installed. 3 . The method of claim 1 , wherein the generating comprises signing, based on a quantity of previous pairings between the first computing device and the second computing device, a value included in the message. 4 . The method of claim 1 , wherein the generating is after a request to establish the secure communication between the first computing device and the second computing device is approved by a trusted computing device. 5 . The method of claim 1 , wherein: the message further indicates a plurality of previously installed keys, and for each of the plurality of previously installed keys, a corresponding type of key usage; and the plurality of previously installed keys is for establishing the secure communication between the first computing device and the second computing device. 6 . The method of claim 1 , further comprising: sending, to a trusted computing device via the first computing device, a second message indicating a previously installed key and a type of key usage of the previously installed key; and receiving, from the trusted computing device via the first computing device, a third message indicating that the previously installed key and the type of key usage of the previously installed key are valid and correspond to the pairing between the first computing device and the second computing device. 7 . The method of claim 1 , wherein the receiving the message comprises decrypting the message using a communication decryption key for secure communication between the second computing device and a trusted computing device. 8 . A second computing device comprising: one or more processors; and memory storing instructions that, when executed by the one or more processors, cause the second computing device to: receive, from a first computing device, a message indicating a key and a type of key usage for the key, wherein the key corresponds to a pairing between the first computing device and the second computing device; and generate confirmation of successful processing of the key and type of key usage of the key; and establish, based on the confirmation of successful processing of the key and type of key usage of the key, based on the key, and based on the type of key usage of the key, a secure communication between the first computing device and the second computing device. 9 . The second computing device of claim 8 , wherein the instructions, when executed by the one or more processors, cause the second computing device to generate the confirmation of successful processing of the key and type of key usage of the key by generating an object indicating that the key was successfully installed. 10 . The second computing device of claim 8 , wherein the instructions, when executed by the one or more processors, cause the second computing device to generate the confirmation of successful processing of the key and type of key usage of the key by signing, based on a quantity of previous pairings between the first computing device and the second computing device, a value included in the message. 11 . The second computing device of claim 8 , wherein the instructions, when executed by the one or more processors, cause the second computing device to generate the confirmation of successful processing of the key and type of key usage of the key after a request to establish the secure communication between the first computing device and the second computing device is approved by a trusted computing device. 12 . The second computing device of claim 8 , wherein: the message further indicates a plurality of previously installed keys, and for each of the plurality of previously installed keys, a corresponding type of key usage; and the plurality of previously installed keys is for establishing the secure communication between the first computing device and the second computing device. 13 . The second computing device of claim 8 , wherein the instructions, when executed by the one or more processors, cause the second computing device to: send, to a trusted computing device via the first computing device, a second message indicating a previously installed key and a type of key usage of the previously installed key; and receive, from the trusted computing device via the first computing device, a third message indicating that the previously installed key and the type of key usage of the previously installed key are valid and correspond to the pairing between the first computing device and the second computing device. 14 . The second computing device of claim 8 , wherein the instructions, when executed by the one or more processors, cause the second computing device to receive the message by decrypting the message using a communication decryption key for secure communication between the second computing device and a trusted computing device. 15 . A system comprising: a first computing device; and a second computing device; wherein the second computing device comprises: one or more processors; and memory storing instructions that, when executed by the one or more processors, cause the second computing device to: receive, from the first computing device, a message indicating a key and a type of key usage for the key, wherein the key corresponds to a pairing between the first computing device and the second computing device; and generate confirmation of successful processing of the key and type of key usage of the key; and establish, based on the confirmation of successful processing of the key and type of key usage of the key, based on the key, and based on the type of key usage of the key, a secure communication between the first computing device and the second computing device. 16 . The system of claim 15 , wherein the instructions, when executed by the one or more processors, cause the second computing device to generate the confirmation of successful processing of the key and type of key usage of the key by generating an object indicating that the key was successfully installed. 17 . The system of claim 15 , wherein the instructions, when executed by the one or more processors, cause the second computing device to generate the confirmation of successful processing of the key and type of key usage of the key by signing, based on a quantity of previous pairings between the first computing device and the second computing device, a value included in the message. 18 . The system of claim 15 , wherein the instructions, when executed by the one or more processors, cause the second computing device to generate the confirmation of successful processing of the key and type of key usage of the key after a request to establish the secure communication between the first computing device and the second computing device is approved by a trusted computing device. 19 . The system of claim 15 , wher
for managing network security; network security policies in general (filtering policies H04L63/0227) · CPC title
Revocation or update of secret information, e.g. encryption key update or rekeying · CPC title
for controlling access to devices or network resources · CPC title
for supporting key management in a packet data network (cryptographic mechanisms or cryptographic arrangements for key management H04L9/08) · CPC title
for key distribution, e.g. centrally by trusted party (cryptographic mechanisms or cryptographic arrangements for key distribution involving a central third party H04L9/0819) · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.