IP Library Granted Patent US 8,347,078
Granted Patent B2
US 8,347,078 · App. 11/018,095 · Granted Jan 1, 2013

Device certificate individualization

Assignee: Microsoft Corporation
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,347,078
App. No.
11/018,095
Granted
Jan 1, 2013
Kind
B2
Abstract

A method of generating a device certificate. A method of generating a device certificate comprising, constructing a device certificate challenge at a device, sending information to a device certificate individualization server in response to the device certificate challenge, validating the device certificate challenge by the device certificate individualization server, and validating the device certificate response by the device.

Claims (37)

1. A method of generating a device certificate, the method comprising:

initiating a trigger originating at a device without connecting the device to a second device;

constructing, in response to the trigger, a device certificate challenge at the device based at least in part on device specific information and a device certificate template disposed on the device at a time of manufacture;

sending the device certificate challenge to a device certificate individualization server in response to the construction of the device certificate challenge;

receiving a device certificate response at the device from the device certificate individualization server, the device certificate response indicative of a validation of the device certificate challenge by the device certificate individualization server; and

validating the device certificate response by the device.

2. The method of claim 1 , the device certificate challenge comprising the device certificate template.

3. The method of claim 2 , the device certificate template comprised in the device certificate challenge being signed and the device certificate template comprising an authorization certificate.

4. The method of claim 1 , the device certificate challenge comprising the device specific information.

5. The method of claim 1 , the device certificate challenge comprising a URL of the device certificate individualization server.

6. The method of claim 1 , validating the device certificate response comprising imparting the device certificate on the device, the device certificate configured to allow an encrypted file to be accessed by the device.

7. A system for generating a device certificate, the system comprising:

one or more processors; and

memory comprising instructions that when executed via at least some of the one or more processors perform actions, comprising:

initiating a trigger originating at a device without connecting the device to a second device;

constructing, in response to the trigger, a device certificate challenge at the device based at least in part on device specific information and a device certificate template disposed on the device at a time of manufacture;

sending the device certificate challenge to a device certificate individualization server in response to the construction of the device certificate challenge;

receiving a device certificate response at the device from the device certificate individualization server, the device certificate response indicative of a validation of the device certificate challenge by the device certificate individualization server; and

validating the device certificate response by the device.

8. The system of claim 7 , wherein the device certificate template includes information that is common to a product line of devices that includes the device and one or more other devices, and the device certificate response received from the device certificate individualization server is unique to the device.

9. The system of claim 7 , wherein the device certificate template includes information that is common to a product line of devices that includes the device and one or more other devices.

10. The system of claim 7 , the device certificate response comprising the device certificate.

11. The system of claim 7 , validating the device certificate response comprising an action of imparting the device certificate on the device.

12. A computer readable storage device comprising computer executable instructions that when executed via a processor perform a method for generating a device certificate, the method comprising:

initiating a trigger originating at a device without connecting the device to a second device;

constructing, in response to the trigger, a device certificate challenge at the device based at least in part on device specific information and a device certificate template disposed on the device at a time of manufacture;

sending the device certificate challenge to a device certificate individualization server in response to the construction of the device certificate challenge;

receiving a device certificate response at the device from the device certificate individualization server, the device certificate response indicative of a validation of the device certificate challenge by the device certificate individualization server; and

validating the device certificate response by the device.

13. The computer readable storage device of claim 12 , wherein the device certificate template includes information that is common to a product line of devices that includes the device and one or more other devices, and the device certificate response received from the device certificate individualization server is unique to the device.

14. The computer readable storage device of claim 12 , wherein the device certificate template includes information that is common to a product line of devices that includes the device and one or more other devices.

15. The computer readable storage device of claim 12 , the device certificate response comprising the device certificate.

16. The computer readable storage device of claim 12 , device specific portions of the device certificate template being completed based upon the device certificate response, yielding the device certificate unique to the device.

17. The computer readable storage device of claim 12 , no device certificate comprised on the device at the time of manufacture.

18. The computer readable storage device of claim 12 , the device certificate configured to allow an encrypted file to be accessed by the device.

19. The computer readable storage device of claim 18 , the encrypted file comprising at least one of a music file that is played after access by the device and a video file that is viewed after access by the device.

20. The computer readable storage device of claim 12 , the device certificate operating under a DRM system to cause playback of an encrypted file.

Assignments (2)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 9, 2014
From: MICROSOFT CORPORATION
To: MICROSOFT TECHNOLOGY LICENSING, LLC
Reel/Frame 034543/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 24, 2009
From: JAIN, AMIT; STORM, CLIFFORD PAUL; CUTTER, BENJAMIN BROOKS, JR; EVANS, BRIAN PATRICK
To: MICROSOFT CORPORATION
Reel/Frame 023279/0982 →
Continuity (2)
Continuation In Part 10968462 · Oct 18, 2004
Related Publication 20060085634A1 · Apr 20, 2006