IP Library Granted Patent US 10,148,422
Granted Patent B2
US 10,148,422 · App. 13/463,965 · Granted Dec 4, 2018

Implicitly certified public keys

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,148,422
App. No.
13/463,965
Granted
Dec 4, 2018
Kind
B2
Abstract

Methods, systems, and computer programs for using an implicit certificate are described. In some aspects, an implicit certificate is accessed. The implicit certificate is associated with an entity and generated by a certificate authority. The implicit certificate includes a public key reconstruction value of the entity. Certificate authority public key information is accessed. The certificate authority public key information is associated with the certificate authority that issued the implicit certificate. A first value is generated based on evaluating a hash function. The hash function is evaluated based on the certificate authority public key information and the public key reconstruction value of the entity. A public key value of the entity can be generated or otherwise used based on the first value.

Claims (39)

1. A method comprising:

accessing an implicit certificate associated with an entity and generated by a subordinate certificate authority that is subordinate to a root certificate authority, wherein the implicit certificate includes a public key reconstruction value of the entity;

accessing subordinate certificate authority public key information associated with the subordinate certificate authority;

accessing root certificate authority public key information associated with the root certificate authority;

generating a first value based on evaluating a hash function, wherein evaluating the hash function produces a hash function output from hash function inputs comprising the subordinate certificate authority public key information, the root certificate authority public key information, and the public key reconstruction value of the entity; and

generating a public key value of the entity based on the first value.

2. The method of claim 1 , wherein the subordinate certificate authority comprises a first subordinate certificate authority that is intermediate the root certificate authority and a second certificate authority, the entity comprises the second subordinate certificate authority, and the implicit certificate is based on a chain of implicit certificates.

3. The method of claim 1 , wherein the entity comprises a correspondent.

4. The method of claim 1 , wherein generating the public key value comprises at least one of:

validating the public key value; or

using the public key value to verify a digital signature from the entity.

5. The method of claim 1 , wherein generating the public key value comprises evaluating a cryptographic function that uses the public key value.

6. The method of claim 5 , wherein evaluating the cryptographic function does not explicitly compute the public key value.

7. The method of claim 1 , wherein the first value and the public key value are generated by the entity.

8. The method of claim 1 , wherein the first value and the public key value are generated by the subordinate certificate authority.

9. The method of claim 1 , wherein the first value and the public key value are generated by a second, different entity that relies on the public key value.

10. The method of claim 1 , wherein the subordinate certificate authority public key information comprises at least one of a public key value of the subordinate certificate authority or a public key reconstruction value of the subordinate certificate authority.

11. A non-transitory computer-readable medium storing instructions that are operable when executed by data processing apparatus to perform operations comprising:

accessing an implicit certificate associated with an entity and generated by a subordinate certificate authority that is subordinate to a root certificate authority, wherein the implicit certificate includes a public key reconstruction value of the entity;

accessing subordinate certificate authority public key information associated with the subordinate certificate authority;

accessing root certificate authority public key information associated with the root certificate authority;

generating a first value based on evaluating a hash function, wherein evaluating the hash function produces a hash function output from hash function inputs comprising the subordinate certificate authority public key information, the root certificate authority public key information, and the public key reconstruction value of the entity; and

generating a public key value of the entity based on the first value.

12. The computer-readable medium of claim 11 , wherein the subordinate certificate authority comprises a first subordinate certificate authority that is intermediate the root certificate authority and a second certificate authority, the entity comprises the second subordinate certificate authority, and the implicit certificate is based on a chain of implicit certificates.

13. The computer-readable medium of claim 11 , wherein generating the public key value comprises at least one of:

validating the public key value; or

using the public key value to verify a digital signature generated by the entity.

14. The computer-readable medium of claim 11 , wherein generating the public key value comprises evaluating a cryptographic function that uses the public key value, and evaluating the cryptographic function does not explicitly compute the public key value.

15. A computing system comprising:

memory; and

one or more processors operable to perform operations, the operations comprising:

accessing an implicit certificate associated with an entity and generated by a subordinate certificate authority that is subordinate to a root certificate authority, wherein the implicit certificate includes a public key reconstruction value of the entity;

accessing subordinate certificate authority public key information associated with the subordinate certificate authority;

accessing root certificate authority public key information associated with the root certificate authority;

generating a first value based on evaluating a hash function, wherein evaluating the hash function produces a hash function output from hash function inputs comprising the subordinate certificate authority public key information, the root certificate authority public key information, and the public key reconstruction value of the entity; and

generating a public key value of the entity based on the first value.

16. The computing system of claim 15 , wherein the one or more processors are operable to perform the operations of a signature generation module.

17. The computing system of claim 15 , wherein the one or more processors are operable to perform the operations of a signature verification module.

18. The computing system of claim 15 , wherein the one or more processors are operable to perform the operations of certificate generation module.

Assignments (10)
CORRECTIVE ASSIGNMENT TO CORRECT THE ADDED PATENT NUMBER TO REMOVE PATENT NO. 8,873,407 AT PREVIOUSLY RECORDED ON REEL 64066 FRAME 1. ASSIGNOR(S) HEREBY CONFIRMS THE NUNC PRO TUNC ASSIGNMENT EFFECTIVE DATE MARCH 20, 2023. Recorded Feb 2, 2026
From: BLACKBERRY LIMITED
To: MALIKIE INNOVATIONS LIMITED
Reel/Frame 074921/0001 →
CORRECTIVE ASSIGNMENT TO CORRECT 12817157 APPLICATION NUMBER PREVIOUSLY RECORDED AT REEL: 064015 FRAME: 0001. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Sep 5, 2023
From: OT PATENT ESCROW, LLC
To: MALIKIE INNOVATIONS LIMITED
Reel/Frame 064807/0001 →
CORRECTIVE ASSIGNMENT TO CORRECT THE COVER SHEET AT PAGE 50 TO REMOVE 12817157 PREVIOUSLY RECORDED ON REEL 063471 FRAME 0474. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Sep 5, 2023
From: BLACKBERRY LIMITED
To: OT PATENT ESCROW, LLC
Reel/Frame 064806/0669 →
NUNC PRO TUNC ASSIGNMENT Recorded Jun 19, 2023
From: BLACKBERRY LIMITED
To: MALIKIE INNOVATIONS LIMITED
Reel/Frame 064066/0001 →
NUNC PRO TUNC ASSIGNMENT Recorded Jun 16, 2023
From: OT PATENT ESCROW, LLC
To: MALIKIE INNOVATIONS LIMITED
Reel/Frame 064015/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 27, 2023
From: BLACKBERRY LIMITED
To: OT PATENT ESCROW, LLC
Reel/Frame 063471/0474 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 2, 2019
From: CERTICOM CORP.
To: BLACKBERRY LIMITED
Reel/Frame 050610/0937 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 2, 2013
From: ZAVERUCHA, GREGORY MARC; BROWN, DANIEL RICHARD L.
To: CERTICOM CORP.
Reel/Frame 030334/0507 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 2, 2013
From: KRAVITZ, DAVID WILLIAM
To: CERTICOM (U.S.) LIMITED
Reel/Frame 030334/0243 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 28, 2012
From: CERTICOM (U.S.) LIMITED
To: CERTICOM CORP.
Reel/Frame 028277/0243 →