Storage of credential service provider data in a security domain of a secure element
US-2015324791-A1 · Nov 12, 2015 · US
US9948467B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-9948467-B2 |
| Application number | US-201514976331-A |
| Country | US |
| Kind code | B2 |
| Filing date | Dec 21, 2015 |
| Priority date | Dec 21, 2015 |
| Publication date | Apr 17, 2018 |
| Grant date | Apr 17, 2018 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
A method for using digital signatures for signing blockchain transactions includes: generating a domain key pair comprising a domain private key and a domain public key, wherein the domain public key is signed after generation; receiving a plurality of member public keys, wherein each member public key is received from an associated member of a blockchain network and is a public key in a key pair comprising the member public key and a member private key corresponding to the associated member; signing each member public key using the domain private key; receiving a transaction block from a specific member of the blockchain network, wherein the transaction block includes a plurality of blockchain transaction values and a hash signed using the member private key corresponding to the specific member; signing the received transaction block using the domain private key; and transmitting the signed transaction block.
Opening claim text (preview).
What is claimed is: 1. A method for using digital signatures for signing blockchain transactions, comprising: generating, by a generation module of a processing server, a domain key pair comprising a domain private key and a domain public key, wherein the domain public key is signed after generation; receiving, by a receiving device of the processing server, a plurality of member public keys, wherein each member public key is received from an associated member of a blockchain network and is a public key in a key pair comprising the member public key and a member private key corresponding to the associated member; signing, by a signing module of the processing server, each member public key of the plurality of member public keys using the domain private key; receiving, by the receiving device of the processing server, a transaction block from a specific member of the blockchain network, wherein the transaction block includes a plurality of blockchain transaction values and a hash signed using the member private key corresponding to the specific member; signing, by the signing module of the processing server, the received transaction block using the domain private key; electronically transmitting, by a transmitting device of the processing server, the signed transaction block; electronically transmitting, by the transmitting device of the processing server, each signed member public key to one or more members of the blockchain network; receiving, by the receiving device of the processing server, a new transaction block and a signed second hash value from the specific member of the blockchain network; signing, by the signing module of the processing server, the received new transaction block using the domain private key; and electronically transmitting, by the transmitting device of the processing server, the signed new transaction block for validation by a member of the blockchain network. 2. The method of claim 1 , wherein the domain public key is signed by a public authority. 3. The method of claim 1 , wherein the domain public key is signed by the signing module of the processing server. 4. The method of claim 1 , further comprising: receiving, by the receiving device of the processing server, authentication information from each member of the blockchain network; and authenticating, by an authentication module of the processing server, each member of the blockchain network using the received authentication information prior to signing the associated member public key. 5. A method for using digital signatures for signing blockchain transactions, comprising: storing, in a memory of a processing server, a blockchain, wherein the blockchain includes a plurality of transaction blocks, each transaction block including at least a plurality of blockchain transaction values; generating, by a generation module of the processing server, a member key pair comprising a member private key and a member public key; electronically transmitting, by a transmitting device of the processing server, the generated member public key to a signing authority associated with a blockchain network; receiving, by a receiving device of the processing server, a plurality of blockchain transaction values comprising a new transaction block; hashing, by a hashing module of the processing server; a first hash value via application of one or more hashing algorithms to a specific block of the plurality of transaction blocks included in the blockchain; generating, by the generation module of the processing server, a second hash value, wherein the second hash value corresponds to the first hash value; signing, by a signing module of the processing server, the generated second hash value using the generated member private key; electronically transmitting, by the transmitting device of the processing server, the new transaction block and signed second hash value to the signing authority; receiving, by the receiving device of the processing server, a signed transaction block and signed domain public key from the signing authority, wherein the signed transaction block includes the new transaction block and signed second hash value; applying the member public key to the signed second hash value to yield the second hash value; and validating the yielded second hash value as corresponding to the generated second hash value to validate the signed transaction block for addition to the blockchain. 6. The method of claim 5 , wherein the second hash value is generated via application of the one or more hashing algorithms to the received new transaction block. 7. The method of claim 5 , further comprising: electronically transmitting, by the transmitting device of the processing server, authentication information to the signing authority. 8. The method of claim 5 , wherein the signed transaction block is signed using a domain private key corresponding to the signed domain public key; and the method further comprises: validating, by a validation module of the processing server, the signed transaction block using the member public key and signed domain public key. 9. The method of claim 8 , wherein validating the signed transaction block includes: applying the signed domain public key to the signed transaction block to yield the new transaction block and signed second hash value. 10. A system for using digital signatures for signing blockchain transactions, comprising: a transmitting device of a processing server; a generation module of the processing server configured to generate a domain key pair comprising a domain private key and a domain public key, wherein the domain public key is signed after generation; a receiving device of the processing server configured to receive a plurality of member public keys, wherein each member public key is received from an associated member of a blockchain network and is a public key in a key pair comprising the member public key and a member private key corresponding to the associated member; and a signing module of the processing server configured to sign each member public key of the plurality of member public keys using the domain private key, wherein the receiving device of the processing server is further configured to receive a transaction block from a specific member of the blockchain network, wherein the transaction block includes a plurality of blockchain transaction values and a hash signed using the member private key corresponding to the specific member, the signing module of the processing server is further configured to sign the received transaction block using the domain private key, the transmitting device of the processing server is further configured to electronically transmit the signed transaction block, and electronically transmit each signed member public key to one or more members of the blockchain network, the receiving device of the processing server is further configured to receive a new transaction block and a signed second hash value from the specific member of the blockchain network, the signing module of the processing server is further configured to sign the received new transaction block using the domain private key, and the transmitting device of the processing server is further configured to electronically transmit the signed new transaction block for validation by a member of the blockchain network. 11. The system of claim 10 , wherein the domain public key is signed by a public authority. 12. The system of claim 10 , wherein the domain public key is signed by the signing module of the processing server. 13. The system of claim 10 , further comprising: an authentication module of the proc
involving non-keyed hash functions, e.g. modification detection codes [MDCs], MD5, SHA or RIPEMD · CPC title
based on the identity of the terminal or configuration, e.g. MAC address, hardware or software configuration or device fingerprint · CPC title
using certificate validation, registration, distribution or revocation, e.g. certificate revocation list [CRL] · CPC title
involving digital signatures · CPC title
wherein the sending and receiving network entities apply hybrid encryption, i.e. combination of symmetric and asymmetric encryption (cryptographic mechanisms or cryptographic arrangements using a plurality of keys or algorithms H04L9/14) · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.