Systems, methods, and computing platforms for executing credential-less network-based communication exchanges
US-12184638-B2 · Dec 31, 2024 · US
US9276737B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-9276737-B2 |
| Application number | US-201313804533-A |
| Country | US |
| Kind code | B2 |
| Filing date | Mar 14, 2013 |
| Priority date | Mar 14, 2013 |
| Publication date | Mar 1, 2016 |
| Grant date | Mar 1, 2016 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
A system and a method using that system is provided for establishing a secure communication channel between a vehicle and a mobile device. The method may include providing at least one unique mobile device identifier and at least one unique vehicle telematics unit identifier associated with the mobile device identifier to a call center. At least one of the two identifiers may be provided to a wireless service provider. Two private keys may be generated—a first private key based on the at least one unique mobile identifier and a second private key based on the at least one unique vehicle telematics unit identifier. The first private key may be provided to the mobile device within a first cryptographic envelope signed with a first cryptographic key. And the second private key may be provided to the vehicle telematics unit within a second cryptographic envelope signed with a second cryptographic key.
Opening claim text (preview).
The invention claimed is: 1. A method of establishing a secure communication channel between a vehicle and a mobile device, comprising the steps of: providing to a call center a unique mobile device identifier and a unique vehicle telematics unit (VTU) identifier; receiving at the mobile device a first private key that is associated at least in part with the unique mobile identifier and that is associated at least in part with the unique VTU identifier, wherein the first private key is generated at a wireless service provider (WSP) and received by the mobile device within a first cryptographic envelope signed with a first cryptographic key by the WSP; and establishing a secure communication channel between the VTU and mobile device, wherein the mobile device transmits message(s) to the VTU signed with the first private key and the mobile device receives message(s) from the VTU which are signed with a second private key, wherein the second private key is associated at least in part with the unique mobile identifier and at least in part with the unique VTU identifier, wherein the VTU received the second private key from the call center or the WSP within a second cryptographic envelope signed with a second cryptographic key, wherein the second cryptographic envelope is different than the first cryptographic envelope. 2. The method of claim 1 wherein the mobile device provides to the call center the unique mobile device identifier and the unique VTU identifier. 3. The method of claim 2 wherein the mobile device receives the VTU identifier from the VTU using short range wireless communication (SRWC). 4. The method of claim 1 wherein the unique mobile device identifier includes a first international mobile subscriber identity (IMSI), wherein the unique VTU identifier includes a second IMSI. 5. The method of claim 1 wherein the call center provides the unique mobile identifier to the WSP which in turn generates the first private key, wherein the second private key is generated at the call center or the WSP, wherein, when the WSP generates the second private key, the call center provides the unique VTU identifier to the WSP. 6. The method of claim 1 wherein the first and second private keys are identical according to a shared key infrastructure or are different according to a public key infrastructure (PKI). 7. The method of claim 1 wherein the first and second cryptographic keys are based on one of a private key infrastructure or a public key infrastructure. 8. A method of receiving a secure communication at a vehicle from a mobile device, comprising the steps of: establishing short range wireless communication (SRWC) between a mobile device and a vehicle telematics unit (VTU); receiving at the VTU at least one communication via SRWC from the mobile device, wherein the at least one communication is digitally signed using a first private key, wherein the first private key is associated at least in part with a unique identifier associated with a first subscriber identity module (SIM) within the mobile device, wherein the at least one communication includes a first public key associated with the first private key; and decrypting the at least one communication at the VTU using the first public key, wherein the first private key was received by the mobile device previous to the receiving step in a first cryptographic envelope signed by a wireless service provider (WSP) using a first cryptographic key and transmitted from the WSP to the mobile device via cellular transmission, wherein the WSP provides cellular services using infrastructure associated with a wireless carrier system. 9. The method of claim 8 wherein the at least one communication is a command to perform at least one vehicle function, wherein the at least one vehicle function includes one of unlocking a vehicle door or starting the vehicle's engine. 10. The method of claim 8 wherein the first cryptographic key is based on private key infrastructure between the WSP and the mobile device that existed prior to generating the first private key. 11. The method of claim 8 wherein the at least one communication received at the VTU is enabled by a user actuation of a hard switch on the mobile device at the time of the at least one communication. 12. The method of claim 11 wherein the switch actuation enables a transmission antenna on the mobile device or enables the first SIM in the mobile device to an operative state. 13. A method of receiving a secure communication at a vehicle from a mobile device, comprising the steps of: establishing short range wireless communication (SRWC) between a mobile device and a vehicle telematics unit (VTU); receiving at the VTU at least one communication from the mobile device, wherein the at least one communication is digitally signed using a first private key, wherein the first private key is associated at least in part with a unique identifier associated with a first subscriber identity module (SIM) within the mobile device, wherein the at least one communication includes a first public key associated with the first private key; decrypting the at least one communication at the VTU using the first public key, wherein the first private key was received by the mobile device previous to the receiving step in a first cryptographic envelope signed with a first cryptographic key from a wireless service provider (WSP); and validating the at least one communication by sending a challenge message from the VTU to the mobile device via SRWC, wherein the challenge message is digitally signed using a second private key, wherein the second private key was received by the VTU previous to the receiving step in a second cryptographic envelope signed with a second cryptographic key, wherein the challenge message includes a challenge query and a second public key associated with the second private key whereby the mobile device may decipher the challenge message. 14. The method of claim 13 wherein the second cryptographic envelope is associated with a private key infrastructure between either the VTU and the call center or the VTU and the WSP that existed prior to generating the second private key. 15. The method of claim 13 wherein the challenge query includes a nonce challenge. 16. The method of claim 13 further comprising receiving a response message from the mobile device in response to the challenge query, wherein the response message is signed using the first private key. 17. The method of claim 16 wherein the at least one communication received at the VTU from the mobile device has a first time stamp, the challenge message has a second time stamp, and the response message has a third time stamp, wherein the validating step further comprises the duration of time between any two of time stamps is less than or equal to a predetermined value. 18. The method of claim 13 wherein the second private key is associated at least in part with a unique identifier associated with a first subscriber identity module (SIM) having a computer processing unit (CPU) within the VTU, wherein the digital signature is based on the second private key and random data accessible to the SIM CPU. 19. The method of claim 18 wherein second private key accessible only to the SIM CPU. 20. A method of secure communication between a vehicle and a mobile device, comprising the steps of: (a) establishing short range wireless communication (SRWC) between a mobile device and a vehicle telematics unit (VTU); (b) receiving at the VTU a command communication to perform a vehicle fun
Key management, e.g. using generic bootstrapping architecture [GBA] · CPC title
using certificates (cryptographic mechanisms or cryptographic arrangements for entity authentication involving certificates H04L9/3263) · CPC title
Vehicles · CPC title
using an additional device, e.g. smartcard, SIM or a different communication terminal (cryptographic mechanisms or cryptographic arrangements for entity authentication involving additional secure or trusted devices H04L9/3234) · CPC title
for key distribution, e.g. centrally by trusted party (cryptographic mechanisms or cryptographic arrangements for key distribution involving a central third party H04L9/0819) · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.