IP Library Granted Patent US 7,386,736
Granted Patent B2
US 7,386,736 · App. 11/014,559 · Granted Jun 10, 2008

Method and system for using a compact disk as a smart key device

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 7,386,736
App. No.
11/014,559
Granted
Jun 10, 2008
Kind
B2
Abstract

A data processing system accepts a removable storage media, which becomes electrically engaged with a system unit within the data processing system, after which the removable storage media and the hardware security unit mutually authenticate themselves. The removable storage media stores a private key of a first asymmetric cryptographic key pair and a public key of a second asymmetric cryptographic key pair that is associated with the hardware security unit, and the hardware security unit stores a private key of the second asymmetric cryptographic key pair and a public key of the first asymmetric cryptographic key pair that is associated with the removable storage media. In response to successfully performing the mutual authentication operation between the removable storage media and the hardware security unit, the system unit is enabled to invoke cryptographic functions on the hardware security unit while the removable storage media remains engaged with the system unit.

Claims (11)

1. A method for performing cryptographic functions, the method comprising:

engaging a removable storage media with a media reading device coupled to a system unit,

wherein the system unit includes a hardware security unit and a device driver for controlling the media reading device; and

wherein the removable storage media contains a first private key corresponding to a first asymmetric cryptographic key pair and a first public key corresponding to a second asymmetric cryptographic key pair, and

wherein the hardware security unit contains a second private key corresponding to the second asymmetric cryptographic key pair and a second public key corresponding to the first asymmetric cryptographic key pair;

performing a mutual authentication operation between the removable storage media and the hardware security unit based upon the first and second asymmetric cryptographic key pairs;

in response to successfully performing the mutual authentication operation, enabling the system unit to invoke cryptographic functions on the hardware security unit while the removable storage media remains engaged to the media reading device;

authenticating an application once the removable storage media has been authenticated and while the removable storage unit remains engaged with the media reading device;

generating a digital certificate for the removable storage media by the hardware security unit while the removable storage media remains engaged with the media reading device;

digitally signing a data item from the device driver by the hardware security unit in response to a request from the device driver while the removable storage media remains engaged with the media reading device; and

performing a cryptographic function by the hardware security unit for the device driver in response to a request from the device driver after successfully performing a mutual authentication operation between the removable storage media and the hardware security unit.

Assignments (3)
CHANGE OF NAME Recorded Dec 20, 2021
From: FACEBOOK, INC.
To: META PLATFORMS, INC.
Reel/Frame 058553/0802 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 4, 2012
From: INTERNATIONAL BUSINESS MACHINES CORPORATION
To: FACEBOOK, INC.
Reel/Frame 027991/0416 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 17, 2005
From: BADE, STEVEN A.; CHAO, CHING-YUN
To: INTERNATIONAL BUSINESS MACHINES CORPORATION
Reel/Frame 015735/0441 →