Method and system for remote activation and management of personal security devices

US9794371B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-9794371-B2
Application numberUS-201615006241-A
CountryUS
Kind codeB2
Filing dateJan 26, 2016
Priority dateApr 30, 2001
Publication dateOct 17, 2017
Grant dateOct 17, 2017

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

Managing a Personal Security Device (PSD) includes retrieving proprietary information from a remote storage location using a first Remote Computer System, providing at least one Client as a host to the PSD and establishing a communications pipe over a first network between the PSD and the Remote Computer System. The communications pipe communicates with the PSD through the Client. Managing a PSD also includes transmitting the proprietary information from the Remote Computer System to the PSD by sending a PSD-formatted message through the communications pipe, where the proprietary information provided in the PSD-formatted message and passing through the Client is at least partially inaccessible by the Client, processing the PSD-formatted messages at the PSD to extract the proprietary information and storing the proprietary information in the PSD.

First claim

Opening claim text (preview).

What is claimed is: 1. A method for activating and/or managing at least one personal security device with at least a first remote computer system over a first network using at least one client as a host to the at least one personal security device, the method comprising: establishing at least one communications pipe over the first network and through the client between the at least one personal security device and the at least first remote computer system using a software-based cryptography module to perform cryptographic functions by initially sending a request to the at least one personal security device for information and the at least one personal security device providing the requested information to the remote computer system; retrieving proprietary information by the at least first remote computer system from a remote storage location; transmitting the proprietary information from the at least first remote computer system to the at least one personal security device through the at least one communications pipe; and storing and/or processing the proprietary information in the at least one personal security device. 2. The method according to claim 1 , wherein the proprietary information is encapsulated to form the personal security device-formatted messages. 3. The method according to claim 1 , further comprising: encrypting the proprietary information in the first remote computer system after retrieving the proprietary information and before transmitting the proprietary information; and decrypting the proprietary information in the at least one personal security device processing the proprietary information. 4. The method according to claim 1 , wherein the remote storage location is in the at least first remote computer system. 5. The method according to claim 1 , wherein the remote storage location is in a second remote computer system functionally connected to the first remote computer system over a second network and wherein retrieving proprietary information includes transmitting proprietary information from the second remote computer system to the first remote computer system through the second network. 6. The method according to claim 5 , further comprising: encrypting the proprietary information in the second remote computer system; and decrypting the proprietary information in the first remote computer system. 7. The method according to claim 1 , further comprising: authenticating the personal security device through the communications pipe. 8. The method according to claim 1 , wherein the communications pipe is initiated by the first remote computer system. 9. The method according to claim 1 , wherein the communications pipe is initiated by a second remote computer system requesting access to the personal security device. 10. The method according to claim 1 , wherein the proprietary information is not disclosed to the client. 11. A method for activating and/or managing at least one personal security device with at least a first remote computer system over a first network using at least one client as a host to the at least one personal security device, the method comprising: establishing at least one communications pipe over the first network and through the client between the at least one personal security device and the at least first remote computer system using a hardware security cryptography module to perform cryptographic functions by initially sending a request to the at least one personal security device for information and the at least one personal security device providing the requested information to the remote computer system; retrieving proprietary information by the at least first remote computer system from a remote storage location; transmitting the proprietary information from the at least first remote computer system to the at least one personal security device through the at least one communications pipe; and storing and/or processing the proprietary information in the at least one personal security device. 12. The method according to claim 11 , wherein the proprietary information is encapsulated to form the personal security device-formatted messages. 13. The method according to claim 11 , further comprising: encrypting the proprietary information in the first remote computer system after retrieving the proprietary information and before transmitting the proprietary information; and decrypting the proprietary information in the at least one personal security device processing the proprietary information. 14. The method according to claim 11 , wherein the remote storage location is in the at least first remote computer system. 15. The method according to claim 11 , wherein the remote storage location is in a second remote computer system functionally connected to the first remote computer system over a second network and wherein retrieving proprietary information includes transmitting proprietary information from the second remote computer system to the first remote computer system through the second network. 16. The method according to claim 15 , further comprising: encrypting the proprietary information in the second remote computer system; and decrypting the proprietary information in the first remote computer system. 17. The method according to claim 11 , further comprising: authenticating the personal security device through the communications pipe. 18. The method according to claim 11 , wherein the communications pipe is initiated by the first remote computer system. 19. The method according to claim 11 , wherein the communications pipe is initiated by a second remote computer system requesting access to the personal security device. 20. The method according to claim 11 , wherein the proprietary information is not disclosed to the client.

Assignees

Inventors

Classifications

  • Protocols for interworking; Protocol conversion · CPC title

  • H04L67/32Primary

    Electricity · mapped topic

  • Architecture of open systems interconnection [OSI] 7-layer type protocol stacks, e.g. the interfaces between the data link level and the physical level · CPC title

  • for remote control or remote monitoring of applications · CPC title

  • using an additional device, e.g. smartcard, SIM or a different communication terminal (cryptographic mechanisms or cryptographic arrangements for entity authentication involving additional secure or trusted devices H04L9/3234) · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US9794371B2 cover?
Managing a Personal Security Device (PSD) includes retrieving proprietary information from a remote storage location using a first Remote Computer System, providing at least one Client as a host to the PSD and establishing a communications pipe over a first network between the PSD and the Remote Computer System. The communications pipe communicates with the PSD through the Client. Managing a PS…
Who is the assignee on this patent?
Assa Abloy Ab
What technology area does this patent fall under?
Primary CPC classification H04L67/32. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Oct 17 2017 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 8 related publications on this page (citations in our corpus or others sharing the same primary CPC).